Skip to main content

πŸ’Ό IA-11 Re-authentication (L)(M)(H)

  • Contextual name: πŸ’Ό IA-11 Re-authentication (L)(M)(H)
  • ID: /frameworks/fedramp-moderate-security-controls/ia/11
  • Located in: πŸ’Ό Identification and Authentication

Description​

Require users to re-authenticate when [Assignment: organization-defined circumstances or situations requiring re-authentication].

IA-11 Additional FedRAMP Requirements and Guidance:

Guidance: The fixed time period cannot exceed the limits set in SP 800-63. At this time they are:

  • AAL2 (moderate baseline)
    • Twelve (12) hours or
    • Thirty (30) minutes of inactivity.

Similar​

  • Sections
    • /frameworks/fedramp-high-security-controls/ia/11
  • Internal
    • ID: dec-c-98af0066

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό IA-11 Re-authentication (L)(M)(H)

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags