SOL-11.1-050460 - The operating system must terminate all sessions and network connections when nonlocal maintenance is completed.

Information

Nonlocal maintenance and diagnostic activities are those activities conducted by individuals communicating through a network, either an external network (e.g., the internet) or an internal network.

The operating system needs to ensure all sessions and network connections are terminated when nonlocal maintenance is completed.

Solution

The root role is required.

Configure the system to disconnect SSH sessions after 10 minutes of inactivity.

# pfedit /etc/ssh/sshd_config

Insert the two lines:

ClientAliveInterval 600
ClientAliveCountMax 0

Restart the SSH service with the new configuration.

# svcadm restart svc:/network/ssh

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-10, CAT|II, CCI|CCI-001133, Rule-ID|SV-216399r986416_rule, STIG-ID|SOL-11.1-050460, STIG-Legacy|SV-61067, STIG-Legacy|V-48195, Vuln-ID|V-216399

Plugin: Unix

Control ID: 8563226eb45aeaecbd22092cd36f1dc5de89db46e1221fa5b079a34b0f4c6bd4