Spotlight Panel must be securely configured.

From MAC OSX 10.6 Workstation Security Technical Implementation Guide

Part of OSX00705-Securely configure Spotlight Panel

Associated with IA controls: ECCD-1

SV-37331r1_rule Spotlight Panel must be securely configured.

Vulnerability discussion

Spotlight can be used to search a computer for files. Spotlight searches the name, the meta-information associated with each file, and the contents of each file. Spotlight finds files regardless of their placement in the file system. This still must be properly set access permissions on folders containing confidential files.

Check content

To securely configure Spotlight preferences: Open System Preferences. Click the Spotlight Icon. In the Search Results pane, verify the categories not wanted as searchable by Spotlight are unchecked. Click the Privacy pane. Verify the correct folders and disks are in the Privacy pane; these are not searchable by Spotlight. If searchable categories or folders are found that should not be searchable, this is a finding.

Fix text

To securely configure Spotlight preferences: Open System Preferences. Click the Spotlight Icon. In the Search Results pane, deselect categories not wanted searchable by Spotlight. Click the Privacy pane. Click the Add button or drag a folder or disk into the Privacy pane. Folders and disks in the Privacy pane are now not searchable by Spotlight.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer