1.1 (L1) Ensure 'Open 'safe' files after downloading' is 'Disabled'

Information

The Safari browser contains a feature which causes all files considered 'safe' to be automatically opened once they have finished downloading.

Rationale:

This feature is meant to be a benefit but having the browser automatically open files that could be malicious and downloaded by mistake is a security risk.

Solution

Follow the below steps to set Open 'safe' files after downloading to Disabled:

1. Click Safari.
2. Click Preferences.
3. Click General.
4. Uncheck the Open 'safe' files after downloading checkbox.

To configure the plist follow the below steps:

1. Open the com.apple.Safari.plist.
2. Find the token <key>AutoOpenSafeDownloads</key>
3. Ensure this token is immediately followed by <false/>

Default Value:
Enabled.

See Also

https://workbench.cisecurity.org/files/1822

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(3), CSCv6|7

Plugin: Unix

Control ID: 430f6e6dd6f682b6889c2a6570e124aaaa5469faebee763a510d6cb8fed284c2