APPL-15-002170 - The macOS system must disable iCloud Private Relay.

Information

Enterprise networks may be required to audit all network traffic by policy; therefore, iCloud Private Relay must be disabled.

Network administrators can also prevent the use of this feature by blocking DNS resolution of mask.icloud.com and mask-h2.icloud.com.

Solution

Configure the macOS system to disable the iCloud Private Relay by installing the 'com.apple.applicationaccess' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_macOS_15_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-268524r1034512_rule, STIG-ID|APPL-15-002170, Vuln-ID|V-268524

Plugin: Unix

Control ID: cff8804f8f9b22a7960386343292169001191ba802c5bb896e555ecf59f85e06