Host-based Firewall Policy for the OIT Managed Desktop Service


This document is intended to outline the OIT Managed Desktop supported device compliance with the Host-based Firewall control within the Endpoint Protection Standard.

 

 

Information

 

The OIT Managed Desktop Service meets compliance with the Host-based Firewall control of the Endpoint Protection Standard on all endpoints in our environment.  We accomplish this by joining the endpoint to the appropriate Configuration Management System (CMS) where the firewall settings are applied through the CMS. 

Windows

OIT’s Managed Desktop environment uses the campus Host-Based firewall configuration. Windows systems that are joined to the WolfTech AD domain are, by default, subject to the domain level security baseline group policies that exist for each version of Windows.

The security baseline “Domain Profile”:

 

an image of the windows server settings showing the specific settings that have been enabled for host-based firewall

MacOS

OIT’s Managed Desktop environment uses the best practice recommended by MacTech. The custom Apple Configuration Profile is loaded into Jamf and scoped for all machines in our site. 

The security baseline “Configuration Profile”:

 

image of the dialog window on a Mac confirming that host-based firewall is enabled.

 

 

 

Escalation

 

Any questions on process or content contained in this document should be escalated through the NCSU Help desk and a have an incident assigned to the OIT_DESKTOP_SUPPORT team. 

 

 

Related Documentation

 

https://policies.ncsu.edu/rule/rul-08-00-18/

https://sites.google.com/ncsu.edu/mactechgroup/home

 

 

Title: Host-based Firewall Policy for the OIT Managed Desktop Service
Service: Network & Connectivity Management
Template if applicable: NA
Assignment Group(s): (OIT_DESKTOP_SUPPORT
Document Owner: OIT_DESKTOP_SUPPORT
Available Priorities: Critical, High, Medium, Low
Keywords: OIT Managed Desktop Service, policy, Endpoint Protection Standard,  compliance, is my computer compliant with the host-based firewall control, controls,  OIT Managed Desktop Host-based Firewall Policy, host based firewall,  windows, mac, macOS