STIGQter STIGQter: STIG Summary: Application Server Security Requirements Guide Version: 3 Release: 1 Benchmark Date: 23 Oct 2020:

The application server must compare internal application server clocks at least every 24 hours with an authoritative time source.

DISA Rule

SV-204792r508029_rule

Vulnerability Number

V-204792

Group Title

SRG-APP-000371

Rule Version

SRG-APP-000371-AS-000077

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the application server to compare internal application server clocks at least every 24 hours with an authoritative time source.

Check Contents

Review application server documentation and confirm that the application server compares internal application server clocks at least every 24 hours with an authoritative time source.

If the application server does not compare internal application server clocks to an authoritative source or if the frequency is greater than every 24 hours, this is a finding.

Vulnerability Number

V-204792

Documentable

False

Rule Version

SRG-APP-000371-AS-000077

Severity Override Guidance

Review application server documentation and confirm that the application server compares internal application server clocks at least every 24 hours with an authoritative time source.

If the application server does not compare internal application server clocks to an authoritative source or if the frequency is greater than every 24 hours, this is a finding.

Check Content Reference

M

Target Key

2900

Comments