Catalina - Disable Password Hints

Information

Password hints _MUST_ be disabled.

Password hints leak information about passwords that are currently in use and can lead to loss of confidentiality.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.loginwindow:
RetriesUntilHint:
0

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

References: 800-53|CM-6b., 800-53|IA-6, CCE|CCE-84840-8, CCI|CCI-000366, STIG-ID|AOSX-15-003012

Plugin: Unix

Control ID: f5032582524e6fcf5b07a5e8b7f014bbe55783af9cceefc6ccd2393482f08c7d