1.121 APPL-14-003012

Information

The macOS system must disable password hints.

GROUP ID: V-259542RULE ID: SV-259542r958470

Password hints must be disabled.

Password hints leak information about passwords that are currently in use and can lead to loss of confidentiality.

Solution

Configure the macOS system to disable password hints by installing the "com.apple.loginwindow" configuration profile.

See Also

https://workbench.cisecurity.org/benchmarks/24070

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-6, CAT|II, CCI|CCI-000206, Rule-ID|SV-259542r958470_rule, STIG-ID|APPL-14-003012, Vuln-ID|V-259542

Plugin: Unix

Control ID: e50f7811d2793ca9bd55fd3470a30d1e92f1e9810d5536b88c47ebfa21cd8da9