3.084 - The system is configured to use an unauthorized time server. - 'NTPServer'

Information

The Windows Time Service controls time synchronization settings. Time synchronization is essential for authentication and auditing purposes. If the Windows Time Service is used, it should synchronize with a secure, authorized time source. Domain joined systems are automatically configured to synchronize with domain controllers. If an NTP server is configured it should synchronize with a secure, authorized time source.

Solution

If the system needs to be configured to an NTP server, configure the system to point to an authorized time server by setting the policy value for Computer Configuration -> Administrative Templates -> System -> Windows Time Service -> Time Providers 'Configure Windows NTP Client' to 'Enabled', and configure the 'NtpServer' field to point to an authorized time server.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-8(1)(a), CAT|III, CCI|CCI-001891, Rule-ID|SV-29538r1_rule, STIG-ID|3.084, Vuln-ID|V-3472

Plugin: Windows

Control ID: b217929be332abff1d8d3f2f1380bf9072d345e3da8565e51230a2504ed7a7cf