2.2.1.1 Set 'ntp authenticate'

Information

Enable NTP authentication.

Using authenticated NTP ensures the Cisco device only permits time updates from authorized NTP servers.

Solution

Configure NTP authentication:

IOSXR(config)#ntp authenticate

Impact:

Organizations should establish three Network Time Protocol (NTP) hosts to set consistent time across the enterprise. Enabling the 'ntp authenticate' command enforces authentication between NTP hosts.

See Also

https://workbench.cisecurity.org/benchmarks/10473

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-7, 800-53|AU-8, CSCv7|6.1

Plugin: Cisco

Control ID: 2217d684193c966b3e46ca8b2eb49cd11fbf2f0fa4d43c467da3d0c77d65100e