2.3.1.1 Set 'ntp authenticate'

Information

Enable NTP authentication.

Using authenticated NTP ensures the Cisco device only permits time updates from authorized NTP servers.

Solution

Configure NTP authentication:

hostname(config)#ntp authenticate

Impact:

Organizations should establish three Network Time Protocol (NTP) hosts to set consistent time across the enterprise. Enabling the 'ntp authenticate' command enforces authentication between NTP hosts.

See Also

https://workbench.cisecurity.org/benchmarks/12917

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-7, 800-53|AU-8, CSCv7|6.1

Plugin: Cisco

Control ID: 2c168c11490c632538d5a2ba5068c414634b21aa7755ca3c417b9e2b5ee5dc4a