AOSX-09-000155 - The system firewall must be configured with a default-deny policy.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

An approved firewall must be installed and enabled to work in concert with the Mac OS X Application Firewall. When configured correctly, firewalls protect computers from network attacks by blocking or limiting access to open network ports.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install an approved HBSS or firewall solution onto the system and configure it with a default-deny policy.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Apple_OS_X_10-9_Workstation_V1R2_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000366, Group-ID|V-58305, Rule-ID|SV-72735r1_rule, STIG-ID|AOSX-09-000155

Plugin: Unix

Control ID: a4fc77f489db83974a61187b3151525c82fb6ac76c69b6e0d011463b1cf6abff