3.5.1.4 Ensure firewalld service enabled and running - status

Information

firewalld.service enables the enforcement of firewall rules configured through firewalld

Rationale:

Ensure that the firewalld.service is enabled and running to enforce firewall rules configured through firewalld

Impact:

Changing firewall settings while connected over network can result in being locked out of the system.

Solution

Run the following command to unmask firewalld

# systemctl unmask firewalld

Run the following command to enable and start firewalld

# systemctl --now enable firewalld

See Also

https://workbench.cisecurity.org/files/3636

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CCI|CCI-000366, CSCv7|9.4, Rule-ID|SV-204604r603261_rule, STIG-ID|RHEL-07-040520

Plugin: Unix

Control ID: 93eb447090954237f72b8cf25eeac9bee0ce657c3e33dfd72035c6ff145eeb99