2.6.1.1 Enable FileVault

Information

FileVault secures a system's data by automatically encrypting its boot volume and requiring a password or recovery key to access it.

Rationale:

Encrypting sensitive data minimizes the likelihood of unauthorized users gaining access to it.

Solution

Perform the following to implement the prescribed state:

1. Open System Preferences
2. Select Security & Privacy
3. Select FileVault
4. Select Turn on FileVault

See Also

https://workbench.cisecurity.org/files/2105

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-28(1), CSCv6|13.2

Plugin: Unix

Control ID: eba211a87ad846086bb8a93c9b34585120bc0f0b825ba11ecbac31aa6b0683ac