Source: https://it.digitaino.com/use-touchid-to-authenticate-sudo-on-macos/
- Run
sudo micro /etc/pam.d/sudo
- Add
auth sufficient pam_tid.so
belowauth sufficient pam_smartcard.so
, so that the file looks like this:
# sudo: auth account password session
auth sufficient pam_smartcard.so
auth sufficient pam_tid.so
auth required pam_opendirectory.so
account required pam_permit.so
password required pam_deny.so
session required pam_permit.so