Standards Group:
YALE-MSS-10: Network Exposure
YALE-MSS-10.2: Configure host firewalls to deny all unsolicited inbound traffic by default
Low Risk Endpoint
Not Required
Moderate Risk Endpoint
Required
High Risk Endpoint
Required
Low Risk Server
Not Required
Moderate Risk Server
Required
High Risk Server
Required
Low Risk Mobile Device
Not Required
Moderate Risk Mobile Device
Not Required
High Risk Mobile Device
Not Required
Low Risk Network Printer
Not Required
Moderate Risk Network Printer
Not Required
High Risk Network Printer
Not Required
Details
A properly configured host firewall is an element of layered defense that reduces the attack surface of a system.
Deny all incoming network connections by default, ensuring only traffic that is explicitly authorized is permitted.