AOSX-12-000925 - The OS X system must not allow an unattended or automatic logon to the system.

Information

When automatic logons are enabled, the default user account is automatically logged on at boot time without prompting the user for a password. Even if the screen is later locked, a malicious user would be able to reboot the computer to log on. Disabling automatic logons mitigates this risk.

Solution

This setting is enforced using the 'Login Window Policy' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_OS_X_10-12_V1R6_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-14, CAT|II, CCI|CCI-000366, Rule-ID|SV-90793r1_rule, STIG-ID|AOSX-12-000925, Vuln-ID|V-76105

Plugin: Unix

Control ID: a938f4f86275a1cb4a8b50d34accff5b3cd4f034e2c95b1679e94c82a6899a82