Difference between revisions of "CentOS 7.x Basic firewalld configuration"
From Notes_Wiki
(Created page with "<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb> =CentOS 7.x Basic firewalld configuration= To configure basic protection via firewalld use: #...") |
m |
||
Line 4: | Line 4: | ||
To configure basic protection via firewalld use: | To configure basic protection via firewalld use: | ||
# Install firewalld if not present: | |||
#:<pre> | |||
#:: yum -y install firewalld | |||
#:</pre> | |||
# Add '<tt>ZONE=public</tt>' in appropriate ifcfg interface file under '<tt>/etc/sysconfig/network-scripts</tt>' folder | # Add '<tt>ZONE=public</tt>' in appropriate ifcfg interface file under '<tt>/etc/sysconfig/network-scripts</tt>' folder | ||
# Use following for new zone settings to take effect | # Use following for new zone settings to take effect |
Revision as of 09:06, 30 December 2020
<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>
CentOS 7.x Basic firewalld configuration
To configure basic protection via firewalld use:
- Install firewalld if not present:
- yum -y install firewalld
- Add 'ZONE=public' in appropriate ifcfg interface file under '/etc/sysconfig/network-scripts' folder
- Use following for new zone settings to take effect
- systemctl restart network
- systemctl restart firewalld
- systemctl enable firewalld
- Use following to validate that default zone is public
- firewall-cmd --get-default-zone
- Use following syntax to allow certain ports from outside
- firewall-cmd --zone=public --add-port=25/tcp --permanent
- firewall-cmd --zone=public --add-port=80/tcp --permanent
- firewall-cmd --zone=public --add-port=443/tcp --permanent
- Reload firewalld using
- firewall-cmd --reload
- Check public zone rules using
- firewall-cmd --zone=public --list-all
<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>