H3C S5500-EI series Operation Manual page 1165

Hide thumbs Also See for S5500-EI series:
Table of Contents

Advertisement

Operation Manual – NTP
H3C S5500-EI Series Ethernet Switches
query: control query permitted. This level of right permits the peer switch to
perform control query to the NTP service on the local switch but does not permit
the peer switch to synchronize its clock to the local switch. The so-called "control
query" refers to query of some states of the NTP service, including alarm
information, authentication status, clock source information, and so on.
synchronization: server access only. This level of right permits the peer switch to
synchronize its clock to the local switch but does not permit the peer switch to
perform control query.
server: server access and query permitted. This level of right permits the peer
switch to perform synchronization and control query to the local switch but does
not permit the local switch to synchronize its clock to the peer switch.
peer: full access. This level of right permits the peer switch to perform
synchronization and control query to the local switch and also permits the local
switch to synchronize its clock to the peer switch.
From the highest NTP service access-control right to the lowest one are peer, server,
synchronization, and query. When a switch receives an NTP request, it will perform
an access-control right match and will use the first matched right.
1.5.1 Configuration Prerequisites
Prior to configuring the NTP service access-control right to the local switch, you need to
create and configure an ACL associated with the access-control right. For the
configuration of ACL, refer to the ACL part of the manual.
1.5.2 Configuration Procedure
Follow these steps to configure the NTP service access-control right to the local switch:
Enter system view
Configure the NTP
service access-control
right to the local switch
Note:
The access-control right mechanism provides only a minimum degree of security
protection for the system running NTP. A more secure method is identity
authentication.
To do...
system-view
ntp-service access
{ peer | query | server |
synchronization }
acl-number
Use the command...
1-14
Chapter 1 NTP Configuration
Remarks
Required
peer by default

Advertisement

Table of Contents
loading

Table of Contents