APPL-13-000002 - The macOS system must retain the session lock until the user reestablishes access using established identification and authentication procedures.

Information

Users must be prompted to enter their passwords when unlocking the screen saver. The screen saver acts as a session lock and prevents unauthorized users from accessing the current user's account.

Solution

Configure the macOS system to prompt users to enter a password to unlock the screen saver by installing the 'Login Window Policy' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_macOS_13_V1R3_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-11b., CAT|II, CCI|CCI-000056, Rule-ID|SV-257143r905062_rule, STIG-ID|APPL-13-000002, Vuln-ID|V-257143

Plugin: Unix

Control ID: 471d0a3e71dd592a2e676d9bc2d01c047cfbd36fdb81b7191b5618bb3708802f