UCF STIG Viewer Logo

The guest account must be disabled.


Overview

Finding ID Version Rule ID IA Controls Severity
V-25299 OSX00295 M6 SV-37218r1_rule IAAC-1 Medium
Description
The guest account is used to give a user temporary access to a computer. The guest account should be disabled by default because it does not require a password to login on the computer. If this account is enabled and is not securely configured malicious users can gain access to a computer without the use of a password.
STIG Date
MAC OSX 10.6 Workstation Security Technical Implementation Guide 2013-04-09

Details

Check Text ( C-35907r1_chk )
1. Open System Preferences->Accounts Panel.
2. Click on Guest Account.
3. Ensure "Allow guests to login to this computer" option is unchecked. If the option is checked, this is a finding.
Fix Text (F-31165r1_fix)
1. Open System Preferences->Accounts Panel.
2. Click on Guest Account.
3. Deselect "Allow guests to login to this computer".