Firewalld | https://www.youtube.com/watch?v=T2g6nxRCnLQ&ab_channel=NetSecProf |
---|---|
firewall-cmd --list-all (default zone= public ) | |
Start and stop deamon | |
sudo systemctl stop firewalld.service sudo systemctl start firewalld.service | |
Services | |
list all services available | firewall-cmd --get-services |
add service to a zone | firewall-cmd --add-service=https ( will add to the default zone= public or "untrusted" or what ever default zone)
|
list all ICMP type |
|
allow ICMP |
|
traceroute |
|
add permanent service | firewall-cmd --add-service-https --permanent |
create service | |
Ports | |
add port | firewall-cmd --get-ports |
add permanent port | |
Zones | |
list zones | firewall-cmd --get-zones |
zones config info | firewall-cmd --zone=home --list-all |
add zones | |
create zone | |
NAT or masquarade | |
...