• CentOS 7关闭firewalld启用iptables


    在CentOS7中,有很多CentOS 6中的常用服务发生了变化。

    其中iptables是其中比较大的一个。防火墙iptables被firewalld取代。

    本文将介绍,如果采用systemctl关闭firewalld,开启iptables。

    1.关闭firewalld

    [root@hwcentos70-01 system]# systemctl stop firewalld
    [root@hwcentos70-01 system]# systemctl disable firewalld
    [root@hwcentos70-01 system]# systemctl status firewalld
    firewalld.service - firewalld - dynamic firewall daemon
    
    Loaded: loaded (/usr/lib/systemd/system/firewalld.service; disabled)
    
    Active: inactive (dead)
    
    Feb 26 13:48:00 hwcentos70-01 systemd[1]: Stopped firewalld - dynamic firewall daemon.
    
    Feb 26 13:48:14 hwcentos70-01 systemd[1]: Starting firewalld - dynamic firewall daemon...
    
    Feb 26 13:48:15 hwcentos70-01 systemd[1]: Started firewalld - dynamic firewall daemon.
    
    Feb 26 13:49:23 hwcentos70-01 systemd[1]: Started firewalld - dynamic firewall daemon.
    
    Feb 26 13:53:18 hwcentos70-01 systemd[1]: Stopping firewalld - dynamic firewall daemon...
    
    Feb 26 13:53:18 hwcentos70-01 systemd[1]: Stopped firewalld - dynamic firewall daemon.

    2.开启iptables

    首先安装iptables:

    [root@hwcentos70-01 system]#yum install -y iptables-services
    [root@hwcentos70-01 system]# systemctl enable iptables
    ln -s '/usr/lib/systemd/system/iptables.service' '/etc/systemd/system/basic.target.wants/iptables.service'
    
    [root@hwcentos70-01 system]# systemctl start iptables
    [root@hwcentos70-01 system]# systemctl status iptables
    iptables.service - IPv4 firewall with iptables
    
    Loaded: loaded (/usr/lib/systemd/system/iptables.service; enabled)
    
    Active: active (exited) since Fri 2016-02-26 13:54:45 UTC; 6s ago
    
    Process: 55539 ExecStart=/usr/libexec/iptables/iptables.init start (code=exited, status=0/SUCCESS)
    
    Main PID: 55539 (code=exited, status=0/SUCCESS)
    
    Feb 26 13:54:45 hwcentos70-01 iptables.init[55539]: iptables: Applying firewall rules: [ OK ]
    
    Feb 26 13:54:45 hwcentos70-01 systemd[1]: Started IPv4 firewall with iptables.

    此时iptables的命令都可以使用了:

    [root@hwcentos70-01 system]# iptables -L
    Chain INPUT (policy ACCEPT)
    
    target prot opt source destination
    
    Chain FORWARD (policy ACCEPT)
    
    target prot opt source destination
    
    Chain OUTPUT (policy ACCEPT)
    
    target prot opt source destination
    
    [root@hwcentos70-01 system]# service iptables save
    iptables: Saving firewall rules to /etc/sysconfig/iptables:[ OK ]
  • 相关阅读:
    (转)Javascript面向对象编程(二):构造函数的继承(作者:阮一峰)
    (转)Javascript 面向对象编程(一):封装(作者:阮一峰)
    asp.net的3个经典范例(ASP.NET Starter Kit ,Duwamish,NET Pet Shop)学习资料
    (转)Ajax的原理和应用
    在ASP.NET MVC应用程序中实现Server.Transfer()类似的功能
    D2GS1.11 的DC Key的相關設置指南
    Win64位操作系统无法运行暗黑2战网D2GS的解决办法
    PVPGN 暗黑破坏神2 1.11b战网配置问题汇总
    PVPGN1.8.2 + D2GS1.11(38)搭建暗黑破坏神1.11b战网(配置指南)
    FineUI Grid控件右键菜单的实现
  • 原文地址:https://www.cnblogs.com/hengwei/p/5221930.html
Copyright © 2020-2023  润新知