usnistgov / macos_security

macOS Security Compliance Project
Other
1.64k stars 190 forks source link

Add requirement to review exemptions to smart card login. #337

Open akegerreis opened 6 months ago

akegerreis commented 6 months ago

If a site is using smart card login but is also allowing unmapped users, the exemption list should be documented with the ISSM.

robertgendler commented 3 months ago

@akegerreis do you have a suggestion on how this should appear in the project?

A note in supplemental where unmapped users is talked about? A separate rule?

akegerreis commented 3 months ago

@robertgendler we have this slated to go into the supplemental for our April release of the STIG.