Check: RHEL-06-000248
Red Hat Enterprise Linux 6 STIG:
RHEL-06-000248
(in versions v2 r2 through v1 r14)
Title
The system clock must be synchronized to an authoritative DoD time source. (Cat II impact)
Discussion
Synchronizing with an NTP server makes it possible to collate system logs from multiple sources or correlate computer events with real time events. Using a trusted NTP server provided by your organization is recommended.
Check Content
A remote NTP server should be configured for time synchronization. To verify one is configured, open the following file. /etc/ntp.conf In the file, there should be a section similar to the following: # --- OUR TIMESERVERS ----- server [ntpserver] If this is not the case, this is a finding.
Fix Text
To specify a remote NTP server for time synchronization, edit the file "/etc/ntp.conf". Add or correct the following lines, substituting the IP or hostname of a remote NTP server for ntpserver. server [ntpserver] This instructs the NTP software to contact that remote server to obtain time data.
Additional Identifiers
Rule ID: SV-218008r603264_rule
Vulnerability ID: V-218008
Group Title: SRG-OS-000355
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000160 |
The information system synchronizes internal information system clocks on an organization-defined frequency with an organization-defined authoritative time source. |
CCI-001891 |
The information system compares internal information system clocks on an organization-defined frequency with an organization-defined authoritative time source. |
Controls
Number | Title |
---|---|
AU-8 (1) |
Synchronization With Authoritative Time Source |