UCF STIG Viewer Logo

The application must terminate the network connection associated with a communications session at the end of the session or after an organization-defined time period of inactivity.


Overview

Finding ID Version Rule ID IA Controls Severity
V-27128 SRG-APP-000190 SV-34426r1_rule Medium
Description
This requirement applies to both internal and external networks. Terminating network connections associated with communications sessions include, de-allocating associated TCP/IP address/port pairs at the operating-system level, or de-allocating networking assignments at the application level if multiple application sessions are using a single, operating system-level network connection. The time period of inactivity may, as the organization deems necessary, be a set of time periods by type of network access or for specific accesses.
STIG Date
Application Security Requirements Guide 2011-12-28

Details

Check Text ( None )
None
Fix Text (None)
None