配置端口、防火墙,修改IP

配置端口、防火墙

打开配置文件:

[root@localhost ~]# vi /etc/sysconfig/iptables

正确的配置文件:

# Firewall configuration written by system-config-firewall # Manual customization of this file is not recommended. *filter 
:INPUT ACCEPT [0:0] 
:FORWARD ACCEPT [0:0] 
:OUTPUT ACCEPT [0:0] 
-A INPUT -m state –state ESTABLISHED,RELATED -j ACCEPT 
-A INPUT -p icmp -j ACCEPT 
-A INPUT -i lo -j ACCEPT 
-A INPUT -m state –state NEW -m tcp -p tcp –dport 22 -j ACCEPT 
-A INPUT -m state –state NEW -m tcp -p tcp –dport 80 -j ACCEPT
-A INPUT -j REJECT –reject-with icmp-host-prohibited 
-A FORWARD -j REJECT –reject-with icmp-host-prohibited 
COMMIT

-A INPUT -m state –state NEW -m tcp -p tcp –dport * -j ACCEPT
注意点:新开放的端口一定要在端口22后面

重启防火墙使配置生效:

[root@localhost ~]# /etc/init.d/iptables restart

查看开放端口:

[root@localhost ~]# /etc/init.d/iptables status

关闭防火墙:

[root@localhost ~]# /etc/init.d/iptables stop

修改IP

查看IP

ifconfig eth0                 → 查看IP 不过输出的信息多一些
ifconfig|grep 'Bcast'     → 这个输出的信息要清晰多了

修改IP并生效

编辑/etc/sysconfig/network-scripts/ifcfg-eth0,按如下设置
DEVICE=eth0
BOOTPROTO=static
HWADDR=
ONBOOT=yes
TYPE=Ethernet
IPADDR=<你的IP>
NETMASK=255.255.255.0 
其中MAC地址可用ifconfig eth0命令查看
设置好后,重启network服务即可:service network restart

  目录