AOSX-10-000020 - The system must retain the session lock until the user reestablishes access using identification and auth procedures.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Users must be prompted to enter their passwords when unlocking the screensaver. The screensaver acts as a session lock and prevents unauthorized users from accessing the current user's account.

Solution

This setting is enforced using the "Login Window Policy" configuration profile.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Apple_OS_X_10-10_Workstation_V1R5_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-11, CAT|II, CCI|CCI-000056, CSCv6|16.5, Rule-ID|SV-73957r2_rule, STIG-ID|AOSX-10-000020, Vuln-ID|V-59527

Plugin: Unix

Control ID: 3a5707be722e3c55a4d814ef4a73e770038daa62fc1817e7bc727eafa8669933