Uploaded image for project: 'OpenShift CFE'
  1. OpenShift CFE
  2. CFE-288

AC-12(1) - Session termination and user-initiated logouts

XMLWordPrintable

      The information system:
       (a)   Provides a logout capability for user-initiated communications sessions whenever authentication is used to gain access to [Assignment: organization-defined information resources]; and
       (b)   Displays an explicit logout message to users indicating the reliable termination of authenticated communications sessions.

      Supplemental Guidance:  Information resources to which users gain access via authentication include, for example, local workstations, databases, and password-protected websites/web- based services. Logout messages for web page access, for example, can be displayed after authenticated sessions have been terminated. However, for some types of interactive sessions including, for example, file transfer protocol (FTP) sessions, information systems typically send logout messages as final messages prior to terminating sessions.

      References :
      https://issues.redhat.com/browse/CMP-223
      https://issues.redhat.com/browse/AC-12

      Work todo:

      • Understand the control and how account compass supports the requirement in section a) and b).
      • Update control response

              dshikhar Dhriti Shikhar (Inactive)
              tgeer@redhat.com Trilok Geer
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved:

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0 minutes
                  0m
                  Logged:
                  Time Spent - 1 week, 1 day
                  1w 1d