Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Fedora 22
- How can this work with no interfaces assigned to zone FedoraServer and external?
- -----------------------------------------------------
- ]# ifconfig
- enp0s25: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
- inet 192.168.1.1 netmask 255.255.255.0 broadcast 192.168.1.255
- inet6 fe80::221:86ff:fe9a:f968 prefixlen 64 scopeid 0x20<link>
- ether 00:21:86:9a:f9:68 txqueuelen 1000 (Ethernet)
- RX packets 21872 bytes 2428330 (2.3 MiB)
- RX errors 0 dropped 0 overruns 0 frame 0
- TX packets 17118 bytes 8998716 (8.5 MiB)
- TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
- device interrupt 20 memory 0xfe200000-fe220000
- ens5: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
- inet [public IP] netmask 255.255.255.0 broadcast 192.168.1.255
- inet6 fe80::213:3bff:fe99:d942 prefixlen 64 scopeid 0x20<link>
- ether 00:13:3b:99:d9:42 txqueuelen 1000 (Ethernet)
- RX packets 32687 bytes 9577225 (9.1 MiB)
- RX errors 0 dropped 0 overruns 0 frame 0
- TX packets 4700 bytes 775641 (757.4 KiB)
- TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
- lo: flags=73<UP,LOOPBACK,RUNNING> mtu 65536
- inet 127.0.0.1 netmask 255.0.0.0
- inet6 ::1 prefixlen 128 scopeid 0x10<host>
- loop txqueuelen 1 (Local Loopback)
- RX packets 16 bytes 1408 (1.3 KiB)
- RX errors 0 dropped 0 overruns 0 frame 0
- TX packets 16 bytes 1408 (1.3 KiB)
- TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
- -----------------------------------------------------
- ]# firewall-cmd --get-zones
- FedoraServer FedoraWorkstation block dmz drop external home internal public trusted work
- ]# firewall-cmd --get-zone-of-interface=ens5
- no zone
- ]# firewall-cmd --get-zone-of-interface=enp0s25
- no zone
- -----------------------------------------------------
- ]# firewall-cmd --list-all-zones
- FedoraServer (default)
- interfaces:
- sources:
- services: cockpit dhcp dhcpv6-client dns ssh
- ports:
- masquerade: yes
- forward-ports:
- icmp-blocks:
- rich rules:
- FedoraWorkstation
- interfaces:
- sources:
- services: dhcpv6-client samba-client ssh
- ports: 1025-65535/udp 1025-65535/tcp
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- block
- interfaces:
- sources:
- services:
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- dmz
- interfaces:
- sources:
- services: ssh
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- drop
- interfaces:
- sources:
- services:
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- external
- interfaces:
- sources:
- services: ssh
- ports:
- masquerade: yes
- forward-ports:
- icmp-blocks:
- rich rules:
- home
- interfaces:
- sources:
- services: dhcpv6-client mdns samba-client ssh
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- internal
- interfaces:
- sources:
- services: dhcpv6-client mdns samba-client ssh
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- public
- interfaces:
- sources:
- services: dhcpv6-client mdns ssh
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- trusted
- interfaces:
- sources:
- services:
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
- work
- interfaces:
- sources:
- services: dhcpv6-client mdns ssh
- ports:
- masquerade: no
- forward-ports:
- icmp-blocks:
- rich rules:
Advertisement
Add Comment
Please, Sign In to add comment