Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-25299 | OSX00295 M6 | SV-37218r1_rule | IAAC-1 | Medium |
Description |
---|
The guest account is used to give a user temporary access to a computer. The guest account should be disabled by default because it does not require a password to login on the computer. If this account is enabled and is not securely configured malicious users can gain access to a computer without the use of a password. |
STIG | Date |
---|---|
MAC OSX 10.6 Workstation Security Technical Implementation Guide | 2013-04-09 |
Check Text ( C-35907r1_chk ) |
---|
1. Open System Preferences->Accounts Panel. 2. Click on Guest Account. 3. Ensure "Allow guests to login to this computer" option is unchecked. If the option is checked, this is a finding. |
Fix Text (F-31165r1_fix) |
---|
1. Open System Preferences->Accounts Panel. 2. Click on Guest Account. 3. Deselect "Allow guests to login to this computer". |