STIGQter STIGQter: STIG Summary: Forescout Network Device Management Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 02 Jul 2025:

Forescout must be configured to synchronize internal information system clocks using redundant authoritative time sources.

DISA Rule

SV-230944r1112438_rule

Vulnerability Number

V-230944

Group Title

SRG-APP-000373-NDM-000298

Rule Version

FORE-NM-000160

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure Forescout to synchronize internal information system clocks with the primary and secondary time sources located in different geographic regions using redundant authoritative time sources.

1. Open an SSH session and authenticate to the Forescout command line.
2. Configure the primary and secondary NTP servers with the command "fstool ntp setup <ip address>".

or

1. Open the Forescout console.
2. Navigate to General >> Time.
3. Check the box for "Enable sync with NTP server".

Check Contents

Determine if Forescout is configured to synchronize internal clocks with the organization's primary and secondary NTP servers.

Determine if Forescout is configured to synchronize internal clocks with the organization's primary and secondary NTP servers.

1. Open an SSH session and authenticate to the Forescout command line.
2. Verify a primary and secondary NTP server has been configured with the command "fstool ntp test".

Or

1. Open the Forescout console.
2. Navigate to General >> Time and verify "Enable sync with NTP server" is checked.

If Forescout is not configured to synchronize internal information system clocks with the organization's primary and secondary NTP servers, this is a finding.

Vulnerability Number

V-230944

Documentable

False

Rule Version

FORE-NM-000160

Severity Override Guidance

Determine if Forescout is configured to synchronize internal clocks with the organization's primary and secondary NTP servers.

Determine if Forescout is configured to synchronize internal clocks with the organization's primary and secondary NTP servers.

1. Open an SSH session and authenticate to the Forescout command line.
2. Verify a primary and secondary NTP server has been configured with the command "fstool ntp test".

Or

1. Open the Forescout console.
2. Navigate to General >> Time and verify "Enable sync with NTP server" is checked.

If Forescout is not configured to synchronize internal information system clocks with the organization's primary and secondary NTP servers, this is a finding.

Check Content Reference

M

Target Key

5245