beautypg.com

Ii. configuring ntp authentication on the server – H3C Technologies H3C S3100 Series Switches User Manual

Page 473

background image

Operation Manual – NTP

H3C S3100-52P Ethernet Switch

Chapter 1 NTP Configuration

1-11

Operation

Command

Description

NTP client mode:
ntp-service

unicast-server

{ remote-ip | server-name }

hentication-keyid

-id

aut
key

Associate the

specified key with

the corresponding

NTP server

Peer mode:
ntp-service

unicast-peer

{ remote-ip | peer-name }
authentication-keyid

key-id

z

In NTP client mode and

NTP peer mode, you need

to associate the specified

key with the corresponding

NTP server on the client.

z

You can associate the NTP

server with the

authentication key while

configuring NTP mode. You

can also use this command

to associate them after

configuring NTP mode.

Note:

z

NTP authentication requires that the authentication keys configured for the server
and the client are the same. Besides, the authentication keys must be trusted keys.
Otherwise, the client cannot be synchronized with the server.

z

In NTP server mode and NTP peer mode, you need to associate the specified key
with the corresponding NTP server (active peer) on the client (passive peer). In
these two modes, multiple servers (active peers) may be configured for a
client/passive peer, and therefore, the authentication key is required to determine
which server the client is synchronized to.

II. Configuring NTP authentication on the server

Table 1-5

Configure NTP authentication on the server

Operation

Command

Description

Enter system view system-view

Enable NTP

authentication

ntp-service

authentication

enable

Required
By default, the NTP

authentication function is

disabled.

Configure an NTP

authentication key

ntp-service
authentication-keyid

key-id

authentication-mode

md5

value

Required
By default, no NTP

authentication key is

configured.

Configure the

specified key to be

a trusted key

ntp-service reliable
authentication-keyid
key-id

Required
By default, no trusted

authentication key is

configured.