> ## Documentation Index
> Fetch the complete documentation index at: https://docs.iru.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Don't allow the Guest user to log in

> Disable the macOS Guest user account using the Blueprint parameter in Iru Endpoint. Prevent unauthorized access by blocking guest login sessions.

<Callout icon="apple" color="#B84A7A" iconType="regular">This guide applies to Mac computers</Callout>

### About the Don't Allow Guest User to Log In Parameter

This parameter disables the Guest user account on Mac computers, which is considered a security vulnerability because it grants access without login credentials.

### How It Works

When enabled, Iru Endpoint will ensure the Guest user feature is disabled. During each check-in, Iru Endpoint will verify and adjust settings to the disabled state should they change.

By default, macOS allows a Guest user account that grants access to the general macOS system and apps without login credentials. The Guest user is considered a security vulnerability because it does not have a password.

It's recommended that the Guest user account be disabled on all macOS systems unless there is a demonstrated need.

### Enabling this Parameter

When enabled, Iru Endpoint will ensure the Guest user feature is disabled. During each check-in, Iru Endpoint will verify and adjust settings to the disabled state should they change.

### Disabling this Parameter

Disabling this parameter stops Iru Endpoint from managing the Guest user feature during each check-in. The feature will remain in its current state until a user manually changes it.

For more detailed information on Parameters, see the [Parameters](/en/endpoint/blueprints/parameters/checking-library-and-system-folders-for-world-writable-files) section of our Knowledge Base.
