AC-12(1) - Session Termination | User-initiated Logouts

Provide a logout capability for user-initiated communications sessions whenever authentication is used to gain access to [Assignment: organization-defined information resources].


ID: AC-12(1)
Enhancement of : AC-12

Space Segment Guidance

On-demand logout can be useful when activity appears anomalous or off-plan. Think through how operator-initiated termination propagates to the spacecraft (e.g., invalidating current tokens), what happens to stacked or partially executed procedures, and how emergency stop semantics interact with essential recovery commands. Clear audit markers, predictable reject codes, and a documented path to re-establish a session help avoid confusion during brief contacts.