ISSUE
Upgrading a macOS Ventura host to Sequoia results in the attached three issues visible in either of the two screen shot:
-
Whether or not "Block all incoming connections" is enabled, a small subset of connections are hard-wired to "Allow incoming connections";
-
It is not possible to remove the hard-wired "Allow incoming connections" (e.g., selecting the row, the "-" button at bottom left is not available"; and
-
After the upgrade to Sequoia, SidecarRelay was set to "Block incoming connections".
QUESTIONs
a) What terminal level commands should be used to remove the hard-wired "Allow incoming connections"?
b) What other integrity checks should I run on the firewall configuration to see if other aspects of its operations are now botched?
FB15074003 tracks the issues noted above.