Posted on 08-05-2024 05:24 AM
Hi All,
I need to replace an existing agent functionality which limits outgoing connections.
We are in the process of testing another agent and need to be able to replicate the same functionality on the outgoing firewall.
How have been reading about editing the PF config file.
Are there any other more manageable and "cleaner" options.
TIA.
08-05-2024 06:28 AM - edited 08-05-2024 06:28 AM
Generally speaking, use the right tool for the job or have a bad time. I would look into an enterprise solution for what you are needing. Tools like Sentinel One can manage the macOS Firewall directly. Or if you want to approach this from the network and firewall hardware side ForcePoint, Netscope, and Zscaler can all perform TLS traffic redirection and block/allow anything you want to specify. Jamf also has some offerings like Jamf Safe internet, but I dont think they are mature enough to compete yet.