2.6.3 Enable Firewall

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

A firewall minimizes the threat of unauthorized users from gaining access to your system while connected to a network or the Internet.

Solution

Perform the following to implement the prescribed state:
Open System Preferences
Select Security & Privacy
Select Firewall
Select Turn On Firewall
Alternatively:
Run the following command in Terminal:
/usr/bin/defaults write /Library/Preferences/com.apple.alf globalstate - int <value>
Where <value> is:
1 = on for specific services
2 = on for essential services

See Also

https://benchmarks.cisecurity.org/tools2/osx/CIS_Apple_OSX_10.10_Benchmark_v1.1.0.pdf

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7, CSCv6|9.2

Plugin: Unix

Control ID: 62299f396b6a28c53c6fa6896aed11a12f8efbdc07d8e7c7b4faa124cc0b0637