The macOS system must retain the session lock until the user reestablishes access using established identification and authentication procedures.
An XCCDF Rule
Description
Users must be prompted to enter their passwords when unlocking the screen saver. The screen saver acts as a session lock and prevents unauthorized users from accessing the current user's account.
- ID
- SV-257143r905062_rule
- Version
- APPL-13-000002
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Configure the macOS system to prompt users to enter a password to unlock the screen saver by installing the "Login Window Policy" configuration profile.