1.2.5 Ensure Exec Timeout for Remote Administrative Sessions (VTY) is set

Information

This value sets the maximum time of an administrative session that is attached via a VTY line - in most installations this means the maximum time and SSH session can have. This value is set in minutes.

Rationale:

Solution

switch(config)# line vty
switch(config)# exec-timeout 10

Default Value:

By default the exec-timeout is 0 (disabled). In this default setting the value is not shown in the running or saved configuration.

See Also

https://workbench.cisecurity.org/benchmarks/6524

Item Details

Category: CONFIGURATION MANAGEMENT, MAINTENANCE

References: 800-53|CM-7, 800-53|MA-4, CSCv7|4.3, CSCv7|4.9

Plugin: Cisco

Control ID: 2b8b3f7a12c00b035eb5c5184b81f6768eefae81e24a6bf5f712329f7b810c04