STIGQter STIGQter: STIG Summary: Trend Micro TippingPoint NDM Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 02 Apr 2025:

The TippingPoint SMS must authenticate Network Time Protocol sources using authentication that is cryptographically based.

DISA Rule

SV-242250r961506_rule

Vulnerability Number

V-242250

Group Title

SRG-APP-000395-NDM-000347

Rule Version

TIPP-NM-000450

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

In the SMS client, ensure NTP authentication is enabled.

1. Log in to the serial console or ESXi virtual console.
2. Run the command ntp-auth.
3. Select "Y" to change the NTP Authentication settings.
4. Select “A”, enter a key ID.
5. Select "V" to add the key value.
6. Select "T" and ensure SHA1 is added.
7. Select "K" and enter the key ID number.
8. Select "U" and "E" for enable for client and server authentication.

Check Contents

In the SMS client, ensure NTP authentication is enabled.

1. Log in to the serial console or ESXi virtual console.
2. Run the command ntp-auth.

If NTP auth is not enabled for client and server, this is a finding.

Vulnerability Number

V-242250

Documentable

False

Rule Version

TIPP-NM-000450

Severity Override Guidance

In the SMS client, ensure NTP authentication is enabled.

1. Log in to the serial console or ESXi virtual console.
2. Run the command ntp-auth.

If NTP auth is not enabled for client and server, this is a finding.

Check Content Reference

M

Target Key

5369