mirror of
https://github.com/usnistgov/macos_security.git
synced 2026-02-03 14:03:24 +00:00
system_settings_remote_management_disable avoid undocumented mdmclient #122
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @nihil-admirari on GitHub.
system_settings_remote_management_disable check uses
mdmclient, whose man page states:CIS “2.3.3.6 Ensure Remote Management Is Disabled” simply does a
pgrep:May be it makes sense to switch away from
mdmclient, considering that CIS have already done so?@robertgendler commented on GitHub:
Reviewing this again. If
mdmclientdoes change and ends up being not the best method to check when an OS update or upgrade is released, we will update our checks appropriately.@robertgendler commented on GitHub:
We have found a handful of undocumented things within the project and test them between OS releases. mdmclient commands seem safe enough.