1. Home
  2. Security Hardening
  3. CIS Apple OSX 10.10 Yosemite L2 V1.2.0
  4. Ensure login keychain is locked when the computer sleeps

Ensure login keychain is locked when the computer sleeps

Details

While logged in, the keychain does not prompt the user for passwords for various systems and/or programs. This can be exploited by unauthorized users to gain access to password protected programs and/or systems in the absence of the user.

Solution

Perform the following to implement the prescribed state:
Open Utilities
Select Keychain Access
Select a keychain
Select Edit
Select Change Settings for keychain
Authenticate, if requested.
Select Lock when sleeping setting

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Identification and Authentication.This control applies to the following type of system Unix.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles