SV-32880r3_rule
V-13726
WA000-WWA024
WA000-WWA024 W22
CAT II
10
Modify the KeepAliveTimeout directive in the applicable Apache configuration files to have a value of 15 or less.
NOTE: This setting must be explicitly set.
Locate the Apache httpd.conf file.
Open the httpd.conf file with an editor such as notepad, and search for the following uncommented directive: KeepAliveTimeout
If any directive is not set to 15 or less, this is a finding.
NOTE: This vulnerability can be documented locally with the ISSM/ISSO if the site has an operational reason for not using persistent connections. If the site has this documented, this should be marked as Not a Finding.
V-13726
False
WA000-WWA024 W22
NOTE: This setting must be explicitly set.
Locate the Apache httpd.conf file.
Open the httpd.conf file with an editor such as notepad, and search for the following uncommented directive: KeepAliveTimeout
If any directive is not set to 15 or less, this is a finding.
NOTE: This vulnerability can be documented locally with the ISSM/ISSO if the site has an operational reason for not using persistent connections. If the site has this documented, this should be marked as Not a Finding.
M
Web Administrator
158