1-12
To do… Use the command… Remarks
Configure the NTP
authentication key
ntp-service
authentication-keyid key-id
authentication-model md5 value
Required
By default, no NTP
authentication key is
configured.
Configure the specified key as
a trusted key ntp-service reliable
authentication-keyid key-id
Required
By default, no trusted key is
configured.
Configure on the
client in the
server/client mode
ntp-service unicast-server
{ remote-ip | server-name }
authentication-keyid key-id
Associat
e the
specified
key with
the
correspo
nding
NTP
server
Configure on the
symmetric-active
peer in the
symmetric peer
mode
ntp-service unicast-peer
{ remote-ip | peer-name }
authentication-keyid key-id
Required
For the client in the NTP
broadcast/multicast mode,
you just need to associate the
specified key with the client
on the corresponding server.
z NTP authentication requires that the authentication keys configured for the server and the client be
the same. Besides, the authentication keys must be trusted keys. Otherwise, the clock of the client
cannot be synchronized with that of the server.
z In NTP server mode and NTP peer mode, you need to associate the specified key with the
corresponding NTP server (symmetric-active peer) on the client (symmetric-passive peer). In these
two modes, multiple NTP servers (symmetric-active peers) may be configured for a client/passive
peer, and therefore, the authentication key is required to determine which NTP server the local
clock is synchronized to.
Configuring NTP authentication on the server
Follow these steps to configure NTP authentication on the server:
To do… Use the command… Remarks
Enter system view system-view
Enable NTP authentication ntp-service authentication
enable Required
Disabled by default.
Configure an NTP
authentication key
ntp-service
authentication-keyid key-id
authentication-mode md5
value
Required
By default, no NTP
authentication key is
configured.
Configure the specified key as a
trusted key ntp-service reliable
authentication-keyid key-id
Required
By default, no trusted
authentication key is
configured.
Enter VLAN interface view interface Vlan-inter face vlan-id