Back to bug 2122325

Who When What Removed Added
Red Hat Bugzilla 2022-08-29 19:18:13 UTC Pool ID sst_security_compliance_rhel_9
RHEL Program Management 2022-08-29 19:29:45 UTC Keywords Triaged
CC wsato
Flags needinfo?(wsato)
Red Hat One Jira (issues.redhat.com) 2022-08-29 19:30:20 UTC Link ID Red Hat Issue Tracker RHELPLAN-132590
Marek Haicman 2022-09-13 09:26:38 UTC Flags needinfo?(wsato)
Vojtech Polasek 2023-01-17 08:07:34 UTC Flags needinfo?(msekleta)
CC msekleta
Matěj Týč 2023-01-26 12:35:45 UTC CC matyc
Status NEW ASSIGNED
Jiri Jaburek 2023-01-31 14:43:44 UTC QA Contact qe-baseos-security jjaburek
CC jjaburek
Vojtech Polasek 2023-02-01 07:56:37 UTC Status ASSIGNED POST
Michal Sekletar 2023-02-01 17:52:19 UTC Flags needinfo?(msekleta)
Vojtech Polasek 2023-02-09 13:42:48 UTC Doc Type If docs needed, set a value Enhancement
Doc Text Feature:
New SCAP rule logind_session_timeout has been added into the scap-security-guide package. This rule utilizes new feature of Systemd and it causes idle user sessions to be terminated after certain amount of time. This rule is present in ANSSI-BP-028 profiles for Enhanced and High level.

Reason:
This rule is added to ensure automatic configuration of robust idle session termination mechanism which is often required by multiple security policies.

Result:
Security requirement represented by ability to terminate idle user sessions is now automatically checked and eventually remediated.
Vojtech Polasek 2023-02-13 15:44:15 UTC Status POST NEW
Jan Fiala 2023-03-08 14:48:38 UTC CC jafiala
Docs Contact jafiala
Jan Fiala 2023-03-09 13:46:05 UTC Flags needinfo?(wsato)
Doc Text Feature:
New SCAP rule logind_session_timeout has been added into the scap-security-guide package. This rule utilizes new feature of Systemd and it causes idle user sessions to be terminated after certain amount of time. This rule is present in ANSSI-BP-028 profiles for Enhanced and High level.

Reason:
This rule is added to ensure automatic configuration of robust idle session termination mechanism which is often required by multiple security policies.

Result:
Security requirement represented by ability to terminate idle user sessions is now automatically checked and eventually remediated.
.New SCAP rule for idle session termination

New SCAP rule `logind_session_timeout` has been added to the `scap-security-guide` package in ANSSI-BP-028 profiles for Enhanced and High levels. This rule uses a new feature of the `systemd` service manager and terminates idle user sessions after a certain time. This rule provides automatic configuration of a robust idle session termination mechanism which is required by multiple security policies. As a result, OpenSCAP can automatically check the security requirement related to terminating idle user sessions and, if necessary, remediate it.
Vojtech Polasek 2023-03-10 15:00:57 UTC Flags needinfo?(wsato)
Oneata Mircea Teodor 2023-07-07 14:18:04 UTC CC toneata

Back to bug 2122325