2.3.1.1 Set 'ntp authenticate'

Information

Enable NTP authentication.

Rationale:

Using authenticated NTP ensures the Cisco device only permits time updates from authorized NTP servers.

Impact:

Organizations should establish three Network Time Protocol (NTP) hosts to set consistent time across the enterprise. Enabling the 'ntp authenticate' command enforces authentication between NTP hosts.

Solution

Configure NTP authentication:

hostname(config)#ntp authenticate

Default Value:

NTP authentication is not enabled.

See Also

https://workbench.cisecurity.org/benchmarks/12741

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-7, 800-53|AU-8, CSCv7|6.1

Plugin: Cisco

Control ID: 8f549ecdf1ea3a7b0e2e36ae2b5f87ceff74f2cf45c53336361087a79ed4b72b