[Forgot Password]
Login  Register Subscribe

23631

 
 

126941

 
 

98250

 
 

909

 
 

79281

 
 

109

Paid content will be excluded from the download.


Download | Alert*
OVAL

Change the system time

ID: oval:org.secpod.oval:def:22447Date: (C)2015-01-07   (M)2017-11-21
Class: COMPLIANCEFamily: windows




This policy setting determines which users and groups can change the time and date on the internal clock of the computers in your environment. Users who are assigned this user right can affect the appearance of event logs. When a computer's time setting is changed, logged events reflect the new time, not the actual time that the events occurred. When configuring a user right in the SCM enter a comma delimited list of accounts. Accounts can be either local or located in Active Directory, they can be groups, users, or computers. Note: Discrepancies between the time on the local computer and on the domain controllers in your environment may cause problems for the Kerberos authentication protocol, which could make it impossible for users to log on to the domain or obtain authorization to access domain resources after they are logged on. Also, problems will occur when Group Policy is applied to client computers if the system time is not synchronized with the domain controllers. Fix: (1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment!Change the system time (2) WMI: root\rsop\computer#RSOP_UserPrivilegeRight#AccountList#UserRight='SeSystemtimePrivilege' and precedence=1

Platform:
Microsoft Windows 8.1
Reference:
CCE-33094-4
CPE    1
cpe:/o:microsoft:windows_8.1
CCE    1
CCE-33094-4
XCCDF    5
xccdf_org.secpod_benchmark_ISO27001_Windows_8_1
xccdf_org.secpod_benchmark_NIST_800_53_r4_Windows_8_1
xccdf_org.secpod_benchmark_general_Windows_8_1
xccdf_org.secpod_benchmark_PCI_3_2_Windows_8_1
...

© 2013 SecPod Technologies