SV-54387r3_rule
V-41810
SRG-APP-000224-WSR-000139
SRG-APP-000224-WSR-000139
CAT II
10
Configure the web server to generate random session IDs with minimum entropy equal to half the session ID length.
Review the web server documentation and deployed configuration to verify that the web server is generating random session IDs with entropy equal to at least half the session ID length.
If the web server is not configured to generate random session IDs with the proper amount of entropy, this is a finding.
V-41810
False
SRG-APP-000224-WSR-000139
Review the web server documentation and deployed configuration to verify that the web server is generating random session IDs with entropy equal to at least half the session ID length.
If the web server is not configured to generate random session IDs with the proper amount of entropy, this is a finding.
M
2557