Configuring IPFW firewalls on OS X OS X comes with a unix firewall program called IPFW, and there are a variety of programs you can use to access it from the GUI. As of 10.2 Apple includes a tool in system preferences to enable the firewall, but it's a very simple implementation that will only enable or disable a port for the entire internet.

IPFW firewalls setup on Mac OS X Posted on January 13, 2013 by joseph 1 Comment I had occasion recently to try and figure out how to use the builtin firewall to prevent some "bot" from hitting the services running on a Macbook.

As mentioned earlier in “Understanding the Mac OS X v10.6 Server Firewall,” the firewall service in Mac OS X Server is built on top of ipfw, a kernel-based application. This means that the actual code for the ipfw service(s) is built into the kernel stack, making it extremely fast and secure from tampering.

Whilst Mac OS X includes the well-respected ipfw firewall (part of it's BSD-Unix heritage), said firewall is only as effective as its configuration. Sadly, the filtering rules set up by the OS X Firewall Preference Pane are woefully inadequate in this regard (see the References section if you want proof).

ipfw. If you've configured ipfw, Mac OS X's built-in packet filter software, be sure to allow outgoing UDP packets to port 88 and their responses through the filter. If you do not use ipfw, or you have only configured it using the GUI interface in Jaguar, you needn't worry about this.