11.5. Testing the Firewall

Once you have closed the ports and configured your firewall to your liking, you will want to test impact of your security change and verify that the services you have denied are no longer accessible. Performing a port scan is the best way to test the configuration. A port scan will check whether a service is available to other systems. Apple has included a port scanner in Network Utility, which is located at /Applications/Utilities (see Figure 11-9). Port scanning is explored in more depth in Chapter 10.

Figure 11-9. Port scanning with Network Utility

NOTE

The ability to run a port scan on versions of OS X older than ...

Get Enterprise Mac Security: Mac OS X Snow Leopard now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.