6.5 Configure Network Time Protocol (NTP) - Server

Information

NOTE: Update NTP_SERVER with the appropriate value for the local environment.

Solution

Install ntp-# apt-get install ntp

Ensure the following lines are in /etc/ntp.conf-

restrict -4 default kod nomodify notrap nopeer noquery
restrict -6 default kod nomodify notrap nopeer noquery

Also, make sure /etc/ntp.conf has at least one NTP server specified-server <ntp-server>
Note- <ntp-server> is the IP address or hostname of a trusted time server. Configuring an
NTP server is outside the scope of this benchmark.

See Also

https://workbench.cisecurity.org/files/91

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-8, CSCv6|6.1

Plugin: Unix

Control ID: 6bbb4e8ffe83c815fa7db3555b4e920bae9660feebb3a8611c5ce5c23aa9dc66