UCF STIG Viewer Logo

The operating system session lock mechanism, when activated on a device with a display screen, must place a publicly viewable pattern onto the associated display, hiding what was previously visible on the screen.


Overview

Finding ID Version Rule ID IA Controls Severity
V-51477 OSX8-00-00005 SV-65687r1_rule Low
Description
A session time-out lock is a temporary action taken when a user stops work and moves away from the immediate physical vicinity of the system but does not log out because of the temporary nature of the absence. The session lock will also include an obfuscation of the display screen to prevent other users from reading what was previously displayed.
STIG Date
Apple OS X 10.8 (Mountain Lion) Workstation STIG 2015-02-10

Details

Check Text ( C-53817r1_chk )
To view the currently selected screen saver for the logged in user, run the following command:

system_profiler SPConfigurationProfileDataType | grep moduleName

If there is no result or defined moduleName, this is a finding.
Fix Text (F-56279r1_fix)
This is enforced using a configuration profile.