Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-257242 | APPL-13-005050 | SV-257242r905359_rule | Medium |
Description |
---|
Firewalls protect computers from network attacks by blocking or limiting access to open network ports. Application firewalls limit which applications are allowed to communicate over the network. |
STIG | Date |
---|---|
Apple macOS 13 (Ventura) Security Technical Implementation Guide | 2024-02-06 |
Check Text ( C-60927r905357_chk ) |
---|
Verify the macOS system is configured to enable the built-in firewall with the following command: /usr/sbin/system_profiler SPConfigurationProfileDataType | /usr/bin/grep "EnableFirewall\|EnableStealthMode" EnableFirewall = 1; EnableStealthMode = 1; If "EnableFirewall" and "EnableStealthMode" are not set to "1", this is a finding. |
Fix Text (F-60868r905358_fix) |
---|
Configure the macOS system to enable the built-in firewall by installing the "Restrictions Policy" configuration profile. |