[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256288

 
 

909

 
 

199146

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Prompt Password for all open sessions

ID: oval:org.secpod.oval:def:94826Date: (C)2023-11-27   (M)2023-11-28
Class: COMPLIANCEFamily: macos




The sudo command must be configured to prompt for the administrator user's password at least once in each newly opened Terminal window or remote login session, as this prevents a malicious user from taking advantage of an unlocked computer or an abandoned login session to bypass the normal password prompt requirement. Without the tty_tickets option, all open local and remote login sessions would be authenticated to use sudo without a password for the duration of the configured password timeout window.

Platform:
Apple Mac OS 14
Reference:
CCE-50261-7
CCE    1
CCE-50261-7
XCCDF    1
xccdf_org.secpod_benchmark_general_Mac_OS_14

© SecPod Technologies