STIGQter STIGQter: STIG Summary: Network Device Management Security Requirements Guide Version: 4 Release: 1 Benchmark Date: 23 Apr 2021:

The network device must initiate a session lock after a 15-minute period of inactivity.

DISA Rule

SV-202007r395448_rule

Vulnerability Number

V-202007

Group Title

SRG-APP-000003

Rule Version

SRG-APP-000003-NDM-000202

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the network device to initiate a session lock after a 15-minute period of inactivity.

Check Contents

Review the network device configuration to see if it initiates a session lock after a 15-minute period of inactivity. This may be verified by configuration check or demonstration. If a session lock is not initiated after a 15-minute period of inactivity, this is a finding.

Vulnerability Number

V-202007

Documentable

False

Rule Version

SRG-APP-000003-NDM-000202

Severity Override Guidance

Review the network device configuration to see if it initiates a session lock after a 15-minute period of inactivity. This may be verified by configuration check or demonstration. If a session lock is not initiated after a 15-minute period of inactivity, this is a finding.

Check Content Reference

M

Target Key

2890

Comments