Big Sur - Disable TouchID Prompt during Setup Assistant

Information

The prompt for TouchID during Setup Assistant _MUST_ be disabled.

macOS prompts new users through enabling TouchID during Setup Assistant; this is not essential and, therefore, _MUST_ be disabled to prevent against the risk of individuals electing to enable TouchID to override organization-wide settings.

Solution

This is implemented by a Configuration Profile.

mobileconfig profile info:

com.apple.SetupAssistant.managed:
SkipTouchIDSetup:
True

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CCE|CCE-85393-7

Plugin: Unix

Control ID: 261de9719042f23f2ced8b4175be1cf5fb1e02d737e4ca8ab809dfc984d859f7