AOSX-09-000055 - The operating system must enforce requirements for remote connections to the information system.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The Screen Sharing feature allows remote users to view or control the desktop of the current user. A malicious user can take advantage of Screen Sharing to gain full access to the system remotely, either with stolen credentials or by guessing the username and password. Disabling Screen Sharing mitigates this risk.

Solution

To disable screen sharing, run the following command:

sudo defaults write /private/var/db/launchd.db/com.apple.launchd/overrides.plist 'com.apple.screensharing' -dict Disabled -bool true

See Also

http://iasecontent.disa.mil/stigs/zip/U_Apple_OS_X_10-9_Workstation_V1R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CAT|II, CCI|CCI-000366, CSCv6|9.1, Group-ID|V-58265, Rule-ID|SV-72695r1_rule, STIG-ID|AOSX-09-000055

Plugin: Unix

Control ID: 00e9a44f3dd3e3ef7c0cd513d85f67573090dcddf8156e1367adc7013548860f