Visual firewall profile builder for macOS MDM
Firewall Builder configures macOS firewall settings, application exceptions, stealth mode, and the handling of downloaded signed software. It emits a .mobileconfig XML profile for review before MDM deployment.
Available at no cost in any modern web browser. JavaScript is required to generate output.
<key>EnableStealthMode</key>
<true/>
Use it when firewall policy needs a repeatable profile. Do not use it to infer whether a third-party network product has its own firewall controls.
EnableLogging and LoggingOption keys: they were valid com.apple.security.firewall payload keys in macOS 12.0–14.6 and were removed by Apple in macOS 15.0 (previously described as "system preference keys only")EnableLogging and LoggingOption keys — Apple deprecated and removed them from the com.apple.security.firewall payload in macOS 15.0 (they were valid in macOS 12.0–14.6)EnableFirewall — Apple's spec marks this as mandatory