Hi all,
Hopefully someone can give me some pointers on this one. I've been tasked with getting the firewall enabled on our macOS devices and I was running a basic config profile for while and couldn't trigger any in-bound alerts but as soon as we enabled it on the wider estate there was one specific .app that was asking for in-bound communication which I thought was strange as all signed apps should be enabled and all apps need to be signed to run on macOS, right???
Anyway, I tracked the binary down to...
"/Library/Application Support/projectstore/nwjs.app/Contents/Frameworks/nwjs Framework.framework/Versions/87.0.4200.88\\Helpers/nwjs Helper (Renderer).app"
Running "codesign -dv" against that app give me an identifier of "io.nwjs.nwjs.helper.renderer". This is the Bundle ID, right?
I've added the app name and Bundle ID to our firewall config profile and verified it's taken on a sample endpoint but I still get prompted for firewall access when I log in.
I can't help but feel I am just plain doing something wrong but I can't find any guides to detail exactly how I should be setting up these exemptions.
I need to get this implemented and documented for our other technicians but I'm failing to do it myself...
Any help / pointers would be welcome.
Thanks
Question
Unsuccessfully adding an application into our firewall config profile...
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
