2.3.1.1 Set 'ntp authenticate'

Information

Enable NTP authentication.

Rationale:

Using authenticated NTP ensures the Cisco device only permits time updates from authorized NTP servers.

Solution

Configure NTP authentication:


hostname(config)#ntp authenticate

Impact:

Organizations should establish three Network Time Protocol (NTP) hosts to set consistent time across the enterprise. Enabling the 'ntp authenticate' command enforces authentication between NTP hosts.

Default Value:

NTP authentication is not enabled.





References:

http://www.cisco.com/en/US/docs/ios-xml/ios/bsm/command/bsm-cr-n1.html#GUID-8BEBDAF4-6D03-4C3E-B8D6-6BCBC7D0F324

See Also

https://workbench.cisecurity.org/files/2585

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2(1), CSCv6|6.1

Plugin: Cisco

Control ID: 2f75b67cd522118401250b440bbb5e4b436ad7617a01c708345ea2735dcac48d