AOSX-09-000925 - The operating system must not allow an unattended or automatic logon to the system.

Information

When automatic logins are enabled, the default user account is automatically logged in at boot time without prompting the user for a password. Even if the screen is later locked, a malicious user would be able to reboot the computer in order to log in. Disabling automatic logins mitigates this risk.

Solution

This setting is enforced using a configuration profile.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Apple_OS_X_10-9_Workstation_V1R2_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-14, CAT|II, CCI|CCI-000366, Group-ID|V-58403, Rule-ID|SV-72833r1_rule, STIG-ID|AOSX-09-000925

Plugin: Unix

Control ID: a87ca31e761d6d11e1ed2952c1f1bf04542925fafb6ba7f150c0158ef802065c