3.6.1.1 Ensure a Firewall package is installed

Information

A Firewall package should be selected. Most firewall configuration utilities operate as a front end to nftables or iptables.

Rationale:

A Firewall package is required for firewall management and configuration.

Solution

Run one of the following commands to install the Firewall package that follows local site policy:
To install UFW, run the following command:

# apt install ufw

To install nftables, run the following command:

# apt install nftables

To install iptables, run the following command:

# apt install iptables

See Also

https://workbench.cisecurity.org/files/2971

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CSCv6|9.2, CSCv7|9.4

Plugin: Unix

Control ID: f80698e42c6771a9e08c15b6ecd16a1961c3bef0c401e3683996ce77566c5a2e