Maximum Validity Period (h)

Information

The maximum validity period of web sessions. The default is 24.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'Admin' -> 'AAA' -> 'Security'.

Click the 'Management Settings' tab.

In the 'Properties' section ensure 'Web Token Timeout (s)' is set to 24 or less

Item Details

Audit Name: Tenable Cisco ACI

Category: ACCESS CONTROL

References: 800-53|AC-12

Plugin: Cisco_ACI

Control ID: e3c4cf09b5b792194de226f3cb5e5b41a3fe6dc5bce8f0408d9a16eedaf1e882