{"repo":"alichtman/stronghold","free":true,"listed":false,"github":"https://github.com/alichtman/stronghold","clone":"git clone https://github.com/alichtman/stronghold.git","description":"Easily configure macOS security settings from the terminal.","language":"Python","stars":1191,"topics":["macos-setup","macos","security","osx","security-hardening","hardening","command-line-tool","command-line"],"license":"MIT","category":"cli-tools","readme_excerpt":"stronghold is the easiest way to securely configure your Mac. Designed for macOS Sierra and High Sierra. Not yet tested on macOS Mojave, but I'm working on updating it! Usage --- Installation Options --- 1. Install with pip + $ pip install stronghold + $ stronghold 2. Download the stronghold binary from Releases tab. Configuration Options --- 1. Firewall + Turn on Firewall? - This helps protect your Mac from being attacked over the internet. + Turn on logging? - If there IS an infection, logs are useful for determining the source. + Turn on stealth mode? - Your Mac will not respond to ICMP ping requests or connection attempts from closed TCP and UDP networks. 2. General System Protection + Enable Gatekeeper? - Defend against malware by enforcing code signing and verifying downloaded applications before allowing them to run. + Prevent automatic software whitelisting? - Both built-in and downloaded software will require user approval for whitelisting. + Disable Captive Portal Assistant and force login through browser on untrusted networks? - Captive Portal Assistant could be triggered and direct you to a malicious site WITHOUT any user interaction. 3. User Metadata Storage + Clear language modeling metadata? - This includes user spelling, typing and suggestion data. + Disable language modeling data collection? + Clear QuickLook metadata? + Clear Downloads metadata? + Disable metadata collection from Downloads? + Clear SiriAnalytics database? 4. User Safety + Lock Mac as soon as","default_branch":null,"files":null,"tree":[],"storefront":"/r/alichtman","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/alichtman/stronghold/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}