OSX00295 - Disable Guest Account login

Information

The guest account is used to give a user temporary access to your computer. The guest account should be disabled by default because it does not require a password to log in on the computer. If this account is enabled and not securely configured, malicious users can gain access to your computer without the use of a password.

Solution

1. Open System Preferences->Accounts Panel. 2. Click on Guest Account 3. Deselect 'Allow guests to login to this computer'.

See Also

http://iase.disa.mil/stigs/os/mac/u_mac_osx10.5_v1r2_stig_20110729.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|II, Rule-ID|SV-31395r1_rule, STIG-ID|OSX00295, Vuln-ID|V-25299

Plugin: Unix

Control ID: a90efffafe79a9d77f0f2988999001da4695d58314597ca932f7cf27590a1089