2.4.2 Disable Internet Sharing

Information

Internet Sharing uses the open source 'natd' process to share an internet connection with other computers and devices on a local network. This allows the Mac to function as a router and share the connection to other, possibly unauthorized, devices.

Rationale:

Disabling Internet Sharing reduces the remote attack surface of the system.

Solution

Perform the following to implement the prescribed state:

1. Open System Preferences
2. Select Sharing
3. Uncheck Internet Sharing

See Also

https://workbench.cisecurity.org/files/2112

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CSCv6|3.1

Plugin: Unix

Control ID: d1050e0d754a49cb19d1d9151b8af0b1cb268fc0589b433cde5d8d0d8277f34a