Download XLi Time & Frequency System
Transcript
S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S S The first column is the key identification number, which may range in whole positive numbers from 1 to 65,535. The second column is the type of key, which is always set to the letter M when using MD5 authentication. The third column is the private key that is ASCII text from 1 to 32 characters in length. Up to eight MD5 can be established. Editing MD5 keys on the NTP Client For NTP client authentication, the line trustedkey 1 2 in the “ntp.conf” file is required to enable the private keys 1 and 2 from the “ntp.keys” file. The line bclient is required for broadcast time packets to be processed by the NTP client. In this case, sample information from a client “ntp.conf” file might look like: 2 trustedkey bclient 1 2 Network Time Protocol (NTP) does not permit comments in the ntp.keys files. Inserting comments will prevent the ntp.keys files from being parsed correctly and turns off authentication at initialization. 1 Sample information in a client “ntp.keys” file might look like: 1 2 M M truetime TTXli When you invoke the NTP client at the command line, use the following options: – b to turn on broadcast reception – k /etc/ntp.keys to specify the name and location of the keys file 5 – d for debugging. An example command line might look like: ntpd –d –d –d –b –k /etc/ntp.keys Important lines in the ntp.conf file of the ntp client (not server) are: trusted key 1 2 If you do not use MD5 authentication, remove # from “#disable auth”. XLi Time & Frequency System XLi-man, Issue 8, 6/17/2008, Rev. H 285