修改 license.lic license.lic 内容修改为: INCREMENT Aerospace_Blockset MLM 99 permanent uncounted \ VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=216 SN=888888 TS_OK INCREMENT Aerospace_Toolbox MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=190 SN=888888 TS_OK INCREMENT Cert_Kit_IEC MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY ck=232 SN=888888 TS_OK INCREMENT Control_Toolbox MLM 99 permanent =QQ=47399897 HOSTID=ANY \ ck=226 SN=888888 TS_OK INCREMENT Distrib_Computing_Toolbox MLM 99 permanent
license.lic文件中写入的内容: INCREMENT Aerospace_Blockset MLM 99 permanent uncounted\ A05070F00D1EB1F92326 VENDOR_STRING=QQ=47399897HOSTID=ANY \ ck=216 SN=888888 TS_OK INCREMENT Aerospace_Toolbox MLM 99 permanent \ VENDOR_STRING=QQ=47399897 HOSTID=ANY ck=232SN=888888 TS_OK INCREMENT Control_Toolbox MLM 99 permanent VENDOR_STRING=QQ=47399897HOSTID=ANY \ ck=229 SN=888888 TS_OK INCREMENT Data_Acq_Toolbox MLM 99 permanent VENDOR_STRING=QQ=47399897HOSTID=ANY \ ck=21 SN=888888 TS_OK INCREMENT Database_Toolbox MLM 99 permanent
--permanent firewall-cmd --zone=public--add-port=21/tcp --permanent firewall-cmd --zone=public--add-port =53/udp --permanent Firewall关闭常见端口命令: firewall-cmd --zone=public--remove-port=80/tcp --permanent firewall-cmd --zone=public--remove-port=443/tcp --permanent firewall-cmd --zone=public--remove-port=22/tcp --permanent /udp --permanent 批量添加区间端口 firewall-cmd --zone=public--add-port=4400-4600/udp --permanent firewall-cmd --zone=public--add-port=4400-4600/tcp --permanent
firewall-cmd --zone=public --add-port=443/tcp --permanent firewall-cmd --zone=public --add-port=22/tcp --permanent firewall-cmd --zone=public --add-port=21/tcp --permanent firewall-cmd --zone=public --add-port =53/udp --permanent Firewall 关闭常见端口命令 firewall-cmd --zone=public --remove-port=80/tcp --permanent firewall-cmd --zone=public --remove-port=443/tcp --permanent firewall-cmd --zone=public --remove-port=22/tcp --permanent =53/udp --permanent 批量添加区间端口 firewall-cmd --zone=public --add-port=4400-4600/udp --permanent firewall-cmd
原来激活许可证文件的有效期就到了17年的光棍节,当然不能用了…… 用写字板的替换功能,将字段: MLM 28 11-nov-2017 uncounted 替换为: MLM 99 permanent 或者如果嫌麻烦,也可以用下述代码直接替换 matlab2012b_std.dat 中的所有代码即可: INCREMENT Aerospace_Blockset MLM 99 permanent uncounted VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=216 SN=888888 TS_OK INCREMENT Aerospace_Toolbox MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=190 SN=888888 TS_OK INCREMENT Cert_Kit_IEC MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY ck=232 SN=888888 TS_OK INCREMENT Control_Toolbox MLM 99 permanent
%%%%%%%%%%%%%%%%%%%%%%%%%%%% INCREMENT Aerospace_Blockset MLM 99 permanent uncounted \ A05070F00D1EB1F92326 VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=216 SN=888888 TS_OK INCREMENT Aerospace_Toolbox MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY \ ck=190 SN=888888 TS_OK INCREMENT Cert_Kit_IEC MLM 99 permanent VENDOR_STRING=QQ=47399897 HOSTID=ANY ck=232 SN=888888 TS_OK INCREMENT Control_Toolbox MLM 99 permanent =QQ=47399897 HOSTID=ANY \ ck=226 SN=888888 TS_OK INCREMENT Distrib_Computing_Toolbox MLM 99 permanent
开放TCP端口 firewall-cmd --zone=public --add-port=80/tcp --permanent # 开放tcp80端口 firewall-cmd --zone=public --add-port=443/tcp --permanent # 开放tcp443端口 firewall-cmd --zone=public --add-port=3306/tcp --permanent =80/tcp --permanent #关闭tcp5672端口 firewall-cmd --zone=public --remove-port=443/tcp --permanent #关闭tcp443 --remove-port=6379/tcp --permanent #关闭tcp6379端口 关闭UDP端口 firewall-cmd --zone=public --remove-port=9595 /udp--permanent #关闭udp9595端口 配置生效 firewall-cmd --reload # 配置立即生效 查看防火墙所有开放的端口 firewall-cmd --zone=
firewall-cmd --add-port=22/tcp --permanent firewall-cmd --add-port=23/tcp --permanent firewall-cmd - -add-port=1433/tcp --permanent firewall-cmd --add-port=3389/tcp --permanent firewall-cmd --add-port=445 /tcp --permanent firewall-cmd --add-port=9092/tcp --permanent firewall-cmd --add-port=9093/tcp --permanent --add-port=135/tcp --permanent firewall-cmd --add-port=7/tcp --permanent firewall-cmd --add-port=9293 /tcp --permanent firewall-cmd --add-port=9295/tcp --permanent firewall-cmd --add-port=80/tcp --permanent
重新载入:firewall-cmd --reload 删除:firewall-cmd --zone= public --remove-port=80/tcp --permanent 端口转发 添加 (例如3306 -> 3336): firewall-cmd --permanent --zone=public --add-forward-port=port=3336:proto=tcp:toport =3306:toaddr= 删除: firewall-cmd --permanent --remove-forward-port=port=3306:proto=tcp:toport=3336:toaddr --zone=public --add-port=8080-8083/tcp 删除某个端口 firewall-cmd --permanent --zone=public --remove-port=81 " port protocol="tcp" port="6379" accept" firewall-cmd --permanent --add-rich-rule="rule family="ipv4
firewall-cmd --zone=public --add-port=443/tcp --permanent firewall-cmd --zone=public --add-port=22/tcp --permanent firewall-cmd --zone=public --add-port=21/tcp --permanent firewall-cmd --zone=public --add-port =53/udp --permanent Firewall关闭常见端口命令: firewall-cmd --zone=public --remove-port=80/tcp --permanent firewall-cmd --zone=public --remove-port=443/tcp --permanent firewall-cmd --zone=public --remove-port=22/tcp --permanent firewall-cmd --zone=public --remove-port=21/tcp --permanent firewall-cmd --zone=public --remove-port
builder,
}) {
_insert(
isSingleton: true,
name: tag,
permanent: permanent permanent: permanent,
builder: builder,
fenix: fenix ?? tag,
bool permanent = false,
}) async {
return put(await builder(), tag: tag, permanent: tag, bool permanent = true}) =>
GetInstance().create(builder, tag: tag, permanent: permanent builder: builder,
permanent: permanent,
);
}
GetInstance 的 create 也是调用的 _insert 方法,区别是 isSingleton
firewalld firewalld-config Firewall开启常见端口命令 新增防火墙端口命令: firewall-cmd --zone=public --add-port=80/tcp --permanent firewall-cmd --zone=public --add-port=443/tcp --permanent firewall-cmd --zone=public --add-port=22 /tcp --permanent firewall-cmd --zone=public --add-port=21/tcp --permanent firewall-cmd --zone=public --add-port=53/udp --permanent 关闭端口 firewall-cmd --zone=public --remove-port=80/tcp --permanent firewall-cmd --zone=public --remove-port=443/tcp --permanent firewall-cmd --zone=public --remove-port=22/tcp --permanent
一步到位 1.先要移除已经开放的端口,如443 firewall-cmd --zone=public --remove-port=443/tcp --permanent 2.允许指定的IP或者IP段访问此端口 firewall-cmd --permanent --zone=public --add-rich-rule='rule family="ipv4" source address="173.245.48.0 /20" port protocol="tcp" port="443" accept' 3.重启 firewall-cmd --reload –permanent永久生效,没有此参数重启后失效 只允许特定的 firewall-cmd --reload //批量限制端口为 firewall-cmd --zone=public --remove-port=7000-7005/tcp --permanent firewall-cmd --reload 使用 firewall-cmd 配置 允许特定 IPv4 地址访问端口: sudo firewall-cmd --permanent --zone=public
自定义zone # 添加/删除zone firewall-cmd --new-zone=mysshzone --permanent firewall-cmd --delete-zone=mysshzone --permanent --get-ipsets 4mysshzone ## 查看ipset详细信息 firewall-cmd --permanent --info-ipset=4mysshzone --permanent --ipset=4mysshzone --add-entry=192.168.186.125 firewall-cmd --permanent --ipset=4mysshzone --remove-entry=192.168.186.125 firewall-cmd --permanent --ipset=4mysshzone --add-entry=192.168.186.1 --permanent --zone=mysshzone --add-source=192.168.186.103 firewall-cmd --permanent --zone=mysshzone
--add-port=2049/tcp $ firewall-cmd --permanent --add-port=2049/udp $ firewall-cmd --permanent --add-port =111/tcp $ firewall-cmd --permanent --add-port=111/udp $ firewall-cmd --permanent --add-port=30001/tcp $ firewall-cmd --permanent --add-port=30001/udp $ firewall-cmd --permanent --add-port=30002/tcp $ firewall-cmd --permanent --add-port=30002/udp $ firewall-cmd --permanent --add-port=30003/udp $ firewall-cmd --permanent --add-port=30003/tcp $ firewall-cmd --permanent --add-port=30004/tcp $ firewall-cmd --permanent --add-port
add-rich-rule='rule family="ipv4" source address="192.168.1.88" port port="4567" protocol="tcp" accept' --permanent add-rich-rule='rule family="ipv4" source address="192.168.1.88" port port="3306" protocol="tcp" accept' --permanent firewall-cmd --reload 以下是基于CentOS 7 firewalld简单配置,三节点分别执行以下命令 # firewall-cmd --add-port=3306/tcp --permanent # firewall-cmd --add-port=4567/tcp --permanent # firewall-cmd --add-port=4568/tcp --permanent # firewall-cmd --add-port=4444/tcp --permanent # firewall-cmd --reload 二、节点间数据加密配置 1、基本安全配置 默认情况下,Percona XtraDB
/tcp --permanent firewall-cmd --zone=public --add-port=8888/tcp --permanent firewall-cmd --zone=public --add-port=9999/tcp --permanent firewall-cmd --zone=public --add-port=9090/tcp --permanent firewall-cmd --zone=public --add-port=8086/tcp --permanent firewall-cmd --zone=public --add-port=8088/tcp --permanent tcp --permanent firewall-cmd --zone=public --add-port=8002/tcp --permanent firewall-cmd --zone=public --add-port=8001/tcp --permanent firewall-cmd --zone=public --add-port=8003/tcp --permanent firewall-cmd
命令: firewall-cmd --permanent --add-service=http firewall-cmd --permanent --add-service=https 案例 2: SSH 命令: firewall-cmd --permanent --add-service=ftp firewall-cmd --permanent --add-port=30000-31000/tcp # 命令: firewall-cmd --permanent --add-service=smtp firewall-cmd --permanent --add-service=pop3 firewall-cmd --permanent --add-service=imap 案例 7: NFS 服务 网络文件系统服务需要开放 2049 端口和其他相关端口。 命令: firewall-cmd --permanent --add-service=nfs firewall-cmd --permanent --add-service=rpc-bind firewall-cmd
--zone=public --add-port=9000/tcp firewall-cmd --permanent --zone=public --add-port=1514/udp firewall-cmd --add-port=27017/tcp --permanent --zone=public firewall-cmd --add-port=9200/tcp --permanent --zone=public internel firewall-cmd --list-all --zone=internal firewall-cmd --zone=internal --add-port=9000/tcp --permanent firewall-cmd --reload firewall-cmd --add-source=192.168.31.100/32 --permanent --zone=internal firewall-cmd (图片可点击放大查看) firewall-cmd --add-source=192.168.31.127/32 --permanent --zone=internal firewall-cmd --
Firewalld详解 端口映射 firewall-cmd --zone=external --add-port=5001/tcp --permanent firewall-cmd --add-forward-port =port=5001:proto=tcp:toaddr=192.168.0.150:toport=5001 --permanent firewall-cmd --add-forward-port=port =13799:proto=tcp:toaddr=192.168.0.33:toport=3389 --permanent firewall-cmd --remove-forward-port=port --permanent --zone=internal --add-interface=eth0 # firewall-cmd --permanent --zone=internal --change-interface -permanent --zone=public --add-service=smtp # firewall-cmd --permanent --zone=public --remove-service