4.520 - The system must enable an application firewall, if available - status

Information

Firewalls protect computers from network attacks by blocking or limiting access to open network ports. Application firewalls limit which applications are allowed to communicate over the network.

Satisfies: SRG-OS-000480-GPOS-00227, SRG-OS-000480-GPOS-00231, SRG-OS-000480-GPOS-00232

Solution

Ensure the operating system's application firewall is enabled.

Install the 'firewalld' package, if it is not on the system, with the following command:

# yum install firewalld

Start the firewall via 'systemctl' with the following command:

# systemctl start firewalld

See Also

https://docs.fedoraproject.org/f28/system-administrators-guide/index.html

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(12), CAT|II, CCI|CCI-000366

Plugin: Unix

Control ID: ba93d7d62196073a6a59e72736b060fdc06d4394a74d5fd5ab911add69a916f8