APPL-14-002170 - The macOS system must disable iCloud Private Relay.

Information

Enterprise networks may be required to audit all network traffic by policy; therefore, iCloud Private Relay must be disabled.

Network administrators can also prevent the use of this feature by blocking DNS resolution of mask.icloud.com and mask-h2.icloud.com.

Solution

Configure the macOS system to disable the iCloud Private Relay by installing the 'com.apple.applicationaccess' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_macOS_14_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-259525r958478_rule, STIG-ID|APPL-14-002170, Vuln-ID|V-259525

Plugin: Unix

Control ID: 9062d37547ef0dc5a0cca6e7988e2610dda06853166bf5e1080f4f70515eec8a