An XCCDF Group - A logical subset of the XCCDF Benchmark
/etc/firewalld/services
/etc/firewalld/zones
firewall-cmd
firewalld
firewall-cmd --permanent --add-port=port_number/tcp
firewall-cmd --permanent --add-service=service_name
$ sudo firewall-cmd --permanent --direct --add-rule ipv4 filter INPUT_direct 0 -p tcp -m limit --limit 25/minute --limit-burst 100 -j INPUT_ZONES
drop
/etc/firewalld/firewalld.conf
DefaultZone=drop