打开配置文件
正确的配置文件
注意点:新开放的端口一定要在端口22后面
重启防火墙使配置生效
其它
查看开放端口
关闭防火墙
- [root@localhost ~]# vi /etc/sysconfig/iptables
[root@localhost ~]# vi /etc/sysconfig/iptables
正确的配置文件
- # Firewall configuration written by system-config-firewall
- # Manual customization of this file is not recommended.
- *filter
- :INPUT ACCEPT [0:0]
- :FORWARD ACCEPT [0:0]
- :OUTPUT ACCEPT [0:0]
- -A INPUT -m state –state ESTABLISHED,RELATED -j ACCEPT
- -A INPUT -p icmp -j ACCEPT
- -A INPUT -i lo -j ACCEPT
- -A INPUT -m state –state NEW -m tcp -p tcp –dport 22 -j ACCEPT
- -A INPUT -m state –state NEW -m tcp -p tcp –dport 80 -j ACCEPT
- -A INPUT -j REJECT –reject-with icmp-host-prohibited
- -A FORWARD -j REJECT –reject-with icmp-host-prohibited
- COMMIT
# Firewall configuration written by system-config-firewall # Manual customization of this file is not recommended. *filter :INPUT ACCEPT [0:0] :FORWARD ACCEPT [0:0] :OUTPUT ACCEPT [0:0] -A INPUT -m state –state ESTABLISHED,RELATED -j ACCEPT -A INPUT -p icmp -j ACCEPT -A INPUT -i lo -j ACCEPT -A INPUT -m state –state NEW -m tcp -p tcp –dport 22 -j ACCEPT -A INPUT -m state –state NEW -m tcp -p tcp –dport 80 -j ACCEPT -A INPUT -j REJECT –reject-with icmp-host-prohibited -A FORWARD -j REJECT –reject-with icmp-host-prohibited COMMIT
- -A INPUT -m state –state NEW -m tcp -p tcp –dport * -j ACCEPT
-A INPUT -m state –state NEW -m tcp -p tcp –dport * -j ACCEPT
注意点:新开放的端口一定要在端口22后面
重启防火墙使配置生效
- [root@localhost ~]# /etc/init.d/iptables restart
[root@localhost ~]# /etc/init.d/iptables restart
其它
查看开放端口
- [root@localhost ~]# /etc/init.d/iptables status
[root@localhost ~]# /etc/init.d/iptables status
关闭防火墙
- [root@localhost ~]# /etc/init.d/iptables stop
本文介绍如何在 CentOS 6.5 上配置防火墙以开放特定端口,包括编辑配置文件 /etc/sysconfig/iptables 的详细步骤、重启防火墙的方法以及检查防火墙状态的命令。



1351

被折叠的 条评论
为什么被折叠?



