3.5.1.4 Ensure firewalld service is enabled and running - running

Information

firewalld.service enables the enforcement of firewall rules configured through firewalld

Rationale:

Ensure that the firewalld.service is enabled and running to enforce firewall rules configured through firewalld

Impact:

Changing firewall settings while connected over network can result in being locked out of the system.

Solution

Run the following command to unmask firewalld

# systemctl unmask firewalld

Run the following command to enable and start firewalld

# systemctl --now enable firewalld

See Also

https://workbench.cisecurity.org/files/2925

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv7|9.4

Plugin: Unix

Control ID: 2312e36fd5822b7d5060dbd78ff61bf8e8ef0002504e98f1330e8d983f4101c2