linuxraja
asked on
NTP Server
We have a NTP server and the configuration file follw:
[root@natbox]# cat /etc/ntp.conf
restrict default nomodify notrap noquery
# -- CLIENT NETWORK -------
restrict 192.168.216.0 mask 255.255.255.0 nomodify notrap
restrict 10.36.0.0 mask 255.255.0.0 nomodify notrap
restrict 192.168.213.0 mask 255.255.255.0 nomodify notrap
restrict 192.168.223.0 mask 255.255.255.0 nomodify notrap
restrict 192.168.215.0 mask 255.255.255.0 nomodify notrap
# --- OUR TIMESERVERS -----
server 0.pool.ntp.org
server 1.pool.ntp.org
server 2.pool.ntp.org
server 127.127.1.0 # local clock
fudge 127.127.1.0 stratum 10
driftfile /var/lib/ntp/drift
broadcastdelay 0.008
keys /etc/ntp/keys
[root@natbox]# cat /etc/ntp/keys
#65535 M akey
#1 M pass
Can i get a good explanation for the above contents of ntp.conf file.
Also can I get a standard good ntp.conf sample file, which should be secure and good client communication.
When i type "ntpq -p" in server it saying time out, but when i type "ntpq -p server ip" it displays the output.
So this seems server is not listening localy. Any comments on this?
[root@natbox]# cat /etc/ntp.conf
restrict default nomodify notrap noquery
# -- CLIENT NETWORK -------
restrict 192.168.216.0 mask 255.255.255.0 nomodify notrap
restrict 10.36.0.0 mask 255.255.0.0 nomodify notrap
restrict 192.168.213.0 mask 255.255.255.0 nomodify notrap
restrict 192.168.223.0 mask 255.255.255.0 nomodify notrap
restrict 192.168.215.0 mask 255.255.255.0 nomodify notrap
# --- OUR TIMESERVERS -----
server 0.pool.ntp.org
server 1.pool.ntp.org
server 2.pool.ntp.org
server 127.127.1.0 # local clock
fudge 127.127.1.0 stratum 10
driftfile /var/lib/ntp/drift
broadcastdelay 0.008
keys /etc/ntp/keys
[root@natbox]# cat /etc/ntp/keys
#65535 M akey
#1 M pass
Can i get a good explanation for the above contents of ntp.conf file.
Also can I get a standard good ntp.conf sample file, which should be secure and good client communication.
When i type "ntpq -p" in server it saying time out, but when i type "ntpq -p server ip" it displays the output.
So this seems server is not listening localy. Any comments on this?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Open in new window