firewall限制网段访问

##限制8080访问地址
firewall-cmd --permanent --add-rich-rule="rule family=ipv4 source address=192.168.0.0/24 port protocol=tcp port=8080 accept"
firewall-cmd --permanent --add-rich-rule="rule family=ipv4 source address=192.168.0.5/24 port protocol=tcp port=8080 accept"
firewall-cmd --permanent --add-rich-rule="rule family=ipv4 source address=192.168.0.10/24 port protocol=tcp port=8080 accept"
firewall-cmd --permanent --add-rich-rule="rule family=ipv4 source address=219.143.213.141 port protocol=tcp port=8080 accept"
firewall-cmd --permanent --remove-port=8080/tcp
firewall-cmd --reload
firewall-cmd --permanent --list-all

##还原设置
【firewall限制网段访问】firewall-cmd --permanent --add-port=8080/tcp
firewall-cmd --permanent --remove-rich-rule="rule family=ipv4 source address=192.168.0.10/24 port port=8080 protocol=tcp accept"
firewall-cmd --permanent --remove-rich-rule="rule family=ipv4 source address=192.168.0.5/24 port port=8080 protocol=tcp accept"
firewall-cmd --permanent --remove-rich-rule="rule family=ipv4 source address=192.168.0.0/24 port port=8080 protocol=tcp accept"
firewall-cmd --permanent --remove-rich-rule="rule family=ipv4 source address=219.143.213.141 port port=8080 protocol=tcp accept"
firewall-cmd --reload
firewall-cmd --permanent --list-all

    推荐阅读