Big Sur - Enforce Gatekeeper 30 Day Automatic Rearm

Information

Gatekeeper _MUST_ be configured to automatically rearm after 30 days if disabled.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.ManagedClient.preferences:
com.apple.security:
GKAutoRearm
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|CM-5, 800-53|SI-3, CCE|CCE-85316-8

Plugin: Unix

Control ID: c82583d0e675c1390f4681def5b3dbf8f0d3dbb177679a5ec46fe3c9b84c7859