Configuration Prerequisites - H3C S5100-SI Operation Manual

Ethernet switches
Hide thumbs Also See for H3C S5100-SI:
Table of Contents

Advertisement

Configuration Prerequisites

NTP authentication configuration involves:
Configuring NTP authentication on the client
Configuring NTP authentication on the server
Observe the following principles when configuring NTP authentication:
If the NTP authentication function is not enabled on the client, the clock of the client can be
synchronized to a server no matter whether the NTP authentication function is enabled on the
server (assuming that other related configurations are properly performed).
For the NTP authentication function to take effect, a trusted key needs to be configured on both the
client and server after the NTP authentication is enabled on them.
The local clock of the client is only synchronized to the server that provides a trusted key.
In addition, for the server/client mode and the symmetric peer mode, you need to associate a
specific key on the client (the symmetric-active peer in the symmetric peer mode) with the
corresponding NTP server (the symmetric-passive peer in the symmetric peer mode); for the NTP
broadcast/multicast mode, you need to associate a specific key on the broadcast/multicast server
with the corresponding NTP broadcast/multicast client. Otherwise, NTP authentication cannot be
enabled normally.
Configurations on the server and the client must be consistent.
Configuration Procedure
Configuring NTP authentication on the client
Follow these steps to configure NTP authentication on the client:
To do...
Enter system view
Enable the NTP authentication
function
Configure the NTP
authentication key
Configure the specified key as
a trusted key
Associat
Configure on the
e the
client in the
specified
server/client mode
key with
the
Configure on the
correspo
symmetric-active
nding
peer in the
NTP
symmetric peer
server
mode
Use the command...
system-view
ntp-service authentication
enable
ntp-service
authentication-keyid key-id
authentication-model md5
value
ntp-service reliable
authentication-keyid key-id
ntp-service unicast-server
{ remote-ip | server-name }
authentication-keyid key-id
ntp-service unicast-peer
{ remote-ip | peer-name }
authentication-keyid key-id
1-12
Remarks
Required
Disabled by default.
Required
By default, no NTP
authentication key is
configured.
Required
By default, no trusted key is
configured.
Required
For the client in the NTP
broadcast/multicast mode,
you just need to associate the
specified key with the client
on the corresponding server.

Advertisement

Table of Contents
loading

This manual is also suitable for:

H3c s5100-ei

Table of Contents