UCF STIG Viewer Logo

NTP time synchronization must be configured.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-OS-99999-ESXI5-000131 SRG-OS-99999-ESXI5-000131 SRG-OS-99999-ESXI5-000131_rule Medium
Description
By ensuring that all systems use the same relative time source (including the relevant localization offset), and that the relative time source can be correlated to an agreed-upon time standard (such as Coordinated Universal Time-UTC), it can make it simpler to track and correlate an intruder's actions when reviewing the relevant log files. Incorrect time settings can make it difficult to inspect and correlate log files to detect attacks, and can make auditing inaccurate.
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-SRG-OS-99999-ESXI5-000131_chk )
From the vSphere Client: Select the host and click "Configuration >> Time Configuration". Select the properties link and chose 'Options'. Select NTP Settings to view configured NTP servers. If NTP is not configured, this is a finding.
Fix Text (F-SRG-OS-99999-ESXI5-000131_fix)
From the vSphere Client: Select the host and click "Configuration >> Time Configuration". Select the properties link and chose 'Options'. From the General tab start the NTP service and select "Start and stop with host". From the NTP Settings tab click the 'Add' button to add the organization-defined NTP servers.