From dbdb414778404303b659a80902607b4756c5b8ec Mon Sep 17 00:00:00 2001 From: iProbe Date: Fri, 6 Jan 2023 10:44:16 +0800 Subject: [PATCH] =?UTF-8?q?=E6=9B=B4=E6=96=B0=20'=E9=98=B2=E7=81=AB?= =?UTF-8?q?=E5=A2=99/=E7=A6=81=E6=AD=A2=E6=9C=AC=E6=9C=BA=E8=AE=BF?= =?UTF-8?q?=E9=97=AE=E5=85=B6=E4=BB=96=E6=9C=8D=E5=8A=A1=E5=99=A8.md'?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- 防火墙/禁止本机访问其他服务器.md | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/防火墙/禁止本机访问其他服务器.md b/防火墙/禁止本机访问其他服务器.md index bb675aa..ab8f7bf 100644 --- a/防火墙/禁止本机访问其他服务器.md +++ b/防火墙/禁止本机访问其他服务器.md @@ -7,6 +7,13 @@ service iptables restart # firewalld ```bash +# 禁止访问80端口 firewall-cmd --permanent --direct --add-rule ipv4 filter OUTPUT 1 -p tcp --dport 80 -d 10.202.233.70/32 -j DROP +# 禁止访问所有端口 +firewall-cmd --permanent --direct --add-rule ipv4 filter OUTPUT 1 -p tcp -d 10.202.233.70/32 -j DROP +# 移除禁止访问80规则 +firewall-cmd --permanent --direct --remove-rule ipv4 filter OUTPUT 1 -p tcp --dport 80 -d 10.202.233.70/32 -j DROP +# 查看direct规则 +firewall-cmd --direct --get-all-rules firewall-cmd --reload ``` \ No newline at end of file