Thank you, now SSH restriction is working
How can i allow ICMP echo-reply from any IP ? Using a new zone ?
Search found 3 matches
Search found 3 matches • Page 1 of 1
- 2019/06/11 09:07:35
- Forum: CentOS 7 - Security Support
- Topic: Filtering with firewalld doesn't work
- Replies: 5
- Views: 840
I would like to restrict SSH access to few IP addresses. # firewall-cmd --get-default-zone my_zone # firewall-cmd --list-all my_zone (active) target: DROP icmp-block-inversion: no interfaces: eth0 sources: ipset:my_ipset services: ssh ports: protocols: masquerade: no forward-ports: source-ports: icm...