firewall-cmd --state firewall-cmd --get-default-zone firewall-cmd --get-active-zones firewall-cmd --zone=Z --list-all firewall-cmd --permanent --zone=Z --add-source=127.0.0.1/8 firewall-cmd --zone=public --add-masquerade --permanent firewall-cmd --direct --passthrough ipv4 -t nat -I POSTROUTING -o IFACE -j MASQUERADE -s PRIVATE_NET firewall-cmd --list-services firewall-cmd --zone=public --add-service=https firewall-cmd --zone=public --add-service=https --permanent firewall-cmd --list-ports firewall-cmd --zone=public --add-port=N/tcp firewall-cmd --zone=public --add-port=N/tcp --permanent firewall-cmd --list-rich-rules