Free DISA STIG and SRG Library | Vaulted

V-23747

Network devices must use at least two NTP servers to synchronize time.

Finding ID
NET0812
Rule ID
SV-28651r4_rule
Severity
Cat III
CCE
(None)
Group Title
Two NTP servers are not used to synchronize time.
CCI
(None)
Target Key
(None)
Documentable
No
Discussion

Without synchronized time, accurately correlating information between devices becomes difficult, if not impossible. If logs cannot be successfully compared between each of the routers, switches, and firewalls, it will be very difficult to determine the exact events that resulted in a network breach incident. NTP provides an efficient and scalable method for network devices to synchronize to an accurate time source.

Fix Text

Configure the device to use two separate NTP servers.

Check Content

Review the configuration and verify two NTP servers have been defined. If the device is not configured to use two separate NTP servers, this is a finding.

Responsibility

System Administrator