Big Sur - Allow Smartcard Authentication | IDENTIFICATION AND AUTHENTICATION |
Big Sur - Apply Gatekeeper Settings to Block Applications from Unidentified Developers | CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY |
Big Sur - Automatically Remove or Disable Emergency Accounts within 72 Hours | ACCESS CONTROL |
Big Sur - Automatically Remove or Disable Temporary User Accounts within 72 Hours | ACCESS CONTROL |
Big Sur - Configure Audit Log Files Group to Wheel | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Files to be Owned by Root | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Files to Mode 440 or Less Permissive | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Files to Not Contain Access Control Lists | AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY |
Big Sur - Configure Audit Log Folder to Not Contain Access Control Lists | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Folders Group to Wheel | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Folders to be Owned by Root | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Log Folders to Mode 700 or Less Permissive | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Audit Retention to a Minimum of Seven Days | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure Automated Flaw Remediation | SYSTEM AND INFORMATION INTEGRITY |
Big Sur - Configure Gatekeeper to Disallow End User Override | CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY |
Big Sur - Configure Login Window to Prompt for Username and Password | IDENTIFICATION AND AUTHENTICATION |
Big Sur - Configure macOS to Use an Authorized Time Server | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure SSH ServerAliveInterval option set to 900 or less | ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Configure Sudoers to Authenticate Users on a Per -tty Basis | CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION |
Big Sur - Configure System to Audit All Administrative Action Events | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE |
Big Sur - Configure System to Audit All Authorization and Authentication Events | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE |
Big Sur - Configure System to Audit All Failed Change of Object Attributes | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE |
Big Sur - Configure System to Audit All Failed Program Execution on the System | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT |
Big Sur - Configure System to Audit All Failed Read Actions on the System | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE |
Big Sur - Configure System to Audit All Failed Write Actions on the System | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE |
Big Sur - Configure System to Audit All Log In and Log Out Events | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE |
Big Sur - Configure System to Shut Down Upon Audit Failure | AUDIT AND ACCOUNTABILITY |
Big Sur - Configure the System for Nonlocal Maintenance | MAINTENANCE |
Big Sur - Configure the System to Block Non-Privileged Users from Executing Privileged Functions | ACCESS CONTROL |
Big Sur - Configure the System to Implement Approved Cryptography to Protect Information | SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Configure the System to Notify upon Account Created Actions | ACCESS CONTROL |
Big Sur - Configure the System to Notify upon Account Disabled Actions | ACCESS CONTROL |
Big Sur - Configure the System to Notify upon Account Enabled Actions | ACCESS CONTROL |
Big Sur - Configure the System to Notify upon Account Modified Actions | ACCESS CONTROL |
Big Sur - Configure the System to Notify upon Account Removed Actions | ACCESS CONTROL |
Big Sur - Configure the System to Prevent the Unauthorized Disclosure of Data via Shared Resources | SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Configure the System to Protect Memory from Unauthorized Code Execution | SYSTEM AND INFORMATION INTEGRITY |
Big Sur - Configure the System to Separate User and System Functionality - separate | MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Configure the System to Uniquely Identify and Authenticate Non-Organizational Users | IDENTIFICATION AND AUTHENTICATION |
Big Sur - Configure User Session Lock When a Smart Token is Removed | ACCESS CONTROL |
Big Sur - Control Connections to Other Systems via a Deny-All and Allow-by-Exception Firewall Policy | ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Disable Accounts after 35 Days of Inactivity | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION |
Big Sur - Disable AirDrop | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
Big Sur - Disable Apple ID Setup during Setup Assistant | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
Big Sur - Disable Bluetooth Sharing | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
Big Sur - Disable Bluetooth When no Approved Device is Connected | ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION |
Big Sur - Disable Bonjour Multicast | CONFIGURATION MANAGEMENT |
Big Sur - Disable Calendar.app | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
Big Sur - Disable Content Caching Service | CONFIGURATION MANAGEMENT |
Big Sur - Disable FaceTime.app | ACCESS CONTROL, CONFIGURATION MANAGEMENT |