diff --git a/applications/openshift/authentication/oauth_inactivity_timeout/rule.yml b/applications/openshift/authentication/oauth_inactivity_timeout/rule.yml index 0b22118ff942..faa9a2ce5877 100644 --- a/applications/openshift/authentication/oauth_inactivity_timeout/rule.yml +++ b/applications/openshift/authentication/oauth_inactivity_timeout/rule.yml @@ -51,6 +51,7 @@ rationale: |- references: nerc-cip: CIP-004-6 R2.2.3,CIP-007-3 R5.1,CIP-007-3 R5.2,CIP-007-3 R5.3.1,CIP-007-3 R5.3.2,CIP-007-3 R5.3.3 nist: AC-2(5),SC-10 + srg: SRG-APP-000190-CTR-000500 identifiers: cce@ocp4: CCE-83511-6 diff --git a/applications/openshift/authentication/oauthclient_inactivity_timeout/rule.yml b/applications/openshift/authentication/oauthclient_inactivity_timeout/rule.yml index c773e58e30fd..7c19d84445eb 100644 --- a/applications/openshift/authentication/oauthclient_inactivity_timeout/rule.yml +++ b/applications/openshift/authentication/oauthclient_inactivity_timeout/rule.yml @@ -39,7 +39,6 @@ rationale: |- references: nerc-cip: CIP-004-6 R2.2.3,CIP-007-3 R5.1,CIP-007-3 R5.2,CIP-007-3 R5.3.1,CIP-007-3 R5.3.2,CIP-007-3 R5.3.3 nist: AC-2(5),SC-10 - srg: SRG-APP-000190-CTR-000500 identifiers: cce@ocp4: CCE-84178-3 diff --git a/controls/srg_ctr/SRG-APP-000190-CTR-000500.yml b/controls/srg_ctr/SRG-APP-000190-CTR-000500.yml index a87292e153f4..f9427e0af171 100644 --- a/controls/srg_ctr/SRG-APP-000190-CTR-000500.yml +++ b/controls/srg_ctr/SRG-APP-000190-CTR-000500.yml @@ -9,4 +9,4 @@ controls: status: automated rules: - sshd_disable_root_login - - oauthclient_inactivity_timeout + - oauth_or_oauthclient_inactivity_timeout diff --git a/controls/stig_ocp4.yml b/controls/stig_ocp4.yml index 7ef338b1ff8c..a57ae8c26311 100644 --- a/controls/stig_ocp4.yml +++ b/controls/stig_ocp4.yml @@ -457,7 +457,7 @@ controls: - high title: OpenShift must disable root and terminate network connections. rules: - - oauthclient_inactivity_timeout + - oauth_or_oauthclient_inactivity_timeout - sshd_disable_root_login status: automated @@ -526,7 +526,7 @@ controls: session at the end of the session, or as follows: for in-band management sessions (privileged sessions), the session must be terminated after 10 minutes of inactivity.' rules: - - oauthclient_inactivity_timeout + - oauth_or_oauthclient_inactivity_timeout - sshd_disable_root_login status: automated