SV-54386r3_rule
V-41809
SRG-APP-000224-WSR-000138
SRG-APP-000224-WSR-000138
CAT II
10
Configure the web server to use at least A-Z, a-z, and 0-9 to generate session IDs.
Review the web server documentation and deployed configuration to determine what characters are used in generating session IDs.
If the web server is not configured to use at least A-Z, a-z, and 0-9 to generate session identifiers, this is a finding.
V-41809
False
SRG-APP-000224-WSR-000138
Review the web server documentation and deployed configuration to determine what characters are used in generating session IDs.
If the web server is not configured to use at least A-Z, a-z, and 0-9 to generate session identifiers, this is a finding.
M
2557