Fortigate - SSH login grace time <= 30 seconds

Information

SSH login grace time <= 30 seconds. When logging into the console using SSH, the default time of inactivity to successfully log into the FortiGate unit is 120 seconds (2 minutes). You can configure the time to be shorter which in turn will provide a less desirable target for attackers.

Solution

Issue the following command to configure SSH login grace time.

config system global
set admin-ssh-grace-time <time_int>
end

See Also

https://docs.fortinet.com/document/fortigate/6.4.0/hardening-your-fortigate/612504/hardening-your-fortigate

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-12, CSCv6|16.4

Plugin: FortiGate

Control ID: 6d8cdd73f1e0d2a75e98f93121868efa0ea31c8d1b5b8e130f5d0d1e68f927ce