Should I enable OS X built-in firewall ?

Coming from a Windows platform I am adjusting to OS X security. I noticed that the Mac's firewall is disabled by default and got me thinking as to why ? On Windows you had it configured for both home and public networks. Do you recommend to enable OS X firewall ? While on the subject, is having antivirus software also needed ? Any other security tips ? Thanks for your time.

arthur wrote:
If you have a router, the router already has a hardware firewall built in, so you don't need your mac (software) firewall. That's why it's turned off by default.
Just keep up with the mac updates, and don't worry about viruses.
I like my privacy, so I use Little Snitch, which is like a firewall for outgoing network traffic. It alerts you when an app is trying to phone home, which many do without telling you. Little Snitch
How so concerning outgoing connections ?

Similar Messages

  • Windows 7 Built-In Firewall Filtering Platform Blocking Outlook.exe Even Though Firewall Off

    (this post was originally started here,
    http://answers.microsoft.com/en-us/office/forum/office_2010-outlook/windows-7-built-in-firewall-filtering-platform/7312a367-3a9f-470a-b6c7-56c041630af1, but recommended to move to this forum)
    I first encountered this problem on a Windows 7 computer running Outlook 2007 a couple of weeks ago. The system kept asking the primary user for a password to connect to our Exchange Service. The user kept typing in the correct password, but it would never
    connect. Using Outlook Web Access from the same computer with the same user and password was successful, so the credentials and network connection seemed good.
    After checking the Security Logs, I found pairs of Event 5152 and 5157 whenever the user tried to enter a password. Example events are listed below (although they are from the most recent incidence). I found out that the Filtering Platform is supposed to
    be part of Windows Firewall, but couldn't find much other information about it. However, the Windows Firewall is turned off by Group Policy (verified by looking in the Control Panel for Window Firewall), so I didn't think it should be blocking anything. Oddly
    enough, the Windows Firewall service was running on this computer, but it was running on all computers, even if they didn't have this problem.
    I found that I could make the problem go away by stopping the Windows Firewall service. However, it seems odd that would be necessary. It seems a bit of a kludgy fix.
    I hoped that the problem would only by on one system and could let it go for a bit. Unfortunately, I just had the problem crop up on a new Windows 7 system with Outlook 2010 installed.
    At this point, I'm concerned about what might be causing it and that it might start happening on all our systems. I could stop the Windows Firewall service on all of them, but I'd like to understand what might be happening more before taking that action.
    For reference, both systems have received all Automatic Updates and are running the McAfee Total Protection Service anti-virus and firewall services.
    Any thoughts or suggestions would be appreciated.
    Thanks in advance,
    indyvql
    Log Name:      Security
    Source:        Microsoft-Windows-Security-Auditing
    Date:          3/9/2015 9:05:38 AM
    Event ID:      5152
    Task Category: Filtering Platform Packet Drop
    Level:         Information
    Keywords:      Audit Failure
    User:          N/A
    Computer:      usercomputer.domain.com
    Description:
    The Windows Filtering Platform has blocked a packet.
    Application Information:
     Process ID:  10712
     Application Name: \device\harddiskvolume3\program files\microsoft office\office14\outlook.exe
    Network Information:
     Direction:  Outbound
     Source Address:  <IP Address of User Computer>
     Source Port:  55279
     Destination Address: <Unknown IP Address in 192.168 Subnet, Which is Not Used By Us>
     Destination Port:  443
     Protocol:  6
    Filter Information:
     Filter Run-Time ID: 67045
     Layer Name:  Connect
     Layer Run-Time ID: 48
    Log Name:      Security
    Source:        Microsoft-Windows-Security-Auditing
    Date:          3/9/2015 9:05:38 AM
    Event ID:      5157
    Task Category: Filtering Platform Connection
    Level:         Information
    Keywords:      Audit Failure
    User:          N/A
    Computer:      usercomputer.domain.com
    Description:
    The Windows Filtering Platform has blocked a connection.
    Application Information:
     Process ID:  10712
     Application Name: \device\harddiskvolume3\program files\microsoft office\office14\outlook.exe
    Network Information:
     Direction:  Outbound
     Source Address:  <IP Address of User Computer>
     Source Port:  55279
     Destination Address: <Unknown IP Address in 192.168 Subnet, Which is Not Used By Us>
     Destination Port:  443
     Protocol:  6
    Filter Information:
     Filter Run-Time ID: 67045
     Layer Name:  Connect
     Layer Run-Time ID: 48

    Hi indyvql,
    "..are running the McAfee Total Protection Service anti-virus and firewall services."
    - So you've enabled McAfee firewall? If you have McAfee firewall turned on, then everything is managed by McAfee Personal Firewall which might cause the issue.
    To troubleshoot the issue, I would suggest we first disable McAfee temporarily, then try again.
    Also, as you've mentioned, please go ahead to have a test with just updating McAfee but not stopping the Windows Firewall service, then verify result.
    Regards,
    Ethan Hua
    TechNet Community Support
    It's recommended to download and install
    Configuration Analyzer Tool (OffCAT), which is developed by Microsoft Support teams. Once the tool is installed, you can run it at any time to scan for hundreds of known issues in Office
    programs.
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact
    [email protected]

  • How to enable recommended settings in the Firewall in my network

    Situation: we are using Windows 7 Pro on client machines in a domain environment. Windows Firewall is turned on by default. But we install Symantec Endpoint Protection which has a built-in firewall. Every time we install new version of Symantec Windows Firewall
    shows that it is not using the Recommended settings. When this happens, we have problems pinging machines, connecting via RDP or sending files in out instant messaging application. One can press the "Use the recommended settings" button and after
    providing the administrator password the error goes away. After the next system startup Symantec takes over this page and there is a messages that Symantec is managing firewall settings. Everything works fine till another Symantec program update (not the definitions).
    I'm trying to find a way to "press that button" automatically, so i can deploy it to all users, preferably via GPO. But so far i haven't found a way. It looks like GPO only allows to change single options, not to apply some scheme. Yet if i compare
    settings on two machines (one with error, one without) it shows the same result - all Network Connections > Windows Firewall > etc. settings are Not Configured.
    I have found this topic https://social.technet.microsoft.com/Forums/windows/en-US/1c35af41-6e48-479f-a71f-3a16e119d828/windows-firewall-not-using-recommended-settings?forum=itprovistanetworking
    But if i check permissions for that key on both machines, permissions are the same (though not Full).

    Did that resolve your issue? If yes, please mark your answer to help others!
    Don't forget to mark the post that solved your issue as &quot;Answered.&quot; By marking the Answer you are enabling users with similar issues to find what helped you. Lewis Renwick - IT Professional

  • Apparently I don't need built in Firewall if I have hardware firewall?

    I keep having all these dropped internet connections, browser/page load failures in safari especially, but all browsers (camino, firefox, devonagent)...
    so i tried turning off the firewall option in the 660 Zyxel ADSL modem provided by my crappy internet provider. At that point I had both OSX firewall enabled (including advanced stealth option), along with Netbarrier.
    Guess what: when I did the shields up port scan tests at GRC.com, the OSX build in firewall and Netbarrier FAILED both together and separately.
    But when I turned off those OS X firewall apps, and *turned on ONLY the hardware firewall built in to the Zyxel modem, it passed as STEALTH*.
    So why would I need or use OS X built-in firewall or netbarrier at all since they fail the port scans and probes and apparently are a significant contributor to the failed or dropped internet connection problems so prodigiously documented (and not fixed) here and at mac, dsl, networking discussion boards everywhere?
    Why doesn't the 'stealth' option of the built-in firewall of OSX work?

    Hi MacMacster-
    Greetings and welcome to the Apple boards.
    You are absolutely correct in that you really don't need both FireWalls on and working if one configured correctly does the job for you. Netbarrier is a waste considering your other options.
    All you really need is one robust FireWall at the point-of-entry of your network traffic. It sounds like modem's firewall is the one that you want to use. I really have no idea why things worked or didn't the way that they did.
    Luck-
    -DaddyPaycheck

  • [nForce] K7N2 Delta Platinum built in firewall, advice?

    Ok... well how many of you are using this built in firewall?
    I have obtained two versions
    Network management tools version 4.57 from the 6.11 package
    and
    Network management tools version 4.66 from the 6.37 package
    currently I am using zone alarm and I am satisfied but some of the programs I use (dc++) do not like zone alaram
    so some od the downloaded files are corrupt (skipping mp3s and corrupted zip files)
    to conclude I would like to know are you people that are using this (nforce) firewall satisifed?
    and which one should I install?

    The firewall uses a technology called SPI, stateful packet inspection.
    Every packet that comes in is checked for a few things,
    Like your IP address inside the packet. (destination of the packet)
    If you IP address is not there then the packet is blocked.
    This type of firewall is very secure but unlike software firewalls you do not have
    application filtering.
    The SPI firewall allows a program through the firewall or blocks it.
    A good software firewall allows the program + you specify the ports for that program.
    With the SPI one if you specify a port it will open a hole in the firewall and allow
    anything to come in/out.
    Do you see how the software one is more flexible?
    Apart from that the firewall does work, I use it with a NAT based firewall in my router.
    If you are downloading / using P2p programs the software firewall is much better, The firewall can cause some P2P programs to freeze.
    A few people experience terrible problems with the firewall, random crashes/BSODs.
    No one knows why yet.
    The nvidia website has a lot of info about the firewall too.
    http://www.nvidia.com/object/feature_activearmor.html
    http://www.nvidia.com/object/IO_16451.html
    http://www.nvidia.com/object/IO_13034.html
    Your one does not have active armour but the firewall is exactly the same.
    Now you should check your memory.
    The best advice in the world and you choose to ignore it. 

  • Hey Guys, My ipad is disabled, and i havenot synced it with any computer yet, and I am not using find my iphone, how should I enable it?

    Hey Guys, My ipad is disabled, and i havenot synced it with any computer yet, and I am not using find my iphone, how should I enable it?

    You will need to restore it as new. unfortunately you will lose any data not saved but you can still redownload all of your apps.
    http://support.apple.com/kb/ht1414

  • E payment should be enabled so that the user could make payment directly from SAP and after the payment is verified ,approved and authorized by the concerned users responsible the payment should be electronically transferred to the payee's bank account th

    E payment should be enabled so that the user could make payment directly from SAP and after the payment is verified ,approved and authorized by the concerned users responsible the payment should be electronically transferred to the payee’s bank account through our bank.

    Thanks,
    I usually use the OS connection option. So as you suggest, connect without the ISP connection software.  Doing so does not by-pass the sudo command being active in Activity Monitor however. 
    On reading my post I see my failure to link the concerns of the laptop purchase with the sudo and modem. My thought here is of an intersection of known vulnerability with this widely used modem/software (via permanent sudo process activated) and that vulnerability then being known and utilised by another party(s).
    I am pursuing the issue in part with consideration to a broader possible issue of vulnerability.
    Thanks again for your thoughts and suggestions. Valued.

  • When creating a tablespace why should we enable LOGGING when a database is already on ARCHIVE LOG mode

    Question :
    When creating a tablespace why should we enable LOGGING when a database is already on ARCHIVE LOG mode ?
    Example:
    Create Tablespace
    CREATE SMALLFILE TABLESPACE "TEST_DATA"
    LOGGING
    DATAFILE '+DG_TEST_DATA_01(DATAFILE)' SIZE 10G
    AUTOEXTEND ON NEXT  500K MAXSIZE 31000M
    EXTENT MANAGEMENT LOCAL
    SEGMENT SPACE MANAGEMENT AUTO;
    LOGGING: Generate redo logs for creation of tables, indexes and  partitions, and for subsequent inserts. Recoverable
    Are they not logged and not recoverable if we do not enable LOGGING? What is that ARCHIVELOG mode does?

    What is that ARCHIVELOG Mode Does?
    Whenever your database is in archive log mode , Oracle will backup the redo log files in the form of Archives so that we can recover the database to the consistent state in case of any failure.
    Archive logging is essential for production databases where the loss of a transaction might be fatal.
    Why Logging?
    Logging is safest method to ensure that all the changes made at the tablespace will be captured and available for recovery in the redo logs.
    It is just the level at which we defines:
    Force Logging at DB level
    Logging at Tablespace Level
    Logging at schema Level
    Before the existence of FORCE LOGGING, Oracle provided logging and nologging options. These two options have higher precedence at the schema object level than the tablespace level; therefore, it was possible to override the logging settings at the tablespace level with nologging setting at schema object level.

  • How do I enable iTunes in the Windows Firewall

    How do I enable iTunes in the Windows Firewall?  I use ESET Security which manages my Firewall.

    Try this document instead:
    iTunes 10 for Windows: Enable iTunes in the Windows Firewall

  • When radio button is enabled the block should be enable

    I have a 4 radio buttons and a four blocks in a same single canvas , and when ever i enable a radio button the related block should get enable .. pls help me with coidng

    Use the when-radio-changed trigger. There is a RADIO BUTTON VALUE property per radio item. You can place in the trigger...
    IF CONTROL.TEMP_RADIO_BUTTON = 1 THEN
    SET_BLOCK_PROPERTY ('BLOCK1', ENABLED, PROPERTY_TRUE);
    ELSIF...
    END IF;
    Hope this helps...

  • Should I enable TLS on my iCloud email and what exactly does it do?

    Should I enable TLS on my icloud email account and what exactly does it do?  I searched googled and have no clue what they are saying.  Please keep it simple.  Thank you very much!

    Ignore what it does do and concentrate on the fact that it does not do "add storage onto your iphone".

  • Adobe reader: Edit - Preferences, Categories: Documents, Open Settings - Restore last view settings when reopening documents  :: should be enabled by default

    Adobe reader: Edit -> Preferences, Categories: Documents, Open Settings -> Restore last view settings when reopening documents  :: should be enabled by default as most users are not aware of this feature and have to write down their page number some where in text file or sticky notes

    Bug Reports or Feature Requests should be filed at https://www.adobe.com/cfusion/mmform/index.cfm?name=wishform

  • Apple should have had Airport Express built in to iPod HiFi

    Apple should have had Airport Express built in to iPod HiFi

    I am constrained to point out that the iPod Hi-Fi currently lists for $349 US and the Airport Express (AE) for $129 US. That would be a ≈$478 product with a greatly narrowed sales appeal. Assuming they could reduce the cost by losing the plastic case package, it would still be forcing those who did not desire that function to pay for it anyway. I believe it to be more flexible and appealing to a broader audience without.

  • I wish to keep my incomming / outgoing calls  switched off, while 3g / E should be enabled,

    I wish to keep my incomming / outgoing calls  switched off, while 3g / E should be enabled, I dont want to be disturbed with incomming calls while surfing, is there some way to do this in Iphone 4.?

    No. The only thing you can do is reject the call when it comes in.

  • Does the built in firewall work with other cards

    Hi,
    First post and probably a dumb one, but couldn't find an answere: does the built in firewall (MSI 7030) work exclusively with the built in NIC? I am using a WiFi Netgear MA111 dongle - but couldn't force the firewall to work with it. It does work fine with the built in NIC but I don't want to drag the cable through my flat.....
    BTW: great forum, as I switched from Abit NF7S to the MSI K8N - i started to use this one and found some really great ideas!!!
    Regards,
    Bartek

    no.  the firewall is part of the nic.

Maybe you are looking for

  • How to get cpu id in labview

    how can i get cpu id as a string in labview. actually i am trying to make my VI computer specific . so i need help is getting tthe cpu id in my vi regards Regards

  • OSB cluster networking

    We're attempting to implement OSB in a highly-available configuration. We're running WLS 10.3.4/OSB 11.1.1.4 on 64bit OEL 5.4/SunJava 1.6.0_23. We have OSB running standalone in a number of environments, but need a fault-tolerant design. Per the ["Wh

  • UK QWERTY Pre 3 Dead! any advice?

    Hi, went to bed a few days ago while both my Pre 3 and Touchpad were charged, working and paired. woke up and the Pre 3 was dead. tried charging it via AC, Touchstone and PC USB but nothing works. I have a Pre- and a Pre 2 so I know the chargers are

  • Not seeing STARTTLS advertised in EHLO but SMTP logs show it?

    Exchange 2010 SP3ur8 on 2008R2 SP1 fully patched, single server, static IP address, default settings with self-signed SMTP certificate and Internet receive connector setup for TLS.  Email, OWA, Activesync all working fine, ESET mail security 4.5.  So

  • Cluster document

    Hi all, I am planning to install the cluster on our machines, can anyone please provide us the good documentation on how to install soa on a cluster environment and performance tuning document too. Currently we are running on standalone installation.