Sunday Blog

人生是一场刻意练习

Firewalld ipset 使用

Firewall Ipset

一.firewalld中ipset的用途: 1.用途: ipset是ip地址的集合,firewalld使用ipset可以在一条规则中处理多个ip

Keepalived 和 Firewalld

Keepalived and Firewalld

准备 MASTER IP 192.168.1.7 BACKUP IP 192.168.1.8 VIP 192.168.1.200 yum install keepalived systemctl stop firewalld echo "net.ipv4.ip_forward = 1" >> /etc/sysctl.conf echo "net.ipv4.ip_nonlocal_bind = 1" >> /etc/sysctl.conf #开启允许绑定非本机的IP sysctl -p Keepalived MASTER global_defs { notification_email { root@localhost } notification_email_from ka@localhost smtp_server 127.0.0.1 smtp_connect_timeout 30 router_id ka46 vrrp_mcast_group4 224.0.0.111 #vrrp_strict } vrrp_instance Intranet_1 { state MASTER interface em1

Firewalld使用

Firewalld

firewalld 简介 firewalld 提供了支持网络 / 防火墙区域 (zone) 定义网络链接以及接口安全等级的动态防火墙管理工具。它支持 IPv4, IPv6 防火墙设置以及以太网桥接,并且拥有运行时配置