Skip to content

The macOS system must disable unattended or automatic log on to the system.

An XCCDF Rule

Description

Automatic logon must be disabled. When automatic logons are enabled, the default user account is automatically logged on at boot time without prompting the user for a password. Even if the screen is later locked, a malicious user would be able to reboot the computer and find it already logged in. Disabling automatic logons mitigates this risk.

ID
SV-259513r991591_rule
Version
APPL-14-002066
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Configure the macOS system to disable unattended or automatic logon to the system by installing the "com.apple.loginwindow" configuration profile.