CentOS 7.x Basic firewalld configuration

From Notes_Wiki
Revision as of 09:06, 30 December 2020 by Saurabh (talk | contribs)

<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>

CentOS 7.x Basic firewalld configuration

To configure basic protection via firewalld use:

  1. Install firewalld if not present:
    yum -y install firewalld
  2. Add 'ZONE=public' in appropriate ifcfg interface file under '/etc/sysconfig/network-scripts' folder
  3. Use following for new zone settings to take effect
    systemctl restart network
    systemctl restart firewalld
    systemctl enable firewalld
  4. Use following to validate that default zone is public
    firewall-cmd --get-default-zone
  5. Use following syntax to allow certain ports from outside
    firewall-cmd --zone=public --add-port=25/tcp --permanent
    firewall-cmd --zone=public --add-port=80/tcp --permanent
    firewall-cmd --zone=public --add-port=443/tcp --permanent
  6. Reload firewalld using
    firewall-cmd --reload
  7. Check public zone rules using
    firewall-cmd --zone=public --list-all



<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>