Monterey - Enable macOS Application Firewall

Information

The macOS Application Firewall is the built-in firewall that comes with macOS, and it _MUST_ be enabled.

When the macOS Application Firewall is enabled, the flow of information within the information system and between interconnected systems will be controlled by approved authorizations.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.security.firewall:
EnableFirewall:
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-4, 800-53|AC-6(1), 800-53|AC-19, 800-53|CM-6b., 800-53|CM-7, 800-53|CM-7(1), 800-53|SC-7, 800-53|SC-7(12), CCE|CCE-91055-4, CCI|CCI-000366

Plugin: Unix

Control ID: f7a4db8305e245bd87fe4db7d9f2322541ce4a307dec81065fccbe4592f809c1