STIGQter STIGQter: STIG Summary: Akamai KSD Service Impact Level 2 NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 12 Sep 2017:

The Akamai Luna Portal must terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after 15 minutes of inactivity except to fulfill documented and validated mission requirements.

DISA Rule

SV-91195r1_rule

Vulnerability Number

V-76499

Group Title

SRG-APP-000190-NDM-000267

Rule Version

AKSD-DM-000038

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Set the session timeout duration to 15 minutes:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Manage Users & Groups.
3. Select each user and adjust the "Timeout" setting to "After 15 Minutes".

Check Contents

Verify that all portal users have the session timeout duration set to 15 minutes:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Manage Users & Groups.
3. Select each user and inspect the "Timeout" setting to verify it reads "After 15 Minutes".

If the session timeout is not set to 15 minutes, this is a finding.

Vulnerability Number

V-76499

Documentable

False

Rule Version

AKSD-DM-000038

Severity Override Guidance

Verify that all portal users have the session timeout duration set to 15 minutes:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Manage Users & Groups.
3. Select each user and inspect the "Timeout" setting to verify it reads "After 15 Minutes".

If the session timeout is not set to 15 minutes, this is a finding.

Check Content Reference

M

Target Key

3167

Comments