SV-266175r1024855_rule
V-266175
SRG-NET-000053-ALG-000001
F5BI-AP-300164
CAT III
10
From the BIG-IP GUI:
1. Access.
2. Profiles/Policies.
3. Access Profiles.
4. Click the access profile name.
5. In the "Settings" section, set "Max In Progress Sessions per Client IP" to 10 or an organization-defined number.
Note: If the setting is grayed out, check the box to the right of the setting and then update it. If the setting is not set to 10, verify the operational reason is documented and approved by the AO.
6. Click "Update".
7. Click "Apply Access Policy".
Note: Setting must be tested to determine if a number greater than 10 is operationally necessary. Ten is the minimum but may have operational impacts. Set to the minimum that is possible without adverse impacts, document the setting and the operational testing.
From the BIG-IP GUI:
1. Access.
2. Profiles/Policies.
3. Access Profiles.
4. Click the access profile name.
5. In the "Settings" section, verify "Max In Progress Sessions per Client IP" is set to 10 or an organization-defined number.
If the F5 BIG-IP APM access policy is not configured to set a "Max In Progress Sessions per Client IP" value to 10 or an organization-defined number, this is a finding.
V-266175
False
F5BI-AP-300164
Note: Setting must be tested to determine if a number greater than 10 is operationally necessary. Ten is the minimum but may have operational impacts. Set to the minimum that is possible without adverse impacts, document the setting and the operational testing.
From the BIG-IP GUI:
1. Access.
2. Profiles/Policies.
3. Access Profiles.
4. Click the access profile name.
5. In the "Settings" section, verify "Max In Progress Sessions per Client IP" is set to 10 or an organization-defined number.
If the F5 BIG-IP APM access policy is not configured to set a "Max In Progress Sessions per Client IP" value to 10 or an organization-defined number, this is a finding.
M
5640