Inactivity Time Warning

Impact area

Security

Severity

Warning

Affected element

Org Config

Rule ID

SF-0171

Impact

Having this value set to a time over 30 minutes can expose you to session hijack attacks.


Remediation

Set this to 30 minutes or less.

Time to fix

30 min

References

This rule is linked to Common Weakness Enumeration CWE-613 Insufficient Session Expiration.




Last modified on Oct 13, 2020