SOL-11.1-050460 - The operating system must terminate all sessions and network connections when non-local maintenance is completed - 'ClientAliveInterval'

Information

Non-local maintenance and diagnostic activities are those activities conducted by individuals communicating through a network, either an external network (e.g., the Internet) or an internal network.

The operating system needs to ensure all sessions and network connections are terminated when non-local maintenance is completed.

Solution

The root role is required.

Configure the system to disconnect SSH sessions after 10 minutes of inactivity.

# pfedit /etc/ssh/sshd_config

Insert the two lines:

ClientAliveInterval 600
ClientAliveCountMax 0

Restart the SSH service with the new configuration.

# svcadm restart svc:/network/ssh

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V2R6_STIG.zip

Item Details

Category: MAINTENANCE

References: 800-53|MA-4e., CAT|II, CCI|CCI-000879, Rule-ID|SV-216399r603267_rule, STIG-ID|SOL-11.1-050460, STIG-Legacy|SV-61067, STIG-Legacy|V-48195, Vuln-ID|V-216399

Plugin: Unix

Control ID: c026f471193e45e42723fdf6054b60ce6770de33b0531b794ce5d3c5ed2107e3