2.6.4 Enable Firewall Stealth Mode

Information

Stealth mode on the firewall minimizes the threat of system discovery tools while connected to a network or the Internet.

Solution

Perform the following to implement the prescribed state:
1. Open System Preferences
2. Select Security & Privacy
3. Select Firewall Options
4. Select Enable stealth mode
Alternatively: Run the following command in Terminal:
sudo /usr/libexec/ApplicationFirewall/socketfilterfw --setstealthmode on

See Also

https://workbench.cisecurity.org/files/300

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|9.2

Plugin: Unix

Control ID: a761943ea3674444b30f286c66c59d672ae9e3970237bc0593570bc0b5d35d8e