SV-230213r561158_rule
V-230213
SRG-NET-000514-ALG-000514
F5BI-LT-000141
CAT II
10
If user access control intermediary services are provided, configure the BIG-IP Core to initiate a session lock after a 15-minute period of inactivity.
If the BIG-IP Core does not provide user access control intermediary services virtual servers, this is not applicable.
When user access control intermediary services are provided, verify the BIG-IP Core initiates a session lock after a 15-minute period of inactivity.
Select a profile for user sessions.
Verify "Keep Alive Interval" under "Settings" section is set to "Specify" 900.
Verify the BIG-IP LTM is configured to use the Protocol Profile.
Navigate to the BIG-IP System manager >> Local Traffic >> Virtual Servers >> Virtual Servers List tab.
Select appropriate virtual server.
Verify "Protocol Profile (Client)" is set to a profile that limits session timeout.
If the BIG-IP Core does not initiate a session lock after a 15-minute period of inactivity, this is a finding.
V-230213
False
F5BI-LT-000141
If the BIG-IP Core does not provide user access control intermediary services virtual servers, this is not applicable.
When user access control intermediary services are provided, verify the BIG-IP Core initiates a session lock after a 15-minute period of inactivity.
Select a profile for user sessions.
Verify "Keep Alive Interval" under "Settings" section is set to "Specify" 900.
Verify the BIG-IP LTM is configured to use the Protocol Profile.
Navigate to the BIG-IP System manager >> Local Traffic >> Virtual Servers >> Virtual Servers List tab.
Select appropriate virtual server.
Verify "Protocol Profile (Client)" is set to a profile that limits session timeout.
If the BIG-IP Core does not initiate a session lock after a 15-minute period of inactivity, this is a finding.
M
4019