36 - Configure connectionTimeout

Information

The connectionTimeout setting allows Jetty to close idle sockets after a specific amount of time to save system resources.

Closing idle sockets reduces system resource usage thus can provide better performance and help protect against Denial of Service attacks.

Solution

Within $JETTY_HOME/etc/server.xml ensure each connector is configured to the connectionTimeout setting that is optimal based on hardware resources, load, and number of concurrent connections.
connectionTimeout="60000"

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5

Plugin: Unix

Control ID: f72f14d1c0ff671d63f181b2e720fed862dd319ecdbde211ec76ff6949596daa