2.3.1.1 Set 'ntp authenticate'

Information

Enable NTP authentication.

Using authenticated NTP ensures the Cisco device only permits time updates from authorized NTP servers.

Solution

Configure NTP authentication:

hostname(config)#ntp authenticate

Impact:

Organizations should establish three Network Time Protocol (NTP) hosts to set consistent time across the enterprise. Enabling the 'ntp authenticate' command enforces authentication between NTP hosts.

See Also

https://workbench.cisecurity.org/benchmarks/17130

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-7, 800-53|AU-8, CSCv7|6.1

Plugin: Cisco

Control ID: 9dd1538df366e9772e4d3bfb45077136e03396a7bb245bbee9aafe757a516050