H3C Technologies H3C WX3000 Series Unified Switches User Manual

Page 463

Advertising
background image

46-12

To do…

Use the command…

Remarks

Configure the NTP authentication
key

ntp-service authentication-keyid

key-id

authentication-model md5

value

Required
By default, no NTP
authentication key is configured.

Configure the specified key as a
trusted key

ntp-service reliable
authentication-keyid
key-id

Required
By default, no trusted key is
configured.

Configure on the
client in the
server/client mode

ntp-service

unicast-server

{ remote-ip | server-name }
authentication-keyid

key-id

Associate
the
specified
key with
the
correspo
nding
NTP
server

Configure on the
symmetric-active
peer in the
symmetric peer
mode

ntp-service

unicast-peer { remote-ip

| peer-name }

authentication-keyid

key-id

Required
For the client in the NTP
broadcast/multicast mode, you
just need to associate the
specified key with the client on
the corresponding server.

z

NTP authentication requires that the authentication keys configured for the server and the client be
the same. Besides, the authentication keys must be trusted keys. Otherwise, the clock of the client
cannot be synchronized with that of the server.

z

In NTP server mode and NTP peer mode, you need to associate the specified key with the
corresponding NTP server (symmetric-active peer) on the client (symmetric-passive peer). In these
two modes, multiple NTP servers (symmetric-active peers) may be configured for a client/passive
peer, and therefore, the authentication key is required to determine which NTP server the local
clock is synchronized to.

Configuring NTP authentication on the server

Follow these steps to configure NTP authentication on the server:

To do…

Use the command…

Remarks

Enter system view

system-view

Enable NTP authentication

ntp-service

authentication

enable

Required
Disabled by default.

Configure an NTP
authentication key

ntp-service authentication-keyid

key-id

authentication-mode md5

value

Required
By default, no NTP authentication key is
configured.

Configure the specified key
as a trusted key

ntp-service reliable
authentication-keyid
key-id

Required
By default, no trusted authentication key
is configured.

Enter VLAN interface view

interface

Vlan-interface vlan-id

Advertising