Step
2.
Specify an NTP server for
the device.
To use an NTP server as the time source, make sure its clock has been synchronized. If the stratum
level of the NTP server is greater than or equal to that of the client, the client does not synchronize
with the NTP server.
Configuring SNTP authentication
SNTP authentication makes sure an SNTP client is synchronized only to an authenticated
trustworthy NTP server.
To make sure SNTP authentication can work, follow these guidelines on configuring SNTP
authentication:
•
Enable authentication on both the NTP server and the SNTP client.
•
Use the same authentication key ID, algorithm, and, key on the NTP server and SNTP client,
and specify the key as a trusted key on both the NTP server and the SNTP client. For
information about configuring NTP authentication on an NTP server, see
•
On the SNTP client, associate the specified key with the NTP server. Make sure the server is
allowed to use the key ID for authentication.
With authentication disabled, the SNTP client can synchronize with the NTP server regardless of
whether the NTP server is enabled with authentication.
To configure SNTP authentication on the SNTP client:
Step
1.
Enter system view.
2.
Enable
authentication.
3.
Configure an SNTP
authentication key.
Command
•
For
sntp
{ server-name | ip-address }
[
vpn-instance-name
[
keyid | source interface-type
interface-number | version
number ] *
•
For
sntp ipv6 unicast-server
{
ipv6-address
[
vpn-instance-name
[ authentication-keyid keyid
|
interface-number ] *
Command
system-view
SNTP
sntp authentication enable
•
Release
sntp authentication-keyid keyid
authentication-mode
{ cipher | simple } value
•
Release
sntp authentication-keyid keyid
authentication-mode
{ hmac-sha-1 | hmac-sha-256 |
hmac-sha-384 | hmac-sha-512 |
md5 } { cipher | simple } string
IPv4:
unicast-server
vpn-instance
authentication-keyid
IPv6:
server-name
vpn-instance
source
interface-type
1111:
md5
1121
and
later:
47
Remarks
]
By default, no NTP server is
specified for the device.
Repeat
this
step
multiple NTP servers.
To use authentication, you must
specify the authentication-keyid
|
keyid option.
}
]
"Configuring
Remarks
N/A
By default, SNTP authentication is
disabled.
By default, no SNTP authentication
key is configured.
to
specify
NTP."