AOSX-13-000558 - The macOS system must disable iCloud Keychain synchronization.

Information

Requiring individuals to be authenticated with an individual authenticator prior to using a group authenticator allows for traceability of actions, as well as adding an additional level of protection of the actions that can be taken with group account knowledge.

Satisfies: SRG-OS-000095-GPOS-00049, SRG-OS-000370-GPOS-00155

Solution

This setting is enforced using the 'Restrictions' configuration profile.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_OS_X_10-13_V2R5_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5)(b), 800-53|CM-7a., CAT|II, CCI|CCI-000381, CCI|CCI-001774, Rule-ID|SV-214872r609363_rule, STIG-ID|AOSX-13-000558, STIG-Legacy|SV-96337, STIG-Legacy|V-81623, Vuln-ID|V-214872

Plugin: Unix

Control ID: cd57231d19346b0c04ebc0e6a17d3fdf55f30d189117c7d3d0479468bd1752e0