800-53|AC-11(1)

Title

PATTERN-HIDING DISPLAYS

Description

The information system conceals, via the session lock, information previously visible on the display with a publicly viewable image.

Supplemental

Publicly viewable images can include static or dynamic images, for example, patterns used with screen savers, photographic images, solid colors, clock, battery life indicator, or a blank screen, with the additional caveat that none of the images convey sensitive information.

Reference Item Details

Category: ACCESS CONTROL

Parent Title: SESSION LOCK

Family: ACCESS CONTROL

Baseline Impact: MODERATE,HIGH

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1.8 Session ManagementArubaOSCIS HPE Aruba Networking CX Switch v1.0.1 Optional Security Recommendations
1.1.8 Session ManagementArubaOSCIS HPE Aruba Networking CX Switch v1.0.1 L1
1.2 ALMA-09-001120UnixCIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.2.6 Set 'exec-timeout' to less than or equal to 10 minutes for 'line aux 0'CiscoCIS Cisco IOS XE 17.x v2.2.1 L1
1.2.6 Set 'exec-timeout' to less than or equal to 10 minutes for 'line aux 0'CiscoCIS Cisco IOS XE 16.x v2.2.0 L1
1.2.7 Set 'exec-timeout' to less than or equal to 10 minutes 'line console 0'CiscoCIS Cisco IOS XE 16.x v2.2.0 L1
1.2.7 Set 'exec-timeout' to less than or equal to 10 minutes 'line console 0'CiscoCIS Cisco IOS XE 17.x v2.2.1 L1
1.2.8 Set 'exec-timeout' to less than or equal to 10 minutes 'line vty'CiscoCIS Cisco IOS XE 16.x v2.2.0 L1
1.2.8 Set 'exec-timeout' to less than or equal to 10 minutes 'line vty'CiscoCIS Cisco IOS XE 17.x v2.2.1 L1
1.2.9 Set 'transport input none' for 'line aux 0'CiscoCIS Cisco IOS XE 16.x v2.2.0 L1
1.2.11 Set 'exec-timeout' to less than or equal to 10 min on 'ip http'CiscoCIS Cisco IOS XE 16.x v2.2.0 L1
1.3 ALMA-09-001230UnixCIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.3.2 (L2) Ensure 'Idle session timeout' is set to '3 hours (or less)' for unmanaged devicesmicrosoft_azureCIS Microsoft 365 Foundations v6.0.1 L2 E3
1.3.2 (L2) Ensure 'Idle session timeout' is set to '3 hours (or less)' for unmanaged devicesmicrosoft_azureCIS Microsoft 365 Foundations v6.0.1 L2 E5
1.4 ALMA-09-001340UnixCIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.4.1 Ensure 'Idle timeout' is less than or equal to 10 minutes for device managementPalo_AltoCIS Palo Alto Firewall 11 v1.2.0 L1
1.4.1 Ensure 'Idle timeout' is less than or equal to 10 minutes for device managementPalo_AltoCIS Palo Alto Firewall 10 v1.3.0 L1
1.4.1 Ensure 'Idle timeout' is less than or equal to 10 minutes for device managementPalo_AltoCIS Palo Alto Firewall 9 v1.1.0 L1
1.4.2 Ensure 'Failed Attempts' and 'Lockout Time' for Authentication Profile are properly configuredPalo_AltoCIS Palo Alto Firewall 10 v1.3.0 L1
1.4.2 Ensure 'Failed Attempts' and 'Lockout Time' for Authentication Profile are properly configuredPalo_AltoCIS Palo Alto Firewall 11 v1.2.0 L1
1.5 APPL-15-000007UnixCIS Apple macOS 15 Sequoia STIG v1.0.0 CAT II
1.5 APPL-26-000007UnixCIS Apple macOS 26 Tahoe STIG v1.0.0 CAT II
1.10 SLES-15-010100UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.11 SLES-15-010110UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT III
1.12 Ensure 'Smart Lock' is set to 'Disabled'MDMAirWatch - CIS Google Android v1.6.0 L2
1.12 Ensure 'Smart Lock' is set to 'Disabled'MDMMobileIron - CIS Google Android v1.6.0 L2
1.14 SLES-15-010140UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT III
1.31 UBTU-24-101000UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.112 SOL-11.1-040470UnixCIS Solaris 11 X86 STIG v1.0.0 CAT II
1.114 SOL-11.1-040470UnixCIS Solaris 11 SPARC STIG v1.0.0 CAT II
1.156 OL08-00-020031UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.161 OL08-00-020060UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.162 OL08-00-020080UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.163 OL08-00-020081UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.164 OL08-00-020082UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.219 WN19-SO-000120WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT II
1.219 WN19-SO-000120WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT II
1.219 WN22-SO-000120WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.219 WN22-SO-000120WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.238 OL09-00-002104UnixCIS Oracle Linux 9 STIG v1.0.0 CAT II
1.239 OL09-00-002106UnixCIS Oracle Linux 9 STIG v1.0.0 CAT II
1.245 OL09-00-002124UnixCIS Oracle Linux 9 STIG v1.0.0 CAT II
1.248 RHEL-09-271065UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.249 RHEL-09-271070UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.252 RHEL-09-271085UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.347 RHEL-10-700750UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.348 RHEL-10-700760UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.349 RHEL-10-700770UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.350 RHEL-10-700780UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.351 RHEL-10-700790UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II