Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CCI
CCI-000054
CCI
CCI|CCI-000054
Title
Limit the number of concurrent sessions for each organization-defined account and/or account type to an organization-defined number.
Reference Item Details
Reference:
CCI - DISA Control Correlation Identifier
Category:
2024
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
1.5.5 Ensure number of concurrent sessions is limited
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-001004 - AIX must limit the number of concurrent sessions to 10 for all accounts and/or account types.
Unix
DISA STIG AIX 7.x v3r1
AOSX-14-000050 - The macOS system must limit the number of concurrent SSH sessions to 10 for all accounts and/or account types.
Unix
DISA STIG Apple Mac OSX 10.14 v2r6
ARST-ND-000010 - The Arista network device must limit the number of concurrent sessions to an organization-defined number for each administrator account and/or administrator account type.
Arista
DISA STIG Arista MLS EOS 4.2x NDM v2r1
AS24-U1-000010 - The Apache web server must limit the number of allowed simultaneous session requests - KeepAlive
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1 Middleware
AS24-U1-000010 - The Apache web server must limit the number of allowed simultaneous session requests - MaxKeepAliveRequests
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1 Middleware
AS24-U1-000010 - The Apache web server must limit the number of allowed simultaneous session requests.
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1
AS24-U1-000020 - The Apache web server must perform server-side session management - httpd
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1 Middleware
AS24-U1-000020 - The Apache web server must perform server-side session management - session_module
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1 Middleware
AS24-U1-000020 - The Apache web server must perform server-side session management - usertrack_module
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1 Middleware
AS24-U1-000020 - The Apache web server must perform server-side session management.
Unix
DISA STIG Apache Server 2.4 Unix Server v3r1
AS24-U2-000020 - The Apache web server must perform server-side session management.
Unix
DISA STIG Apache Server 2.4 Unix Site v2r4
AS24-U2-000020 - The Apache web server must perform server-side session management.
Unix
DISA STIG Apache Server 2.4 Unix Site v2r4 Middleware
AS24-W1-000010 - The Apache web server must limit the number of allowed simultaneous session requests.
Windows
DISA STIG Apache Server 2.4 Windows Server v3r1
AS24-W1-000010 - The Apache web server must limit the number of allowed simultaneous session requests.
Windows
DISA STIG Apache Server 2.4 Windows Server v2r3
AS24-W1-000020 - The Apache web server must perform server-side session management - session_module
Windows
DISA STIG Apache Server 2.4 Windows Server v3r1
AS24-W1-000020 - The Apache web server must perform server-side session management - session_module
Windows
DISA STIG Apache Server 2.4 Windows Server v2r3
AS24-W1-000020 - The Apache web server must perform server-side session management - usertrack_module
Windows
DISA STIG Apache Server 2.4 Windows Server v3r1
AS24-W1-000020 - The Apache web server must perform server-side session management - usertrack_module
Windows
DISA STIG Apache Server 2.4 Windows Server v2r3
AS24-W2-000010 - The Apache web server must limit the number of allowed simultaneous session requests.
Windows
DISA STIG Apache Server 2.4 Windows Site v2r1
AS24-W2-000020 - The Apache web server must perform server-side session management.
Windows
DISA STIG Apache Server 2.4 Windows Site v2r1
Big Sur - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Big Sur v1.4.0 - 800-53r4 High
Big Sur - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Big Sur v1.4.0 - 800-53r5 High
Big Sur - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Big Sur v1.4.0 - All Profiles
BIND-9X-001050 - The BIND 9.x secondary name server must limit the number of zones requested from a single master name server.
Unix
DISA BIND 9.x STIG v2r3
BIND-9X-001051 - The BIND 9.x secondary name server must limit the total number of zones the name server can request at any one time.
Unix
DISA BIND 9.x STIG v2r3
BIND-9X-001052 - The BIND 9.x server implementation must limit the number of concurrent session client connections to the number of allowed dynamic update clients.
Unix
DISA BIND 9.x STIG v2r3
BIND-9X-001070 - A BIND 9.x master name server must limit the number of concurrent zone transfers between authorized secondary name servers.
Unix
DISA BIND 9.x STIG v2r3
CASA-ND-000010 - The Cisco ASA must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco ASA NDM v2r2
Catalina - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Catalina v1.5.0 - 800-53r5 High
Catalina - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Catalina v1.5.0 - All Profiles
Catalina - Limit Concurrent GUI Sessions to 10 for all Accounts
Unix
NIST macOS Catalina v1.5.0 - 800-53r4 High
CD12-00-001200 - PostgreSQL must limit the number of concurrent sessions to an organization-defined number per user for all accounts and/or account types.
PostgreSQLDB
DISA STIG Crunchy Data PostgreSQL DB v3r1
CISC-ND-000010 - The Cisco router must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco IOS-XR Router NDM v3r2
CISC-ND-000010 - The Cisco router must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco IOS Router NDM v3r2
CISC-ND-000010 - The Cisco router must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco IOS XE Router NDM v3r2
CISC-ND-000010 - The Cisco switch must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco IOS XE Switch NDM v3r2
CISC-ND-000010 - The Cisco switch must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco IOS Switch NDM v3r2
CISC-ND-000010 - The Cisco switch must be configured to limit the number of concurrent management sessions to an organization-defined number.
Cisco
DISA STIG Cisco NX-OS Switch NDM v3r2
Configuring CIDR Network Addresses for the BIG-IP packet filter - Always accept ARP
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Always accept important ICMP
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - enabled
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Filter established connections
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Packet filter logging
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Review Packet-Filter Rules
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Send ICMP error on packet reject
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring CIDR Network Addresses for the BIG-IP packet filter - Unhandled Packet Action
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring the BIG-IP system to enforce the use of strict passwords
F5
Tenable F5 BIG-IP Best Practice Audit
Configuring the BIG-IP system to exclude inode information from Etags
F5
Tenable F5 BIG-IP Best Practice Audit
DB2X-00-000200 - DB2 must limit the number of concurrent sessions to an organization-defined number per user for all accounts and/or account types.
IBM_DB2DB
DISA STIG IBM DB2 v10.5 LUW v2r1 Database