防火墙管理
CentOS7防火墙
CentOS7默认安装了firewalld防火墙
利用防火墙,我们可以允许或是限制传输的数据通过
firewall
1、直接关闭防火墙
systemctl status firewalld (查看防火墙状态)
systemctl stop firewalld (停止防火墙)
systemctl disable firewalld(禁止开机启动)
eg:
[root@liuawen ~]# systemctl status firewalld
● firewalld.service - firewalld - dynamic firewall daemon
Loaded: loaded (/usr/lib/systemd/system/firewalld.service; enabled; vendor preset: enabled)
Active: active (running) since Sun 2020-05-10 16:04:31 CST; 41min ago
Docs: man:firewalld(1)
Main PID: 31591 (firewalld)
CGroup: /system.slice/firewalld.service
└─31591 /usr/bin/python2 -Es /usr/sbin/firewalld --nofork --nopid
May 10 16:04:31 liuawen systemd[1]: Starting firewalld - dynamic firewall daemon...
May 10 16:04:31 liuawen systemd[1]: Started firewalld - dynamic firewall daemon.
May 10 16:04:32 liuawen firewalld[31591]: WARNING: COMMAND_FAILED: '/usr/sbin/iptables -w10 -D FORWARD -i docker0 -o docker0 -j DROP'...chain?).
May 10 16:04:32 liuawen firewalld[31591]: WARNING: COMMAND_FAILED: '/usr/sbin/iptables -w10 -D FORWARD -i docker0 -o docker0 -j DROP'...chain?).
May 10 16:29:05 liuawen firewalld[31591]: WARNING: NOT_ENABLED: 8010-8015:tcp
May 10 16:32:04 liuawen firewalld[31591]: WARNING: NOT_ENABLED: 2181:tcp
May 10 16:37:21 liuawen firewalld[31591]: WARNING: COMMAND_FAILED: '/usr/sbin/iptables -w10 -D FORWARD -i docker0 -o docker0 -j DROP'...chain?