The storage system must terminate all network connections associated with a communications session at the end of the session, at shutdown, or after 10 minutes of inactivity.
DISA Rule
SV-85109r1_rule
Vulnerability Number
V-70487
Group Title
SRG-OS-000126-GPOS-00066
Rule Version
HP3P-32-001003
Severity
CAT II
CCI(s)
- CCI-000879 - The organization terminates sessions and network connections when nonlocal maintenance is completed.
- CCI-001133 - The information system terminates the network connection associated with a communications session at the end of the session or after an organization-defined time period of inactivity.
- CCI-002361 - The information system automatically terminates a user session after organization-defined conditions or trigger events requiring session disconnect.
Weight
10
Fix Recommendation
Configure the remote session timeout period (in minutes) with the following command:
cli% setsys SessionTimeout 10m
Check Contents
Verify the remote session timeout is set to 10 minutes or less with the following command:
cli% showsys -param
If the output does not contain the information below, this is a finding.
SessionTimeout : 00:10:00
Vulnerability Number
V-70487
Documentable
False
Rule Version
HP3P-32-001003
Severity Override Guidance
Verify the remote session timeout is set to 10 minutes or less with the following command:
cli% showsys -param
If the output does not contain the information below, this is a finding.
SessionTimeout : 00:10:00
Check Content Reference
M
Target Key
3013
Comments