1 linux 系统防火墙端口开通执行命令
[root@hx1-gauss01 ~]#iptables -I INPUT -p tcp --dport 22 -j ACCEPT
[root@hx1-gauss01 ~]#iptables -I INPUT -p tcp --dport 80 -j ACCEPT
[root@hx1-gauss01 ~]#iptables -I INPUT -p tcp --dport 8002 -j ACCEPT
2 查看端口是否已开通
[root@hx1-gauss01 ~]# iptables -vnL
Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
160 10944 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
27 1764 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:12017
1 136 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:22
0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
Chain OUTPUT (policy ACCEPT 125 packets, 12540 bytes)
pkts bytes target prot opt in out source destination
[root@hx1-gauss01 ~]#
3 启用防火墙
[root@hx1-gauss01 ~]# systemctl start iptables;
[root@hx1-gauss01 ~]# systemctl unmask iptables;
[root@hx1-gauss01 ~]# systemctl enable iptables;