5.12 Disable automatic login

Information

The automatic login feature saves a user's system access credentials and bypasses the login screen, instead the system automatically loads to the user's desktop screen.

Rationale:

Disabling automatic login decreases the likelihood of an unauthorized person gaining access to a system.

Solution

Perform the following to implement the prescribed state:

1. Run the following command in Terminal:

sudo defaults delete /Library/Preferences/com.apple.loginwindow autoLoginUser

See Also

https://workbench.cisecurity.org/files/2105

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-14

Plugin: Unix

Control ID: 1a7727bc9da3fb89b33b30bc7d86d79c3b64c1bd0ce878a673d391ba857e5947