Check: RHEL-09-252015
RHEL 9 STIG:
RHEL-09-252015
(in versions v1 r3 through v1 r1)
Title
RHEL 9 chronyd service must be enabled. (Cat II impact)
Discussion
Inaccurate time stamps make it more difficult to correlate events and can lead to an inaccurate analysis. Determining the correct time a particular event occurred on a system is critical when conducting forensic analysis and investigating system events. Sources outside the configured acceptable allowance (drift) may be inaccurate. Synchronizing internal information system clocks provides uniformity of time stamps for information systems with multiple system clocks and systems connected over a network.
Check Content
Verify the chronyd service is active with the following command: $ systemctl is-active chronyd active If the chronyd service is not active, this is a finding.
Fix Text
To enable the chronyd service run the following command: $ sudo systemctl enable --now chronyd
Additional Identifiers
Rule ID: SV-257944r925819_rule
Vulnerability ID: V-257944
Group Title: SRG-OS-000355-GPOS-00143
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001891 |
The information system compares internal information system clocks on an organization-defined frequency with an organization-defined authoritative time source. |
Controls
Number | Title |
---|---|
AU-8 (1) |
Synchronization With Authoritative Time Source |