4.520 - The system must enable an application firewall, if available - installed

Information

Firewalls protect computers from network attacks by blocking or limiting access to open network ports. Application firewalls limit which applications are allowed to communicate over the network.

Satisfies: SRG-OS-000480-GPOS-00227, SRG-OS-000480-GPOS-00231, SRG-OS-000480-GPOS-00232

Solution

Ensure the operating system's application firewall is enabled.

Install the 'firewalld' package, if it is not on the system, with the following command:

# yum install firewalld

Start the firewall via 'systemctl' with the following command:

# systemctl start firewalld

See Also

https://docs.fedoraproject.org/f28/system-administrators-guide/index.html

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5), CAT|II, CCI|CCI-000366, CSCv6|2.2

Plugin: Unix

Control ID: de709bb009de2ce236839b1d44bd7099f59fd6db85fc7608ef465242d91917d4