Add macOS CIS 6.3.3 (Safari Safe Browsing) (#9778)

This commit is contained in:
Artemis Tosini 2023-02-09 13:46:42 -05:00 committed by GitHub
parent f3e5040c10
commit d36e89a0ef
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 61 additions and 1 deletions

View File

@ -1983,6 +1983,29 @@ spec:
---
apiVersion: v1
kind: policy
spec:
name: CIS - Ensure Warn When Visiting A Fraudulent Website in Safari Is Enabled (MDM Required)
platforms: macOS
platform: darwin
description: |
Apple uses the Google Safe Browsing API to check for fraudulent websites and report them to the
user attempting visit one. Attackers use crafted web pages to social engineer users to load
unwanted content. Warning users prior to loading the content enables better security.
resolution: |
Payload Method:
Ask your administrator to deploy a profile which enableds WarnAboutFraudulentWebsites in Safari
query: |
SELECT 1 FROM managed_policies WHERE
domain = 'com.apple.Safari' AND
name = 'WarnAboutFraudulentWebsites' AND
value = '1'
LIMIT 1;
purpose: Informational
tags: compliance, CIS, CIS_Level1, CIS6.3.3
contributors: artemist-work
---
apiVersion: v1
kind: policy
spec:
name: CIS - Ensure Prevent Cross-site Tracking in Safari Is Enabled (MDM Required)
platforms: macOS
@ -2099,4 +2122,4 @@ spec:
AND value == 1;
purpose: Informational
tags: compliance, CIS, CIS_Level1, CIS6.4.1
contributors: sharon-fdm
contributors: sharon-fdm

View File

@ -0,0 +1,37 @@
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
<plist version="1.0">
<dict>
<key>PayloadContent</key>
<array>
<dict>
<key>PayloadDisplayName</key>
<string>test</string>
<key>PayloadType</key>
<string>com.apple.Safari</string>
<key>PayloadIdentifier</key>
<string>com.fleetdm.cis-6.3.3.check</string>
<key>PayloadUUID</key>
<string>AA1CF4AE-446C-41B0-8B06-ADEAEF9F0505</string>
<key>WarnAboutFraudulentWebsites</key>
<true/>
</dict>
</array>
<key>PayloadDescription</key>
<string>test</string>
<key>PayloadDisplayName</key>
<string>Ensure Warn When Visiting A Fraudulent Website in Safari Is Enabled</string>
<key>PayloadIdentifier</key>
<string>com.fleetdm.cis-6.3.3</string>
<key>PayloadRemovalDisallowed</key>
<false/>
<key>PayloadScope</key>
<string>System</string>
<key>PayloadType</key>
<string>Configuration</string>
<key>PayloadUUID</key>
<string>130308F8-916A-449D-9711-34A31DCCD39D</string>
<key>PayloadVersion</key>
<integer>1</integer>
</dict>
</plist>