macOS Sequoia change breaks networking for VPN, antivirus software program

Customers of macOS 15 ‘Sequoia’ are reporting community connection errors when utilizing sure endpoint detection and response (EDR) or digital personal community (VPN) options, and net browsers.

The problems are resolved when these instruments are deactivated, indicative of incomptibility points with the community stack.

Impacted customers on Reddit are describing issues with CrowdStrike Falcon and ESET Endpoint Safety, in addition to firewalls inflicting packet corruptions resulting in SSL failures within the net browsers or incapability to make use of ‘wget’ and ‘curl.’

Apple launched Sequoia on September sixteenth, describing it as “the latest version of the world’s most advanced desktop operating system.”

In a personal bulletin seen by BleepingComputer, CrowdStrike has suggested clients to not improve to macOS 15 due to modifications within the working system’s networking constructions.

“Due to changes to internal networking structures on macOS 15 Sequoia, customers should not upgrade until a Mac sensor is released that fully supports macOS 15 Sequoia,” reads the customer-only CrowdStrike bulletin.

Reportedly, SentinelOne Help additionally warned customers to not improve to macOS Sequoia simply but, because of usability points found just lately.

Folks have additionally reported intermittent connectivity points with Mullvad VPN and likewise company VPN merchandise they use for distant work, although ProtonVPN is reportedly working positive with the newest macOS launch.

Whereas Apple has not responded to press requests concerning the problems, BleepingComputer has discovered that the macOS 15 launch notes present {that a} characteristic within the working system’s firewall has been deprecated, which can be inflicting the problems.


Software Firewall settings are not contained in a property checklist. In case your app or workflow depends on altering Software Firewall settings by modifying /Library/Preferences/com.apple.alf.plist, then you could make modifications to make use of the socketfilterfw command line instrument as an alternative (124405935)

Google additionally factors to this modification as inflicting points in a current Chromium bug report, the place they are saying they should change how Google Chrome detects Mac firewall settings to make use of ‘socketfilterfw’ as an alternative.

Doable options

ESET has issued an advisory for these going through connection losses after upgrading to macOS Sequoia, suggesting that customers ought to navigate to System Settings > Community > Filters > and take away ESET Community from the checklist.

After restarting the system, the community connection must be purposeful with the ESET product operating usually.

Removing ESET from macOS's filters
Eradicating ESET from macOS’s filters
Supply: ESET

The safety vendor additionally famous that this solely works on Endpoint Safety model 8.1.6.0 and later, and ESET Cyber Security model 7.5.74.0 and later, as something older isn’t supported in macOS 15.

Safety researcher Wacław Jacek supplied a momentary answer to resolve firewall-induced issues in a weblog publish, however customers want to use it for every app they use.

Will Dormann highlighted the issue of the built-in firewall not dealing with UDP visitors correctly, inflicting DNS failures in lots of instances, and supplied a lower than perfect answer of “poking holes” in it to raise the troublesome limitations.

Dorman

In the meantime, a Mullvad VPN spokesperson informed us that they’re conscious of the problems their customers are going through within the newest macOS launch and are actively working in the direction of an answer.

“Our macOS developers are aware that Apple services are not fully functioning with the latest macOS 15 release. They are looking into this as we speak.” – Mullvad VPN spokesperson

In case you use EDR safety merchandise, VPNs, or depend on strict firewall configurations, it could be advisable to postpone transferring to macOS 15 for some time till the issues are addressed.

Recent articles

Customized Backdoor Exploiting Magic Packet Vulnerability in Juniper Routers

Jan 23, 2025Ravie LakshmananMalware / Enterprise Safety Enterprise-grade Juniper Networks...

Meet GhostGPT: The Malicious AI Chatbot Fueling Cybercrime and Scams

Irregular Safety uncovers GhostGPT, an uncensored AI chatbot constructed...