firewall-cmd

list all information

# firewall-cmd --list-all

your-own-zone (active)
  target: default
  icmp-block-inversion: no
  interfaces: bond0 bond0.007
  sources:
  services: dhcpv6-client ssh
  ports: 1521/tcp 3181-3186/tcp 5128/tcp 22521/tcp 23521/tcp 24521/tcp 25521/tcp
  protocols:
  masquerade: no
  forward-ports:
  source-ports:
  icmp-blocks:
  rich rules:

currently set default zone?

# firewall-cmd --get-default-zone
your-own-zone

list all zones

# firewall-cmd --list-all-zones

choose your own zone (this time work)

firewall-cmd --set-default-zone=work

add your own port.

# firewall-cmd --permanent --zone=work --add-port=1521/tcp
# firewall-cmd --reload