vi /etc/sysconfig/iptables
進入編輯頁面,在指定位置新增如下配置code
-A INPUT -m state --state NEW -m tcp -p tcp --dport 8080 -j ACCEPT
這句要放在 -A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT 後面blog
修改後的總體爲下面所示ip
# Generated by iptables-save v1.4.7 on Wed Mar 22 17:51:24 2017 *filter :INPUT ACCEPT [0:0] :FORWARD ACCEPT [0:0] :OUTPUT ACCEPT [0:0] -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT -A INPUT -p icmp -j ACCEPT -A INPUT -i lo -j ACCEPT -A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -j ACCEPT -A INPUT -m state --state NEW -m tcp -p tcp --dport 8080 -j ACCEPT -A INPUT -j REJECT --reject-with icmp-host-prohibited -A FORWARD -j REJECT --reject-with icmp-host-prohibited COMMIT # Completed on Wed Mar 22 17:51:24 2017
2.修改完保存退出,重啓網卡服務
service iptables restart
3.查看端口開放信息
service iptables status
通常服務器能看到開放信息就算成功開放了。