SRG-APP-000223-WSR-000011 Controls

STIG IDVersionTitleProduct
APWS-AT-000480V2R2Cookies exchanged between any Automation Controller NGINX web server and any client, such as session cookies, must have security settings that disallow cookie access outside the originating Automation Controller NGINX web server and hosted application.
IIST-SV-000134V3R2The IIS 10.0 web server must use cookies to track session state.