3.2.1.27 Ensure 'Allow password sharing (supervised only)' is set to 'Disabled'

Information

This recommendation pertains to sharing credentials between devices, such as through AirDrop.

Rationale:

Allowing password sharing may increase the likelihood that an institutionally related credential is moved to a non-institutionally controlled device.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Open Apple Configurator.

Open the Configuration Profile.

In the left windowpane, click on the Restrictions tab.

In the right windowpane, under the tab Functionality, uncheck the checkbox for Allow password sharing (supervised only).

Deploy the Configuration Profile.

See Also

https://workbench.cisecurity.org/files/3064