Netfilter and firewalld concepts

WORKING WITH FIREWALLD
Rob Locke
Curriculum Manager, Red Hat
Netfilter and firewalld concepts
Netfilter and firewalld concepts
• Interacting with netfilter
• Introducing firewalld
• Predefined zones
Configure firewall settings
Configure firewall settings
• Directly editing configuration files in /etc/firewalld/ (not discussed)
• Using graphical firewall-config tool
• From the command line, using firewall-cmd
Configure firewall settings with firewall-config
Configure firewall settings with firewall-cmd
# firewall-cmd --set-default-zone=dmz
# firewall-cmd --permanent --zone=internal --add-source=192.168.0.0/24
# firewall-cmd --permanent --zone=internal --add-service=mysql
# firewall-cmd --reload
Practice:
Limiting network communication
Lab:
Limiting network communication
Practice/Lab Details
• Reset your serverX (or desktopX) system:
fX$ rht-vmctl reset server
fX$ rht-vmctl reset desktop
• Log into your serverX (or desktopX) system:
fX$ rht-vmctl view server (student / student)
fX$ rht-vmctl view desktop (student / student)
Thank you for having joined us today!