APPL-14-002170 - The macOS system must disable iCloud Private Relay.

Information

Enterprise networks may be required to audit all network traffic by policy; therefore, iCloud Private Relay must be disabled.

Network administrators can also prevent the use of this feature by blocking DNS resolution of mask.icloud.com and mask-h2.icloud.com.

Solution

Configure the macOS system to disable the iCloud Private Relay by installing the "com.apple.applicationaccess" configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_macOS_14_V1R2_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000381, Rule-ID|SV-259525r941197_rule, STIG-ID|APPL-14-002170, Vuln-ID|V-259525

Plugin: Unix

Control ID: a758818dbb97024a6195692c8674dd84fd917d5090400d0f1255031bd27a955c