firewall-cmd --permanent --zone=public --add-masquerade firewall-cmd --permanent --zone=public --add-service=http firewall-cmd --permanent --zone=public --add-forward-port=port=80:proto=tcp:toport=80:toaddr=192.168.1.10 firewall-cmd --reload参考: https://myredhatcertification.com/2015/04/26/firewalld-masquerade-forwarding-transparent-proxy/