Check: AXOS-00-000080
Axonius Federal Systems Ax-OS STIG:
AXOS-00-000080
(in versions v1 r2 through v1 r1)
Title
Ax-OS must compare the internal system clocks on an organization-defined frequency with an organization-defined authoritative time source. (Cat II impact)
Discussion
Synchronization of internal system clocks with an authoritative source provides uniformity of time stamps for systems with multiple system clocks and systems connected over a network. Satisfies: SRG-APP-000925, SRG-APP-000371, SRG-APP-000372, SRG-APP-000374, SRG-APP-000920
Check Content
From the Axonius Toolbox (accessed via Secure Shell [SSH]) Main Actions Menu, select the following options: System Actions >> Advanced System Actions >> NTP Sources If any NTP sources listed are not an authoritative time source approved by the authorizing official (AO), this is a finding.
Fix Text
From the Axonius Toolbox (accessed via SSH) Main Actions Menu, select the following options: System Actions >> Advanced System Actions >> Configure NTP Enter the hostname/IP of an AO-approved authoritative time source.
Additional Identifiers
Rule ID: SV-276016r1123260_rule
Vulnerability ID: V-276016
Group Title: SRG-APP-000925
Expert Comments
CCIs
| Number | Definition |
|---|---|
| CCI-001890 |
Record time stamps for audit records that use Coordinated Universal Time, have a fixed local time offset from Coordinated Universal Time, or that include the local time offset as part of the time stamp. |
| CCI-004922 |
Synchronize system clocks within and between systems or system components. |
| CCI-004923 |
Compare the internal system clocks on an organization-defined frequency with organization-defined authoritative time source. |
| CCI-004926 |
Synchronize the internal system clocks to the authoritative time source when the time difference is greater than organization-defined time period. |