Name
esxcfg-firewall
Synopsis
esxcfg-firewall [options
]
Configure a firewall for the service console. ESX uses iptables to provide the firewall. Don’t use the iptables command to configure it, though; use this command instead. In its default configuration, it denies all incoming or outgoing connections except for the ports required for the server to function:
- --allowIncoming
Allow incoming connections by default.
- --allowOutgoing
Allow outgoing connections by default.
- --blockIncoming
Block incoming connections by default.
- --blockOutgoing
Block outgoing connections by default.
- -c port type direction, --close port,type,direction
Close a port. The type may be tcp or udp, The direction may be in or out.
- -d [service], --disableService [service]
Close the ports required by the specified service.
- -e [service], --enableService [service]
Open the ports required by the specified service.
- -h, --help
Print a usage message. This is the default if no options are given.
- -l, --load
Load current firewall settings into iptables.
- -q [service], --query [service]
Print all current settings or the state of a service specified by name. Instead of a service you can query the default settings for incoming or outgoing packets.
- -o port type direction name, --open port,type,direction,name
Open a port. The type may be tcp or udp, The direction may be in or out. You must give the service you have opened a name.
- -r, --resetDefaults
Reset all parameters to the installed defaults.
- -s, --services
List known service names.
Example
Allow vmware-cmd ...
Get Linux in a Nutshell, 6th Edition now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.