The time synchronization configuration file (such as /etc/ntp.conf) must be owned by root.
DISA Rule
SV-100441r1_rule
Vulnerability Number
V-89791
Group Title
SRG-OS-000355-GPOS-00143
Rule Version
VRAU-SL-001115
Severity
CAT II
CCI(s)
- CCI-001891 - The information system compares internal information system clocks on an organization-defined frequency with an organization-defined authoritative time source.
Weight
10
Fix Recommendation
Change the owner of the NTP configuration file:
# chown root /etc/ntp.conf
Check Contents
Check the ownership of the NTP configuration file:
# ls -l /etc/ntp.conf
If the owner is not "root", this is a finding.
Vulnerability Number
V-89791
Documentable
False
Rule Version
VRAU-SL-001115
Severity Override Guidance
Check the ownership of the NTP configuration file:
# ls -l /etc/ntp.conf
If the owner is not "root", this is a finding.
Check Content Reference
M
Target Key
3459
Comments