Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-95999 | AOSX-14-005050 | SV-105137r1_rule | Medium |
Description |
---|
Firewalls protect computers from network attacks by blocking or limiting access to open network ports. Application firewalls limit which applications are allowed to communicate over the network. |
STIG | Date |
---|---|
Apple OS X 10.14 (Mojave) Security Technical Implementation Guide | 2020-05-29 |
Check Text ( C-94831r1_chk ) |
---|
If an approved HBSS solution is installed, this is Not Applicable. To check if the macOS firewall has been enabled, run the following command: /usr/bin/sudo /usr/libexec/ApplicationFirewall/socketfilterfw --getglobalstate If the result is "disabled", this is a finding. |
Fix Text (F-101669r1_fix) |
---|
To enable the firewall, run the following command: /usr/bin/sudo /usr/libexec/ApplicationFirewall/socketfilterfw --setglobalstate on |