STIGQter STIGQter: STIG Summary: HPE 3PAR StoreServ 3.2.x Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 28 Jul 2017:

The storage system must terminate all network connections associated with a communications session at the end of the session, at shutdown, or after 10 minutes of inactivity.

DISA Rule

SV-85109r1_rule

Vulnerability Number

V-70487

Group Title

SRG-OS-000126-GPOS-00066

Rule Version

HP3P-32-001003

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the remote session timeout period (in minutes) with the following command:

cli% setsys SessionTimeout 10m

Check Contents

Verify the remote session timeout is set to 10 minutes or less with the following command:

cli% showsys -param

If the output does not contain the information below, this is a finding.

SessionTimeout : 00:10:00

Vulnerability Number

V-70487

Documentable

False

Rule Version

HP3P-32-001003

Severity Override Guidance

Verify the remote session timeout is set to 10 minutes or less with the following command:

cli% showsys -param

If the output does not contain the information below, this is a finding.

SessionTimeout : 00:10:00

Check Content Reference

M

Target Key

3013

Comments