service iptables status
a) 重启后生效
开启: chkconfig iptables on
关闭: chkconfig iptables off
b) 即时生效,重启后失效
开启: service iptables start
关闭: service iptables stop
开放端口
iptables -I INPUT -m state --state NEW -m tcp -p tcp --dport 8080 -j ACCEPT
ftp
pasv_enable=YES
pasv_min_port=10000
pasv_max_port=10010
iptables -I INPUT -m state --state NEW -m tcp -p tcp --dport 21 -j ACCEPT
iptables -I INPUT -m state --state NEW -m tcp -p tcp --dport 10000:10010 -j ACCEPT
iptables -I INPUT -m state --state NEW -m tcp -p tcp --dport 8000:20000 -j ACCEPT
service iptables save
service iptables restart