SOL-11.1-050460 - The operating system must terminate all sessions and network connections when non-local maintenance is completed - 'ClientAliveCountMax'

Information

Non-local maintenance and diagnostic activities are those activities conducted by individuals communicating through a network, either an external network (e.g., the Internet) or an internal network.

The operating system needs to ensure all sessions and network connections are terminated when non-local maintenance is completed.

Solution

The root role is required.

Configure the system to disconnect SSH sessions after 10 minutes of inactivity.

# pfedit /etc/ssh/sshd_config

Insert the two lines:

ClientAliveInterval 600
ClientAliveCountMax 0

Restart the SSH service with the new configuration.

# svcadm restart svc:/network/ssh

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_x86_V2R6_STIG.zip

Item Details

Category: MAINTENANCE

References: 800-53|MA-4e., CAT|II, CCI|CCI-000879, Rule-ID|SV-216162r603268_rule, STIG-ID|SOL-11.1-050460, STIG-Legacy|SV-61067, STIG-Legacy|V-48195, Vuln-ID|V-216162

Plugin: Unix

Control ID: 75599cdcbbf294086f5780436be64e853a9193c72ae7902f7ad61d6e22bcdeeb