3.4.1.1 Ensure a Firewall package is installed

Information

A Firewall package should be selected. Most firewall configuration utilities operate as a front end to nftables or iptables.

Rationale:

A Firewall package is required for firewall management and configuration.

Solution

Run one of the following commands to install the Firewall package that follows local site policy:
To install UFW, run the following command:

# apt install ufw

To install nftables, run the following command:

# apt install nftables

To install iptables, run the following command:

# apt install iptables

See Also

https://workbench.cisecurity.org/files/2970

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|9.2, CSCv7|9.4

Plugin: Unix

Control ID: a97c2eba9634e2d37cd23b3589e3b56e829a2afdfefc1e01e314f75b316cd6e9