Catalina - Protect Audit Integrity with Cryptographic Mechanisms

Information

The information system _IS_ configured to implement cryptographic mechanisms to protect the integrity of audit information and audit tools.

The Apple T2 Security Chip includes a dedicated Advanced Encryption Standard (AES) crypto engine built into the direct memory access (DMA) path between the flash storage and main system memory, which powers line-speed encrypted storage with FileVault and makes internal volume highly efficient.

link:https://www.apple.com/euro/mac/shared/docs/Apple_T2_Security_Chip_Overview.pdf[]

NOTE: This will only apply to a Mac that includes a T2 security chip.

Solution

The technology inherently meets this requirement. No fix is required.

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-9(3), CCE|CCE-84889-5, CCI|CCI-001496

Plugin: Unix

Control ID: fb84c84d8d2a928aaea77100c43b66e93c1f536acf7cb2e888aa49db2b58438a