Big Sur - Disable iCloud Address Book

Information

The macOS built-in Contacts.app connection to Apple's iCloud service _MUST_ be disabled.

Apple's iCloud service does not provide an organization with enough control over the storage and access of data, and, therefore, automated contact synchronization _MUST_ be controlled by an organization approved service.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.applicationaccess:
allowCloudAddressBook:
False

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-20, 800-53|AC-20(1), 800-53|CM-7, 800-53|CM-7(1), 800-53|CM-7(5)(b), 800-53|CM-7a., 800-53|SC-7(10), CCE|CCE-85282-2, CCI|CCI-000381, CCI|CCI-001774, STIG-ID|APPL-11-002014

Plugin: Unix

Control ID: f15c9e2a8f3cf5ce3c0626b086bfe408013ff52284b77c65c48a68ea0885c37e