36 - Configure connectionTimeout

Information

The connectionTimeout setting allows Jetty to close idle sockets after a specific amount of time to save system resources.

Closing idle sockets reduces system resource usage thus can provide better performance and help protect against Denial of Service attacks.

Solution

Within $JETTY_HOME/etc/server.xml ensure each connector is configured to the connectionTimeout setting that is optimal based on hardware resources, load, and number of concurrent connections.
connectionTimeout="60000"

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5

Plugin: Unix

Control ID: a09570d70d07e2fd2bb7629a2ecc04692a23dd20ebc32edcfea46900a0e8f7fa