HP 6125XLG R2306-HP 6125XLG Blade Switch Network Management and Monitoring Com - Page 31

ntp-service broadcast-client, Usage guidelines, Examples, Related commands, Syntax, Default, Views

Page 31 highlights

value: Specifies the MD5 authentication key string. If simple is specified, it is a string of 1 to 32 characters. If cipher is specified, it is a string of 1 to 73 characters. Usage guidelines In a network where there is a high security demand, the NTP authentication feature must be enabled for a system running NTP. This feature enhances the network security by using client-server key authentication, which prohibits a client from synchronizing to a device that has failed the authentication. After you specify an NTP authentication key, use the ntp-service reliable authentication-keyid command to configure the key as a trusted key. The key automatically changes to untrusted after you delete the key. In this case, you do not need to execute the undo ntp-service reliable authentication-keyid command. You can set up to 128 keys by executing the command. The authentication key, set in either plain text or cipher text, is saved to the configuration file in cipher text. Examples # Set a plaintext MD5 authentication key, with the key ID of 10 and key value of BetterKey. system-view [Sysname] ntp-service authentication enable [Sysname] ntp-service authentication-keyid 10 authentication-mode md5 simple BetterKey Related commands • ntp-service authentication enable • ntp-service reliable authentication-keyid ntp-service broadcast-client Use ntp-service broadcast-client to configure the device to operate in NTP broadcast client mode and use the current interface to receive NTP broadcast packets. Use undo ntp-service broadcast-client to remove the configuration. Syntax ntp-service broadcast-client undo ntp-service broadcast-client Default The device does not operate in any NTP association mode. Views VLAN interface view Predefined user roles network-admin Usage guidelines After you configure this command, the device listens to NTP messages sent by the NTP broadcast server and is synchronized based on the received NTP messages. If you have configured the device to operate in broadcast client mode on an interface with this command, do not add the interface to any aggregate group. To add the interface to an aggregate group, remove the configuration of the command. 29

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207

29
value
: Specifies the MD5 authentication key string. If
simple
is specified, it is a string of 1 to 32
characters. If
cipher
is specified, it is a string of 1 to 73 characters.
Usage guidelines
In a network where there is a high security demand, the NTP authentication feature must be enabled for
a system running NTP. This feature enhances the network security by using client-server key authentication,
which prohibits a client from synchronizing to a device that has failed the authentication.
After you specify an NTP authentication key, use the
ntp-service reliable authentication-keyid
command
to configure the key as a trusted key. The key automatically changes to untrusted after you delete the key.
In this case, you do not need to execute the
undo ntp-service reliable authentication-keyid
command.
You can set up to 128 keys by executing the command.
The authentication key, set in either plain text or cipher text, is saved to the configuration file in cipher
text.
Examples
# Set a plaintext MD5 authentication key, with the key ID of
10
and key value of
BetterKey
.
<Sysname> system-view
[Sysname] ntp-service authentication enable
[Sysname] ntp-service authentication-keyid 10 authentication-mode md5 simple BetterKey
Related commands
ntp-service authentication enable
ntp-service reliable authentication-keyid
ntp-service broadcast-client
Use
ntp-service broadcast-client
to configure the device to operate in NTP broadcast client mode and
use the current interface to receive NTP broadcast packets.
Use
undo ntp-service broadcast-client
to remove the configuration.
Syntax
ntp-service
broadcast-client
undo
ntp-service
broadcast-client
Default
The device does not operate in any NTP association mode.
Views
VLAN interface view
Predefined user roles
network-admin
Usage guidelines
After you configure this command, the device listens to NTP messages sent by the NTP broadcast server
and is synchronized based on the received NTP messages.
If you have configured the device to operate in broadcast client mode on an interface with this command,
do not add the interface to any aggregate group. To add the interface to an aggregate group, remove
the configuration of the command.