Configuring Sntp Authentication - HPE FlexNetwork 5510 HI Series Network Management And Monitoring Configuration Manual

Hide thumbs Also See for FlexNetwork 5510 HI Series:
Table of Contents

Advertisement

Step
2.
Specify an NTP server for
the device.
To use an NTP server as the time source, make sure its clock has been synchronized. If the stratum
level of the NTP server is greater than or equal to that of the client, the client does not synchronize
with the NTP server.

Configuring SNTP authentication

SNTP authentication makes sure an SNTP client is synchronized only to an authenticated
trustworthy NTP server.
To make sure SNTP authentication can work, follow these guidelines on configuring SNTP
authentication:
Enable authentication on both the NTP server and the SNTP client.
Use the same authentication key ID, algorithm, and, key on the NTP server and SNTP client,
and specify the key as a trusted key on both the NTP server and the SNTP client. For
information about configuring NTP authentication on an NTP server, see
On the SNTP client, associate the specified key with the NTP server. Make sure the server is
allowed to use the key ID for authentication.
With authentication disabled, the SNTP client can synchronize with the NTP server regardless of
whether the NTP server is enabled with authentication.
To configure SNTP authentication on the SNTP client:
Step
1.
Enter system view.
2.
Enable
authentication.
3.
Configure an SNTP
authentication key.
Command
For
sntp
{ server-name | ip-address }
[
vpn-instance-name
[
keyid | source interface-type
interface-number | version
number ] *
For
sntp ipv6 unicast-server
{
ipv6-address
[
vpn-instance-name
[ authentication-keyid keyid
|
interface-number ] *
Command
system-view
SNTP
sntp authentication enable
Release
sntp authentication-keyid keyid
authentication-mode
{ cipher | simple } value
Release
sntp authentication-keyid keyid
authentication-mode
{ hmac-sha-1 | hmac-sha-256 |
hmac-sha-384 | hmac-sha-512 |
md5 } { cipher | simple } string
IPv4:
unicast-server
vpn-instance
authentication-keyid
IPv6:
server-name
vpn-instance
source
interface-type
1111:
md5
1121
and
later:
47
Remarks
]
By default, no NTP server is
specified for the device.
Repeat
this
step
multiple NTP servers.
To use authentication, you must
specify the authentication-keyid
|
keyid option.
}
]
"Configuring
Remarks
N/A
By default, SNTP authentication is
disabled.
By default, no SNTP authentication
key is configured.
to
specify
NTP."

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents