Catalina - Ensure Seperate Execution Domain for Processes

Information

The inherent configuration of the macOS _IS_ in compliance as Apple has implemented multiple features Mandatory access controls (MAC), System Integrity Protection (SIP), and application sandboxing.

link:https://support.apple.com/guide/security/system-integrity-protection-secb7ea06b49/web[]

link:https://developer.apple.com/library/archive/documentation/Security/Conceptual/AppSandboxDesignGuide/AboutAppSandbox/AboutAppSandbox.html[]

Solution

The technology inherently meets this requirement. No fix is required.

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-39, CCE|CCE-84943-0

Plugin: Unix

Control ID: 7fbeeea4cc9ed9db9dfed1019e8bed9e1f9e4a48f0a5379acba6429ec9c12845