SV-214331r505936_rule
V-214331
SRG-APP-000220-WSR-000201
AS24-W1-000460
CAT II
10
Open the <'INSTALL PATH'>\conf\httpd.conf file.
Set the "SessionMaxAge" directive to a value of no more than "600".
Add the directive if it does not exist.
Restart the Apache service.
Review the <'INSTALL PATH'>\conf\httpd.conf file.
Search for the following directive:
SessionMaxAge
Verify the value of "SessionMaxAge" is set to "600" or less.
If "SessionMaxAge" does not exist or is set to more than "600", this is a finding.
V-214331
False
AS24-W1-000460
Review the <'INSTALL PATH'>\conf\httpd.conf file.
Search for the following directive:
SessionMaxAge
Verify the value of "SessionMaxAge" is set to "600" or less.
If "SessionMaxAge" does not exist or is set to more than "600", this is a finding.
M
3998