技術(shù)員聯(lián)盟提供win764位系統(tǒng)下載,win10,win7,xp,裝機純凈版,64位旗艦版,綠色軟件,免費軟件下載基地!

當前位置:主頁 > 教程 > 服務(wù)器類 >

CentOS 7中如何設(shè)置ip白名單

來源:技術(shù)員聯(lián)盟┆發(fā)布時間:2017-11-22 06:23┆點擊:

  CentOS 7中設(shè)置ip白名單

  我想安裝CentOS 7防火墻,所有傳入的請求將被封鎖,除了IP白名單。對于白名單的IP的所有端口都要訪問?

  adding sources to a zone. First checkout which sources there are for your zone:

  firewall-cmd --permanent --zone=public --list-sources

  If there are none, you can start to add them, this is your "whitelist"

  firewall-cmd --permanent --zone=public --add-source=192.168.100.0/24

  firewall-cmd --permanent --zone=public --add-source=192.168.222.123/32

  (That adds a whole/24and a single IP, just so you have a reference for both a subnet and a single IP)

  Set the range of ports you'd like open:

  firewall-cmd --permanent --zone=public --add-port=1-22/tcp

  firewall-cmd --permanent --zone=public --add-port=1-22/udp

  This just does ports 1 through 22. You can widen this, if you'd like.

  Now, reload what you've done.

  firewall-cmd --reload

  And check your work:

  firewall-cmd --zone=public --list-all