NIST macOS Big Sur v1.4.0 - 800-53r5 Low

Audit Details

Name: NIST macOS Big Sur v1.4.0 - 800-53r5 Low

Updated: 4/25/2022

Authority: TNS

Plugin: Unix

Revision: 1.1

Estimated Item Count: 132

File Details

Filename: NIST_macOS_Big_Sur_800-53r5_low_v1.4.0.audit

Size: 215 kB

MD5: 45d5469cb3a9a4a9f3d3e157f9d5e37d
SHA256: dfc3952c7d59ec0f7ac1abf931606793bb2f1cb385a63f1eccb97358e0421c59

Audit Items

DescriptionCategories
Big Sur - Access Control for Mobile Devices

ACCESS CONTROL

Big Sur - Allow Smartcard Authentication

IDENTIFICATION AND AUTHENTICATION

Big Sur - Apply Gatekeeper Settings to Block Applications from Unidentified Developers

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

Big Sur - Configure Audit Failure Notification

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Files Group to Wheel

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Files to be Owned by Root

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Files to Mode 440 or Less Permissive

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Files to Not Contain Access Control Lists

AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

Big Sur - Configure Audit Log Folder to Not Contain Access Control Lists

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Folders Group to Wheel

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Folders to be Owned by Root

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Log Folders to Mode 700 or Less Permissive

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Audit Retention to a Minimum of Seven Days

AUDIT AND ACCOUNTABILITY

Big Sur - Configure Gatekeeper to Disallow End User Override

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

Big Sur - Configure Login Window to Prompt for Username and Password

IDENTIFICATION AND AUTHENTICATION

Big Sur - Configure macOS to Use an Authorized Time Server

AUDIT AND ACCOUNTABILITY, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Configure Sudoers to Authenticate Users on a Per -tty Basis

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Big Sur - Configure System to Audit All Administrative Action Events

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Authorization and Authentication Events

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Deletions of Object Attributes

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Failed Change of Object Attributes

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Failed Program Execution on the System

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

Big Sur - Configure System to Audit All Failed Read Actions on the System

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Failed Write Actions on the System

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Configure System to Audit All Log In and Log Out Events

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

Big Sur - Configure System to Shut Down Upon Audit Failure

AUDIT AND ACCOUNTABILITY

Big Sur - Configure the System for Nonlocal Maintenance

MAINTENANCE

Big Sur - Configure the System to Implement Approved Cryptography to Protect Information

SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Configure the System to Uniquely Identify and Authenticate Non-Organizational Users

IDENTIFICATION AND AUTHENTICATION

Big Sur - Disable AirDrop

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable Apple ID Setup during Setup Assistant

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable Bluetooth Sharing

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable Bluetooth When no Approved Device is Connected

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable Bonjour Multicast

CONFIGURATION MANAGEMENT

Big Sur - Disable Calendar.app

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable Content Caching Service

CONFIGURATION MANAGEMENT

Big Sur - Disable FaceTime.app

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable FileVault Automatic Login

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Big Sur - Disable Find My Service

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable Guest Access to Shared SMB Folders

ACCESS CONTROL

Big Sur - Disable Handoff

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Disable iCloud Address Book

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Bookmarks

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Desktop and Document Folder Sync

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Document Sync

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Keychain Sync

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Mail

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Notes

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Photo Library

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Disable iCloud Reminders

ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION