UCF STIG Viewer Logo

The macOS system must not allow an unattended or automatic logon to the system.


Overview

Finding ID Version Rule ID IA Controls Severity
V-257221 APPL-13-002066 SV-257221r905296_rule Medium
Description
Failure to restrict system access to authenticated users negatively impacts operating system security.
STIG Date
Apple macOS 13 (Ventura) Security Technical Implementation Guide 2023-08-28

Details

Check Text ( C-60906r905294_chk )
Verify the macOS system is configured to not allow automatic logon with the following command:

/usr/sbin/system_profiler SPConfigurationProfileDataType | /usr/bin/grep "DisableAutoLoginClient"

"com.apple.login.mcx.DisableAutoLoginClient" = 1;

If "com.apple.login.mcx.DisableAutoLoginClient" is not set to "1", this is a finding.
Fix Text (F-60847r905295_fix)
Configure the macOS system to not allow automatic login by installing the "Login Window Policy" configuration profile.