1.1 APPL-14-000001

Information

The macOS system must prevent Apple Watch from terminating a session lock.

GROUP ID: V-259418RULE ID: SV-259418r958400

Disabling Apple watches is a necessary step to ensuring that the information system retains a session lock until the user reestablishes access using authorized identification and authentication procedures.

Solution

Configure the macOS system to prevent Apple Watch from terminating a session lock by installing the "com.apple.applicationaccess" configuration profile.

See Also

https://workbench.cisecurity.org/benchmarks/24070