NIST 800-53 Rev 5
424 controls available
Concurrent Session Control
Access Control
Control Statement
Limit the number of concurrent sessions for each {{ insert: param, ac-10_odp.01 }} to {{ insert: param, ac-10_odp.02 }}.
Discussion
Organizations may define the maximum number of concurrent sessions for system accounts globally, by account type, by account, or any combination thereof. For example, organizations may limit the number of concurrent sessions for system administrators or other individuals working in particularly sensitive domains or mission-critical applications. Concurrent session control addresses concurrent sessions for system accounts. It does not, however, address concurrent sessions by single users via multiple system accounts.
- Framework
- NIST SP 800-53 Rev 5
- Family
- Access Control
- Baselines
- high
Related Frameworks
4 paths across 1 framework
Related Frameworks
CCI4 mappings
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
Related STIGs
201 STIGs reach this control through 4 CCIs. Expand a row to see the responsible NICE and O*NET roles.