UCF STIG Viewer Logo

The macOS system must be configured to not allow iTunes file sharing.


Overview

Finding ID Version Rule ID IA Controls Severity
V-214893 AOSX-13-000862 SV-214893r609363_rule Medium
Description
Connections to unauthorized iOS devices (e.g., iPhones, iPods, and iPads) open the system to possible compromise via exfiltration of system data. Disabling the iTunes file sharing blocks connections to iOS devices.
STIG Date
Apple OS X 10.13 Security Technical Implementation Guide 2021-11-19

Details

Check Text ( C-16093r397251_chk )
If iTunes file sharing is enabled, unauthorized disclosure could occur.

To verify that iTunes file sharing is disabled, run the following command:

/usr/sbin/system_profiler SPConfigurationProfileDataType | /usr/bin/grep allowiTunesFileSharing

If the result is null or is not “allowiTunesFileSharing = 0”, this is a finding
Fix Text (F-16091r397252_fix)
This setting is enforced using the “Restrictions Policy" configuration profile.