ASVS Requirement 7.1.3
- Level: 2
- Chapter: V7 Session Management
- Section: V7.1 Session Management Documentation
- Source: 0x16-V7-Session-Management.md
Description
Verify that all systems that create and manage user sessions as part of a federated identity management ecosystem (such as SSO systems) are documented along with controls to coordinate session lifetimes, termination, and any other conditions that require re-authentication.