Categories: News

Apple’s Private Relay can cause the system to ignore firewall rules

Apple’s Private Relay feature calls home to Apple servers without respecting the firewall rules of the system, creating a leak that neither we, nor you, can stop without disabling the entire Private Relay feature, according to a report from Mullvad VPN.

According to Apple, iCloud Private Relay — announced with iOS 15 — is a service that lets you connect to virtually any network and browse with Safari in an even more secure and private way. The tech giant says it ensures that the traffic leaving your device is encrypted and uses two separate internet relays so no one can use your IP address, location, and browsing activity to create a detailed profile about you.

From the Mullvad VPN report: When we at Mullvad monitored our network connections while doing development on our app, we saw something that should not be there: QUIC traffic leaving the computer outside the VPN tunnel! This is a leak! We tracked the sending down to the Private Relay feature, and disabling the Private Relay made the leaks stop. We do not know for sure that the traffic belongs to Private Relay, but it sure does trigger it.

It is worth noting that Private Relay (mostly) disables itself as soon as any firewall rule is added to PF (the system firewall on macOS devices). The Mullvad VPN app does add firewall rules. Once you connect the Mullvad app, Private Relay announces that it has disabled itself. We see no correlation between user traffic and the leaking packets. We believe they are just some heartbeat signal calling home to Apple. We do not know what information is transmitted to Apple, but since the destination is Apple servers, it is a strong signal to your local network and ISP that you might be a macOS user.

There seems to be no way to prevent Private Relay from leaking this traffic, other than disabling the feature altogether. This is done in the same place where it is turned on. See Apple’s instructions.

Dennis Sellers

Dennis Sellers is the editor/publisher of Apple World Today. He’s been an “Apple journalist” since 1995 (starting with the first big Apple news site, MacCentral). He loves to read, run, play sports, and watch movies.

Recent Posts

I’ve eliminated most of the ads at ‘Apple World Today’, so I hope you’ll support the site

As you’ve probably noticed (at least I hope you have, or else I’ve made a…

5 hours ago

Top Apple-related stories this week (May 13-17)

Here are the top Apple-related articles at Apple World Today for the week of May…

5 hours ago

Optimizing Time Management: How AI Email Writer Can Help

One of the biggest reasons people are starting to lean on AI for knowledge and…

5 hours ago

What Are The Best Free Online Games to Play Directly From Your Browser?

The internet offers infinite forms of entertainment, and the world of on-line gaming isn't any…

5 hours ago

Today’s deal: PDF Expert Premium Plan: Lifetime Subscription (Mac) for $79.99

PDF Expert is a uniquely fast, reliable, easy-to-use PDF editor that is built with the…

5 hours ago

Apple rumored to be developing a ‘significantly thinner version’ of the iPhone

Apple is developing a “significantly thinner version” of the iPhone that could be released next…

23 hours ago