Difference between revisions of "CentOS 7.x Basic firewalld configuration"
From Notes_Wiki
|  (Created page with "<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb> =CentOS 7.x Basic firewalld configuration=  To configure basic protection via firewalld use:  #...") | m | ||
| Line 4: | Line 4: | ||
| To configure basic protection via firewalld use: | To configure basic protection via firewalld use: | ||
| # Install firewalld if not present: | |||
| #:<pre> | |||
| #:: yum -y install firewalld | |||
| #:</pre> | |||
| # Add '<tt>ZONE=public</tt>' in appropriate ifcfg interface file under '<tt>/etc/sysconfig/network-scripts</tt>' folder | # Add '<tt>ZONE=public</tt>' in appropriate ifcfg interface file under '<tt>/etc/sysconfig/network-scripts</tt>' folder | ||
| # Use following for new zone settings to take effect | # Use following for new zone settings to take effect | ||
Revision as of 09:06, 30 December 2020
<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>
CentOS 7.x Basic firewalld configuration
To configure basic protection via firewalld use:
- Install firewalld if not present:
- yum -y install firewalld
 
 
- Add 'ZONE=public' in appropriate ifcfg interface file under '/etc/sysconfig/network-scripts' folder
- Use following for new zone settings to take effect
- systemctl restart network
- systemctl restart firewalld
- systemctl enable firewalld
 
 
- Use following to validate that default zone is public
- firewall-cmd --get-default-zone
 
 
- Use following syntax to allow certain ports from outside
- firewall-cmd --zone=public --add-port=25/tcp --permanent
- firewall-cmd --zone=public --add-port=80/tcp --permanent
- firewall-cmd --zone=public --add-port=443/tcp --permanent
 
 
- Reload firewalld using
- firewall-cmd --reload
 
 
- Check public zone rules using
- firewall-cmd --zone=public --list-all
 
 
<yambe:breadcrumb>CentOS_7.x_firewalld|CentOS 7.x firewalld</yambe:breadcrumb>

