HI - is anyone using Casper Suite to harden enterprise computers for PCI Compliance? I'd like to collaborate so as to save time and not reinvent the wheel - especially scripts. Currently I'm hardening a mix of 10.6.8 and 10.7.4 clients, and not being a script ninja could really use some advice. Managed Preferences are not really an option as we need to have an administrative account on the employee computers that can access everything.
We are basing our standards on the following:
http://www.nsa.gov/ia/_files/factsheets/macosx_10_6_hardeningtips.pdf
and
http://benchmarks.cisecurity.org/en-us/?route=downloads.show.single.osx106.100
I'd also like to collaborate on the documentation of the hardening standards for policy creation.
Other software I need to implement across our Macs are Credant Disk Encryption and Trend Micro Systems antivirus.
Thanks,
Susan Spanovich
IT Desktop / IT Apple / Systems Administrator
sspanovich@lifetimefitness.com