Monterey - Enforce Gatekeeper 30 Day Automatic Rearm

Information

Gatekeeper _MUST_ be configured to automatically rearm after 30 days if disabled.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.ManagedClient.preferences:
com.apple.security:
GKAutoRearm
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|CM-5, 800-53|SI-3, CCE|CCE-90927-5

Plugin: Unix

Control ID: 0f3adc846eecf9627504e044610477fe8467996ab243660c1f79b6fbaf74d947