5.17 Create specialized keychains for different purposes

Information

If the user can logically split password and other entries into different keychains with different passwords, a compromise of one password will have limited effect.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

1. Open Utilities
2. Select Keychain Access
3. Select File
4. Select New Keychain
5. Input name of new keychain next to Save As
6. Select Create
7. Drag and drop desired keychain items into new keychain from login keychain

See Also

https://workbench.cisecurity.org/files/300

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(1)

Plugin: Unix

Control ID: 3febb71bb72783b98e5f39e5e082ed5c0eebb874e91ee1fd539d296d4d93a258