2.1.2 Ensure chrony is configured

Information

chrony is a daemon which implements the Network Time Protocol (NTP) and is designed to synchronize system clocks across a variety of systems and use a source that is highly accurate. More information on chrony can be found at http://chrony.tuxfamily.org/ . chrony can be configured to be a client and/or a server.

If chrony is in use on the system proper configuration is vital to ensuring time synchronization is working properly.

Solution

Add or edit server or pool lines to /etc/chrony.conf or a file in the /etc/chrony.d directory as appropriate:

Example:

server <remote-server>

See Also

https://workbench.cisecurity.org/benchmarks/15286

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-7, 800-53|AU-8, CSCv7|6.1

Plugin: Unix

Control ID: 6ac529dca3ff1483d57ce38522ea31d764b6d257b6c7fb6e313287dfa925412c