Are there any firewall experts in the house

X

XFce

Guest
Is there a way to make Apples built in firewall more secure ?
I blocked UDP and enabled stealth mode that helps but I would like to go under advanced settings and make the firewall more secure then it already is. Maybe disable cretin ports or add some type of bsd script or apply some type of rule that would block ports that are enabled by default but are not not being used. any suggestions would be appreciated.
 
Joined
Apr 29, 2006
Messages
4,576
Reaction score
378
Points
83
Location
St. Somewhere
Your Mac's Specs
Mac Studio, M1 Max, 32 GB RAM, 2 TB SSD
Apple's firewall is what it is. You can't do much else with it. You will need to go commercial (Norton for example) to get more control... unless you can figure out if iptables lies at the heart of the Mac OS X firewall - I haven't delved into that yet, but it just might. Given your userid (XFce) you may have more than a passing familiarity with iptables? :)
 
Joined
Feb 22, 2006
Messages
39
Reaction score
0
Points
6
Your Mac's Specs
Intel mini early 2011 4GB
XFce said:
Is there a way to make Apples built in firewall more secure ?
I blocked UDP and enabled stealth mode that helps but I would like to go under advanced settings and make the firewall more secure then it already is. Maybe disable cretin ports or add some type of bsd script or apply some type of rule that would block ports that are enabled by default but are not not being used. any suggestions would be appreciated.

Would this be of any use to you? http://www.macdevcenter.com/pub/a/mac/2005/03/15/firewall.html

I haven't switched yet, so my knowledge is limited to what I've been able to find through Google and my experience with rule-based firewalls on Windows. It sounds like OS X has an excellent bi-directional firewall, one just has to write the rules directly.
 
Joined
Oct 10, 2004
Messages
10,345
Reaction score
597
Points
113
Location
Margaritaville
Your Mac's Specs
3.4 Ghz i7 MacBook Pro (2015), iPad Pro (2014), iPhone Xs Max. Apple TV 4K
XFce said:
Is there a way to make Apples built in firewall more secure ?
I blocked UDP and enabled stealth mode that helps but I would like to go under advanced settings and make the firewall more secure then it already is. Maybe disable cretin ports or add some type of bsd script or apply some type of rule that would block ports that are enabled by default but are not not being used. any suggestions would be appreciated.

As far as I know, all the ports in the OSX firewall are closed unless opened by a specific App (Mail, Safari etc) or manually opened by the user. They are all closed by default.
 
Joined
Jan 29, 2005
Messages
790
Reaction score
13
Points
18
Location
Legoland
baggss said:
As far as I know, all the ports in the OSX firewall are closed unless opened by a specific App (Mail, Safari etc) or manually opened by the user. They are all closed by default.

Yes, unlike with windows. He he :dummy:
 

Shop Amazon


Shop for your Apple, Mac, iPhone and other computer products on Amazon.
We are a participant in the Amazon Services LLC Associates Program, an affiliate program designed to provide a means for us to earn fees by linking to Amazon and affiliated sites.
Top