NET0812 - Two NTP servers are not used to synchronize time - 'ntp update-calendar'

Information

The network element must use two or more NTP servers to synchronize time.

Without synchronized time, accurately correlating information between devices becomes difficult, if not impossible. If you cannot successfully compare logs between each of your routers, switches, and firewalls, it will be very difficult to determine the exact events that resulted in a network breach incident. NTP provides an efficient and scalable method for network elements to synchronize to an accurate time source.

NOTE: This option may not be available on lower-end routers (i.e. Cisco 2500 serices or 2600 series).

Solution

Configure the device to use two separate NTP servers.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Network_L2_Switch_V8R27_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-8(1), CAT|III, Rule-ID|SV-41497r1_rule, STIG-ID|NET0812, Vuln-ID|V-23747

Plugin: Cisco

Control ID: 1b55e24681b796577e8652582cb04f1ee81af85a2b869ae33468e09bc0b579f6