Firewalld

> Operating System - Kernel (Windows, Unix, Linux) > Linux / Unix

1 - About

Firewalld is a Linux - Firewall

Advertising

3 - Management

3.1 - Start / Stop

# init
service firewalld start
service firewalld stop
# or systemd
systemctl firewalld start
systemctl firewalld stop
Redirecting to /bin/systemctl start  firewalld.service

3.2 - Status

# init
service firewalld status
# systemd
systemctl firewalld status
Redirecting to /bin/systemctl status  firewalld.service
firewalld.service - firewalld - dynamic firewall daemon
   Loaded: loaded (/usr/lib/systemd/system/firewalld.service; enabled; vendor preset: enabled)
   Active: active (running) since Fri 2018-02-09 09:41:17 UTC; 58s ago
     Docs: man:firewalld(1)
 Main PID: 3963 (firewalld)
   CGroup: /system.slice/firewalld.service
           └─3963 /usr/bin/python -Es /usr/sbin/firewalld --nofork --nopid

Feb 09 09:41:17 HI-INFA-BDM-01 systemd[1]: Starting firewalld - dynamic firewall daemon...
Feb 09 09:41:17 HI-INFA-BDM-01 systemd[1]: Started firewalld - dynamic firewall daemon.

3.3 - Log

firewall-cmd --get-log-denied
off
firewall-cmd --set-log-denied=<value>
  • value may be one of: all, unicast, broadcast, multicast, or off

3.4 - Services

firewall-cmd --get-services
firewall-cmd --list-services
firewall-cmd --add-service=kerberos
firewall-cmd --remove-service=kerberos

3.5 - Zone

3.5.1 - Get

firewall-cmd --get-zones
block dmz drop external home internal public trusted work
Advertising

3.5.2 - Default

  • By default public
firewall-cmd --get-default-zone

3.5.3 - List

firewall-cmd --list-all-zones
public (active)
  target: default
  icmp-block-inversion: no
  interfaces: eth0
  sources:
  services: ssh dhcpv6-client
  ports: 80/tcp 9999/tcp
  protocols:
  masquerade: no
  forward-ports:
  source-ports:
  icmp-blocks:
  rich rules:


trusted
  target: ACCEPT
  icmp-block-inversion: no
  interfaces:
  sources:
  services:
..............
..............
..............

3.5.4 - Active

firewall-cmd --get-active-zones

4 - Documentation / Reference

os/linux/firewalld.txt · Last modified: 2019/05/06 16:42 by gerardnico