friewalld 防火墙
systemctl start firewalld.service
firewall-cmd --permanent --add-port=7000/udp
firewall-cmd --permanent --add-port=7000/tcp
firewall-cmd --list-all
firewall-cmd --get-default-zone
#删除富规则
firewall-cmd --permanent --remove-rich-rule='rule family="ipv4" source address="139.162.206.94" drop'
firewall-cmd --reload
# drop 一个特定IP
firewall-cmd --permanent --add-rich-rule='rule family="ipv4" source address="139.162.206.94" drop'
firewall-cmd --reload