Apple iOS/iPadOS 17 must disable password proximity requests.
An XCCDF Rule
Description
<VulnDiscussion>This control allows one Apple device to be notified to share its password with a nearby device. This could lead to a compromise of the device password with an unauthorized person or device. DOD Apple device passwords must not be shared. SFR ID: FMT_SMF_EXT.1.1 #47</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-258364r959010_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
Install a configuration profile to disable "allow password proximity requests" in the management tool. This is a supervised-only control.