Domain Name System (DNS) Security Requirements Guide

The DNS server implementation must compare the internal system clocks on an organization-defined frequency with organization-defined authoritative time source.

STIG ID: | SRG: SRG-APP-000925-DNS-000330 | Severity: Medium | CCI: | Vulnerability ID: V-263646

Description

Synchronization of internal system clocks with an authoritative source provides uniformity of time stamps for systems with multiple system clocks and systems connected over a network.

Check

C-67546r982546_chk

Verify the DNS server implementation is configured to compare the internal system clocks on an organization-defined frequency with organization-defined authoritative time source. If the DNS server implementation is not configured to compare the internal system clocks on an organization-defined frequency with organization-defined authoritative time source, this is a finding.

Fix

F-67454r982099_fix

Configure the DNS server implementation to compare the internal system clocks on an organization-defined frequency with organization-defined authoritative time source.