Check: APPL-15-002271
Apple macOS 15 (Sequoia) STIG:
APPL-15-002271
(in version v1 r3)
Title
The macOS system must disable iPhone Mirroring. (Cat II impact)
Discussion
iPhone Mirroring must be disabled to prevent file transfers to or from unauthorized devices. Disabling iPhone Mirroring also prevents potentially unauthorized applications from appearing as if they are installed on the Mac. Satisfies: SRG-OS-000080-GPOS-00048, SRG-OS-000095-GPOS-00049, SRG-OS-000300-GPOS-00118
Check Content
Verify the macOS system is configured to disable iPhone Mirroring with the following command: /usr/bin/osascript -l JavaScript << EOS $.NSUserDefaults.alloc.initWithSuiteName('com.apple.applicationaccess')\ .objectForKey('allowiPhoneMirroring').js EOS If the result is not "false", this is a finding.
Fix Text
Configure the macOS system to disable iPhone Mirroring by installing the "com.apple.applicationaccess" configuration profile.
Additional Identifiers
Rule ID: SV-272477r1069484_rule
Vulnerability ID: V-272477
Group Title: SRG-OS-000080-GPOS-00048
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000213 |
Enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies. |
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
CCI-001443 |
Protect wireless access to the system using authentication of users and/or devices. |