启动防火墙时报错
systemctl status firewalld -l
● firewalld.service - firewalld - dynamic firewall daemon
Loaded: loaded (/usr/lib/systemd/system/firewalld.service; disabled; vendor preset: enabled)
Active: failed (Result: timeout) since Wed 2021-12-22 08:32:26 CST; 1min 38s ago
Docs: man:firewalld(1)
Process: 21415 ExecStart=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS (code=exited, status=0/SUCCESS)
Main PID: 21415 (code=exited, status=0/SUCCESS)
Dec 22 08:30:55 tencent systemd[1]: Starting firewalld - dynamic firewall daemon...
Dec 22 08:30:55 tencent firewalld[21415]: WARNING: AllowZoneDrifting is enabled. This is considered an insecure configuration option. It will be removed in a future release. Please consider disabling it now.
Dec 22 08:32:25 tencent systemd[1]: firewalld.service start operation timed out. Terminating.
Dec 22 08:32:26 tencent systemd[1]: Failed to start firewalld - dynamic firewall daemon.
Dec 22 08:32:26 tencent systemd[1]: Unit firewalld.service entered failed state.
Dec 22 08:32:26 tencent systemd[1]: firewalld.service failed.
修改`/etc/firewalld/firewalld.conf `文件,将`AllowZoneDrifting`改为no,重启防火墙
如发现继续报错为
systemctl status firewalld -l
● firewalld.service - firewalld - dynamic firewall daemon
Loaded: loaded (/usr/lib/systemd/system/firewalld.service; disabled; vendor preset: enabled)
Active: failed (Result: timeout) since Wed 2021-12-22 08:38:41 CST; 33s ago
Docs: man:firewalld(1)
Process: 22825 ExecStart=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS (code=exited, status=0/SUCCESS)
Main PID: 22825 (code=exited, status=0/SUCCESS)
Dec 22 08:37:10 tencent systemd[1]: Starting firewalld - dynamic firewall daemon...
Dec 22 08:38:40 tencent systemd[1]: firewalld.service start operation timed out. Terminating.
Dec 22 08:38:41 tencent systemd[1]: Failed to start firewalld - dynamic firewall daemon.
Dec 22 08:38:41 tencent systemd[1]: Unit firewalld.service entered failed state.
Dec 22 08:38:41 tencent systemd[1]: firewalld.service failed.
继续在终端执行
systemctl stop firewalld;pkill -f firewalld;systemctl start firewalld
此时查看`firewalld`服务,服务启动正常
systemctl status firewalld -l
● firewalld.service - firewalld - dynamic firewall daemon
Loaded: loaded (/usr/lib/systemd/system/firewalld.service; disabled; vendor preset: enabled)
Active: active (running) since Wed 2021-12-22 08:40:51 CST; 2s ago
Docs: man:firewalld(1)
Main PID: 23655 (firewalld)
Tasks: 2
Memory: 21.8M
CGroup: /system.slice/firewalld.service
└─23655 /usr/bin/python2 -Es /usr/sbin/firewalld --nofork --nopid
Dec 22 08:40:49 tencent systemd[1]: Starting firewalld - dynamic firewall daemon...
Dec 22 08:40:51 tencent systemd[1]: Started firewalld - dynamic firewall daemon.