System Integrity Protection (SIP)

GPTKB entity

Statements (23)
Predicate Object
gptkbp:instanceOf gptkb:security
gptkbp:alsoKnownAs gptkb:rootless
gptkbp:canBeDisabled yes
gptkbp:configuration gptkb:csrutil
gptkbp:developedBy gptkb:Apple_Inc.
gptkbp:disableMethod using Recovery Mode and csrutil tool
gptkbp:documentation gptkb:Apple_Support
https://www.w3.org/2000/01/rdf-schema#label System Integrity Protection (SIP)
gptkbp:introducedIn gptkb:OS_X_El_Capitan
2015
gptkbp:operatingSystem gptkb:macOS
gptkbp:prevention modification of system files by root user
code injection into system processes
modification of system apps
gptkbp:protectedBy /System directory
/bin directory
/sbin directory
/usr directory (except /usr/local)
system processes
gptkbp:purpose protect system files and processes
gptkbp:status enabled
gptkbp:bfsParent gptkb:XProtect
gptkbp:bfsLayer 7