Firewalld: Difference between revisions

From Halfface
Jump to navigation Jump to search
Line 13: Line 13:
   interfaces: enp1s0
   interfaces: enp1s0
=list zone configuration=
=list zone configuration=
  sudo firewall-cmd --zone=public --list-all
  firewall-cmd --zone=public --list-all
  public
  public
   target: default
   target: default
Line 27: Line 27:
   icmp-blocks:  
   icmp-blocks:  
   rich rules:
   rich rules:
=move interface enp1s0 to trusted zone=
=move interface enp1s0 to trusted zone=
  sudo firewall-cmd --zone=trusted --change-interface enp1s0
  sudo firewall-cmd --zone=trusted --change-interface enp1s0

Revision as of 19:14, 27 February 2020

start firewalld

systemctl start firewalld

look at state of firewalld

firewall-cmd --state

Which is the default zone

sudo firewall-cmd --get-default-zone
FedoraWorkstation

open port in default zone

firewall-cmd --add-port=8080/tcp

get active zones

firewall-cmd --get-active-zones
FedoraWorkstation
  interfaces: enp1s0

list zone configuration

firewall-cmd --zone=public --list-all
public
 target: default
 icmp-block-inversion: no
 interfaces: 
 sources: 
 services: dhcpv6-client mdns ssh
 ports: 
 protocols: 
 masquerade: no
 forward-ports: 
 source-ports: 
 icmp-blocks: 
 rich rules:

move interface enp1s0 to trusted zone

sudo firewall-cmd --zone=trusted --change-interface enp1s0

list available services

firewall-cmd --get-services

list available zones

firewall-cmd --get-zones