SV-214524r557389_rule
V-214524
SRG-NET-000131-ALG-000086
JUSX-AG-000084
CAT II
10
Delete NTP options from zones and interface commands. Re-enter the set security zone command without the "ntp" attribute. The exact command entered depends how the zone is configured with the authorized attributes, services, and options.
Examples:
[edit]
set security zones security-zone <zone-name> interfaces <interface-name> host-inbound-traffic
Check both the zones and the interface stanza to ensure NTP is not configured as a service option.
[edit]
show security zones
and, for each interface used, enter:
show security zones <zone-name> interface <interface-name>
If NTP is included in any of the zone or interface stanzas, this is a finding.
V-214524
False
JUSX-AG-000084
Check both the zones and the interface stanza to ensure NTP is not configured as a service option.
[edit]
show security zones
and, for each interface used, enter:
show security zones <zone-name> interface <interface-name>
If NTP is included in any of the zone or interface stanzas, this is a finding.
M
4004