码迷,mamicode.com
首页 > 其他好文 > 详细

centos 7 防火墙和端口配置

时间:2016-10-03 17:15:26      阅读:3229      评论:0      收藏:0      [点我收藏+]

标签:

centos 7 防火墙和端口配置
--解决 RHEL 7/ CentOS 7/Fedora 出现Unit iptables.service failed to load

# 第一步,关闭firewall:
CentOS 7.0默认使用的是firewall作为防火墙,这里改为iptables防火墙。
systemctl stop firewalld.service     #停止firewall
systemctl disable firewalld.service   #禁止firewall开机启动

# 第二步,安装iptables-services:
yum install iptables-services

 

# 第三步,启用iptables-services:
root@vm-xiluhua ~# systemctl enable iptables   #启用
Created symlink from /etc/systemd/system/basic.target.wants/iptables.service to /usr/lib/systemd/system/iptables.service.
root@vm-xiluhua ~# service iptables save    
iptables: Saving firewall rules to /etc/sysconfig/iptables:[  确定  ]
root@vm-xiluhua ~# service iptables status    #查看状态
Redirecting to /bin/systemctl status  iptables.service
● iptables.service - IPv4 firewall with iptables
   Loaded: loaded (/usr/lib/systemd/system/iptables.service; enabled; vendor preset: disabled)
   Active: inactive (dead)
root@vm-xiluhua ~# service iptables start     #启动
Redirecting to /bin/systemctl start  iptables.service
root@vm-xiluhua ~# service iptables status
Redirecting to /bin/systemctl status  iptables.service
● iptables.service - IPv4 firewall with iptables
   Loaded: loaded (/usr/lib/systemd/system/iptables.service; enabled; vendor preset: disabled)
   Active: active (exited) since 一 2016-10-03 15:41:24 CST; 8s ago
  Process: 9913 ExecStart=/usr/libexec/iptables/iptables.init start (code=exited, status=0/SUCCESS)
 Main PID: 9913 (code=exited, status=0/SUCCESS)
 
10月 03 15:41:24 vm-xiluhua systemd[1]: Starting IPv4 firewall with iptables...
10月 03 15:41:24 vm-xiluhua iptables.init[9913]: iptables: Applying firewall rules: [  确定  ]
10月 03 15:41:24 vm-xiluhua systemd[1]: Started IPv4 firewall with iptables.

 

# 第4步,编辑iptables-services,加入端口配置(开启端口)
root@vm-xiluhua ~# vi /etc/sysconfig/iptables

-A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 6379 -j ACCEPT #redis
-A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 21 -j ACCEPT #ftp
-A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT #ssh
-A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 11211 -j ACCEPT #memcached
-A RH-Firewall-1-INPUT -m state --state NEW -m tcp -p tcp --dport 3306 -j ACCEPT #mysql

root@vm-xiluhua ~# service iptables save     #保存规则到iptables
iptables: Saving firewall rules to /etc/sysconfig/iptables:[  确定  ]
root@vm-xiluhua ~# service iptables restart   #重新启动
Redirecting to /bin/systemctl restart  iptables.service

 

centos 7 防火墙和端口配置

标签:

原文地址:http://www.cnblogs.com/xiluhua/p/5929222.html

(0)
(0)
   
举报
评论 一句话评论(0
登录后才能评论!
© 2014 mamicode.com 版权所有  联系我们:gaon5@hotmail.com
迷上了代码!