No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Configuration Guide - Device Management

CloudEngine 12800 and 12800E V200R005C10

This document describes the configurations of Device Management, including device status query, hardware management, Information Center Configuration, NTP, Synchronous Ethernet Configuration, Fault Management Configuration, Energy-Saving Management Configuration, Performance Management Configuration, Maintenance Assistant Configuration, and OPS Configuration.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring NTP Authentication

Configuring NTP Authentication

Context

On some networks demanding high security, the authentication function needs to be enabled when you use the NTP protocol. Password authentication of a client and a server ensures that the client only synchronizes with a device that has been authenticated, improving the network security.

When configuring the NTP authentication function, note the following rules:

  • The NTP authentication function must be enabled first; otherwise, authentication cannot be implemented.

  • The NTP authentication function needs to be configured on both the client and the server; otherwise, the NTP authentication function does not take effect.

  • If the NTP authentication function is enabled, a trusted key is configured on the client.

  • Keys configured on the server and the client must be identical.

  • The device that wants to synchronize its clock should declare its key as reliable; otherwise, NTP authentication will fail.

NOTE:

In NTP symmetric peer mode, the symmetric active peer functions as a client and the symmetric passive peer functions as a server.

Procedure

  1. Run system-view

    The system view is displayed.

  2. Run ntp authentication enable

    The NTP authentication function is enabled.

  3. Run ntp authentication-keyid key-id authentication-mode { md5 | hmac-sha256 } { plain password-plain | [ cipher ] password }

    The NTP authentication key is configured.

  4. Run ntp trusted authentication-keyid key-id

    The reliable key is specified.

  5. Run commit

    The configuration is committed.

Follow-up Procedure

After the configuration of the NTP authentication is completed, apply the NTP authentication key in Configuring NTP Operating Modes. That is, specify the parameter authentication-keyid.

Translation
Download
Updated: 2019-04-20

Document ID: EDOC1100074722

Views: 17862

Downloads: 19

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next