SV-234813r622137_rule
V-234813
SRG-OS-000029-GPOS-00010
SLES-15-010130
CAT II
10
Configure the SUSE operating system to initiate a session lock after a 15-minute period of inactivity by modifying or creating (if it does not already exist) the "/etc/profile.d/autologout.sh" file and add the following lines to it:
TMOUT=900
readonly TMOUT
export TMOUT
Set the proper permissions for the "/etc/profile.d/autologout.sh" file with the following command:
> sudo chmod +x /etc/profile.d/autologout.sh
Verify the SUSE operating system must initiate a session logout after a 15-minute period of inactivity for all connection types.
Check the proper script exists to kill an idle session after a 15-minute period of inactivity with the following command:
> cat /etc/profile.d/autologout.sh
TMOUT=900
readonly TMOUT
export TMOUT
If the file "/etc/profile.d/autologout.sh" does not exist or the output from the function call is not the same, this is a finding.
V-234813
False
SLES-15-010130
Verify the SUSE operating system must initiate a session logout after a 15-minute period of inactivity for all connection types.
Check the proper script exists to kill an idle session after a 15-minute period of inactivity with the following command:
> cat /etc/profile.d/autologout.sh
TMOUT=900
readonly TMOUT
export TMOUT
If the file "/etc/profile.d/autologout.sh" does not exist or the output from the function call is not the same, this is a finding.
M
5274