Outgoing Firewall

simon_brooke
New Contributor III

Hi All,

 

I need to replace an existing agent functionality which limits outgoing connections. 

We are in the process of testing another agent and need to be able to replicate the same functionality on the outgoing firewall.

How have been reading about editing the PF config file. 

Are there any other more manageable and "cleaner" options.

TIA.

1 REPLY 1

AJPinto
Honored Contributor III

Generally speaking, use the right tool for the job or have a bad time. I would look into an enterprise solution for what you are needing. Tools like Sentinel One can manage the macOS Firewall directly. Or if you want to approach this from the network and firewall hardware side ForcePoint, Netscope, and Zscaler can all perform TLS traffic redirection and block/allow anything you want to specify. Jamf also has some offerings like Jamf Safe internet, but I dont think they are mature enough to compete yet.