3.2.1.29 Ensure 'Allow proximity based password sharing requests' is set to 'Disabled'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This recommendation pertains to preventing proximity-based password sharing from institutionally-owned devices.

Rationale:

In an organizational context, access to systems and applications should be provisioned by role, with credentials only being transferred through supported credential management systems. Additionally, credential sharing requests may be exploited through a social engineering scheme.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Open Apple Configurator.

Open the Configuration Profile.

In the left window pane, click on the Restrictions tab.

In the right window pane, under the tab Functionality, uncheck the checkbox for Allow proximity based password sharing requests.

Deploy the Configuration Profile.

See Also

https://workbench.cisecurity.org/benchmarks/17713