1.9.1.1 Ensure 'NTP authentication' is enabled

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Enables NTP authentication in order to receive time information only from trusted sources

Rationale:

When authentication is not enabled, attackers can disguise as NTP servers and broadcast wrong time and it will be difficult to correlate events upon an incident. In some other cases, attackers can perform NTP DDoS attacks such as NTP Amplification.

Solution

Run the following command to enable NTP authentication

HOSTNAME(CONFIG)#NTP AUTHENTICATE

See Also

https://benchmarks.cisecurity.org/tools2/cisco/CIS_Cisco_Firewall_Benchmark_v4.0.0.pdf

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-3

Plugin: Cisco

Control ID: 71b7863270cbe201f895eb123cc493af239cdcc553f61022e8c7c56a225a9012