UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The guest account must be disabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-25299 OSX00295 M6 SV-37218r1_rule IAAC-1 Medium
Description
The guest account is used to give a user temporary access to a computer. The guest account should be disabled by default because it does not require a password to login on the computer. If this account is enabled and is not securely configured malicious users can gain access to a computer without the use of a password.
STIG Date
MAC OSX 10.6 Workstation Security Technical Implementation Guide 2013-04-09

Details

Check Text ( C-35907r1_chk )
1. Open System Preferences->Accounts Panel.
2. Click on Guest Account.
3. Ensure "Allow guests to login to this computer" option is unchecked. If the option is checked, this is a finding.
Fix Text (F-31165r1_fix)
1. Open System Preferences->Accounts Panel.
2. Click on Guest Account.
3. Deselect "Allow guests to login to this computer".