SRG-APP-000223-WSR-000011 Controls

STIG IDVersionTitleProduct
APWS-AT-000480V1R1Cookies exchanged between any Automation Controller NGINX web server and any client, such as session cookies, must have security settings that disallow cookie access outside the originating Automation Controller NGINX web server and hosted application.
IIST-SV-000134V3R1The IIS 10.0 web server must use cookies to track session state.