Monterey - Enforce Gatekeeper 30 Day Automatic Rearm

Information

Gatekeeper _MUST_ be configured to automatically rearm after 30 days if disabled.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.ManagedClient.preferences:
com.apple.security:
GKAutoRearm
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|CM-5, 800-53|SI-3, CCE|CCE-90927-5

Plugin: Unix

Control ID: ebf507f1cbed4cb2eaa334c938f02cc6d35dde726ecbba87f6ce15ffff9746ea