Skip to content

Guide to the Secure Configuration of Apple macOS 10.15

Rules, Groups, and Values defined within the XCCDF Benchmark

  • System Accounting with audit

    The Basic Security Module (BSM) security audit API and file format is Apple's auditing system. The audit() function submits a record to the kernel ...
    Group
  • Configure auditd

    The <code>auditd</code> program can perform comprehensive monitoring of system activity. This section describes recommended configuration settings ...
    Group
  • Shutdown System When Auditing Failures Occur

    The macOS system must shut down by default upon audit failure unless availability is an overriding concern.
    Rule Medium Severity
  • Enable audit Service

    The audit service is an essential userspace component of the auditing system, as it is responsible for writing audit records to disk.
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules