1.查看防火牆狀態:
firewall-cmd --state
2.啟動防火牆
systemctl start firewalld
3.關閉防火牆
systemctl stop firewalld
4.檢查防火牆開放的端口
firewall-cmd --permanent --zone=public --list-ports
5.開放一個新的端口
firewall-cmd --zone=public --add-port=8080/tcp --permanent
6.重啟防火牆
firewall-cmd --reload
7.驗證新增加端口是否生效
firewall-cmd --zone=public --query-port=8080/tcp
8.防火牆開機自啟動
systemctl enable firewalld.service
9.防火牆取消某一開放端口
firewall-cmd --zone=public --remove-port=9200/tcp --permanent