这里会显示出您选择的修订版和当前版本之间的差别。
| 两侧同时换到之前的修订记录 前一修订版 后一修订版 | 前一修订版 | ||
|
firewall-cmd [2019/02/06 01:21] kblockd |
firewall-cmd [2019/02/06 07:09] (当前版本) kblockd |
||
|---|---|---|---|
| 行 17: | 行 17: | ||
| 其次检查是否允许伪装IP,没允许的话要开启伪装IP | 其次检查是否允许伪装IP,没允许的话要开启伪装IP | ||
| + | '' | ||
| # 将80端口的流量转发至8080 | # 将80端口的流量转发至8080 | ||
| firewall-cmd --add-forward-port=port=80:proto=tcp:toport=8080 | firewall-cmd --add-forward-port=port=80:proto=tcp:toport=8080 | ||
| # 将80端口的流量转发至 | # 将80端口的流量转发至 | ||
| + | |||
| firewall-cmd --add-forward-port=port=80:proto=tcp:toaddr=192.168.1.0.1192.168.0.1 | firewall-cmd --add-forward-port=port=80:proto=tcp:toaddr=192.168.1.0.1192.168.0.1 | ||
| # 将80端口的流量转发至192.168.0.1的8080端口 | # 将80端口的流量转发至192.168.0.1的8080端口 | ||
| firewall-cmd --add-forward-port=port=80:proto=tcp:toaddr=192.168.0.1:toport=80 | firewall-cmd --add-forward-port=port=80:proto=tcp:toaddr=192.168.0.1:toport=80 | ||
| + | '' | ||
| **ip限制** | **ip限制** | ||
| + | |||
| firewall-cmd --permanent --add-rich-rule 'rule family=ipv4 source address=192.168.0.1/2 port port=80 protocol=tcp accept' | firewall-cmd --permanent --add-rich-rule 'rule family=ipv4 source address=192.168.0.1/2 port port=80 protocol=tcp accept' | ||