1.3 Ensure Download New Updates When Available Is Enabled

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

In the GUI, both 'Install macOS updates' and 'Install app updates from the App Store' are dependent on whether 'Download new updates when available' is selected.

Rationale:

It is important that a system has the newest updates downloaded so that they can be applied.

Impact:

If 'Download new updates when available' is not selected, updates may not be made in a timely manner and the system will be exposed to additional risk.

Solution

Perform the following to enable the system to automatically check for updates:
Graphical Method:

Open System Preferences

Select Software Update

Select Advanced

Select Download new updates when available

Terminal Method:
Run the following command to enable auto update:

$ sudo /usr/bin/defaults write /Library/Preferences/com.apple.SoftwareUpdate AutomaticDownload -bool true

Profile Method:

Create or edit a configuration profile with the PayLoadType of com.apple.SoftwareUpdate

Add the key AutomaticDownload

Set the key to <true/>

See Also

https://workbench.cisecurity.org/files/4004