Difference between revisions of "IT-OS-Admin-Linux"

From wiki.samerhijazi.net
Jump to navigation Jump to search
(Setting Firewall)
Line 3: Line 3:
  
 
==Setting Firewall==
 
==Setting Firewall==
 +
<pre class="code">
 +
===Service===
 +
<pre class="code">
 +
$ sudo systemctl disable firewalld
 +
$ sudo systemctl stop firewalld
 +
$ sudo systemctl disable NetworkManager
 +
$ sudo systemctl stop NetworkManager
 +
$ sudo systemctl enable network
 +
$ sudo systemctl start network
 +
</pre>
 +
===Zone===
 
<pre class="code">
 
<pre class="code">
 
sudo firewall-cmd --get-zones
 
sudo firewall-cmd --get-zones

Revision as of 21:16, 20 August 2019

Kostenlose Kurse

Setting Firewall

===Service===
<pre class="code">
$ sudo systemctl disable firewalld
$ sudo systemctl stop firewalld
$ sudo systemctl disable NetworkManager
$ sudo systemctl stop NetworkManager
$ sudo systemctl enable network
$ sudo systemctl start network

Zone

sudo firewall-cmd --get-zones
sudo firewall-cmd --get-active-zones
sudo firewall-cmd --get-default-zone
sudo firewall-cmd --get-services
sudo firewall-cmd --list-all
sudo firewall-cmd --list-ports

Zone-home

sudo firewall-cmd --zone=home --list-all
sudo firewall-cmd --zone=home --list-ports
sudo firewall-cmd --zone=home --list-services

Setting

sudo firewall-cmd --set-default-zone=home
sudo firewall-cmd --zone=home --change-interface=eth0
sudo firewall-cmd --zone=home --add-service=http
sudo firewall-cmd --zone=home --add-port=80/tcp --permanent

New Zone "boxblue"

sudo firewall-cmd --permanent --new-zone=boxblue
sudo firewall-cmd --permanent --zone=boxblue --add-service=ssh
sudo firewall-cmd --permanent --zone=boxblue --add-service=http
sudo firewall-cmd --permanent --zone=boxblue --add-service=https
sudo firewall-cmd --permanent --zone=boxblue --add-port=80/tcp
sudo firewall-cmd --permanent --zone=boxblue --add-port=22/tcp
sudo firewall-cmd --permanent --zone=boxblue --change-interface=wlp0s19f2u1
sudo firewall-cmd --permanent --set-default-zone=boxblue

Update

sudo firewall-cmd --reload
sudo systemctl restart network
sudo systemctl reload firewalld