Big Sur - Enforce Gatekeeper 30 Day Automatic Rearm

Information

Gatekeeper _MUST_ be configured to automatically rearm after 30 days if disabled.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.ManagedClient.preferences:
com.apple.security:
GKAutoRearm
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|CM-5, 800-53|SI-3, CCE|CCE-85316-8

Plugin: Unix

Control ID: fc9b626705a1bf86ddebb63fec229e5f29b114cdeee5e6d24d9f9bdf91a91e63