FireEye - Web users are logged out after 20 minutes of inactivity or less

Information

Unattended HTTPS sessions with the appliance could be hijacked and reused by an attacker. Sessions should time out quickly if they are not being actively used. This setting is entered as minutes but is stored as seconds.

Solution

Edit the configuration and add this line:\n

webui auto-logout <minutes>

Item Details

Audit Name: TNS FireEye

Category: ACCESS CONTROL

References: 800-53|AC-12, CSCv6|16.4

Plugin: FireEye

Control ID: 5c88746711078a66fbcc4967555ac7e3100434d1ca90d0e89056c004bf916d68