Big Sur - Protect Audit Integrity with Cryptographic Mechanisms

Information

The information system _IS_ configured to implement cryptographic mechanisms to protect the integrity of audit information and audit tools.

The Apple T2 Security Chip includes a dedicated Advanced Encryption Standard (AES) crypto engine built into the direct memory access (DMA) path between the flash storage and main system memory, which powers line-speed encrypted storage with FileVault and makes internal volume highly efficient.

link:https://www.apple.com/euro/mac/shared/docs/Apple_T2_Security_Chip_Overview.pdf[]

NOTE: This will only apply to a Mac that includes a T2 security chip.

Solution

The technology inherently meets this requirement. No fix is required.

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-9(3), CCE|CCE-85305-1, CCI|CCI-001496

Plugin: Unix

Control ID: d697b9184ba2e1b1ede4f43a94b954b26c46af96cf18f58f8fc9213a9eec07c2