3.9.1 Ensure 'If Lost, Return to...' Message is 'Configured'

Information

This recommendation pertains to configuring a lock screen message.

Rationale:

A lock screen message will allow an honest bystander to more easily return a lost device.

This message need not identify the owner by name, but should reference a phone number or email address to contact (for example, the help desk of an organization).

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Open Apple Configurator.

Open the Configuration Profile.

In the left window pane, click on the Lock Screen Message tab.

In the right window pane, in the 'If Lost, Return to...' Message field, configure an appropriate message.

Deploy the Configuration Profile.

See Also

https://workbench.cisecurity.org/benchmarks/15548