HP 6125XLG R2306-HP 6125XLG Blade Switch Network Management and Monitoring Com - Page 53

sntp reliable authentication-keyid, Predefined user roles, Parameters, Usage guidelines, Examples

Page 53 highlights

Predefined user roles network-admin Parameters ipv6-address: Specifies an IPv6 address of the NTP server. server-name: Specifies a host name of the NTP server, a case-insensitive string of 1 to 253 characters. vpn-instance vpn-instance-name: Specifies the MPLS L3VPN to which the NTP server belongs, where vpn-instance-name is a case-sensitive string of 1 to 31 characters. If the NTP server is on the public network, do not specify this option. authentication-keyid keyid: Specifies the key ID to be used for sending NTP messages to the NTP server, where keyid is in the range of 1 to 4294967295. If this option is not specified, the local device and NTP server do not authenticate each other. source interface-type interface-number: Specifies the source interface for IPv6 NTP messages. If the specified IPv6 NTP server address is not a link local address, the source IPv6 address for IPv6 NTP messages sent by the local device to the NTP server is the IPv6 address of the specified source interface. If the specified IPv6 NTP server address is a link local address, the IPv6 NTP messages are sent from the specified source interface, and the source address of the messages is the link local address of the interface. The interface-type interface-number argument represents the interface type and number. If you do not specify an interface, the device automatically selects the source IPv6 address of IPv6 NTP messages. For more information, see RFC 3484. Usage guidelines When you specify an IPv6 NTP server for the device, the device is synchronized to the NTP server, but the NTP server is not synchronized to the device. To synchronize the PE to a PE or CE in a VPN, provide the vpn-instance vpn-instance-name option in your command. If you include the vpn-instance vpn-instance-name option in the undo ntp-service unicast-server command, the command removes the NTP server with the IP address of ip-address in the specified VPN. If you do not include the vpn-instance vpn-instance-name option in this command, the command removes the NTP server with the IP address of ip-address in the public network. If the specified IPv6 address of the NTP server is a link local address, you must specify the source interface for NTP messages and cannot specify a VPN for the NTP server. Examples # Specify the IPv6 NTP server 2001::1 for the device. system-view [Sysname] sntp ipv6 unicast-server 2001::1 Related commands • sntp authentication enable • sntp authentication-keyid • sntp reliable authentication-keyid sntp reliable authentication-keyid Use sntp reliable authentication-keyid to specify the created authentication key as a trusted key. Use undo sntp reliable authentication-keyid to remove the specified trusted key. 51

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207

51
Predefined user roles
network-admin
Parameters
ipv6-address
: Specifies an IPv6 address of the NTP server.
server-name
: Specifies a host name of the NTP server, a case-insensitive string of 1 to 253 characters.
vpn-instance
vpn-instance-name
: Specifies the MPLS L3VPN to which the NTP server belongs, where
vpn-instance-name
is a case-sensitive string of 1 to 31 characters. If the NTP server is on the public
network, do not specify this option.
authentication-keyid
keyid
: Specifies the key ID to be used for sending NTP messages to the NTP server,
where
keyid
is in the range of 1 to 4294967295. If this option is not specified, the local device and NTP
server do not authenticate each other.
source
interface-type interface-number
: Specifies the source interface for IPv6 NTP messages. If the
specified IPv6 NTP server address is not a link local address, the source IPv6 address for IPv6 NTP
messages sent by the local device to the NTP server is the IPv6 address of the specified source interface.
If the specified IPv6 NTP server address is a link local address, the IPv6 NTP messages are sent from the
specified source interface, and the source address of the messages is the link local address of the
interface. The
interface-type interface-number
argument represents the interface type and number. If you
do not specify an interface, the device automatically selects the source IPv6 address of IPv6 NTP
messages. For more information, see
RFC 3484
.
Usage guidelines
When you specify an IPv6 NTP server for the device, the device is synchronized to the NTP server, but the
NTP server is not synchronized to the device.
To synchronize the PE to a PE or CE in a VPN, provide the
vpn-instance
vpn-instance-name
option in your
command.
If you include the
vpn-instance
vpn-instance-name
option in the
undo ntp-service unicast-server
command, the command removes the NTP server with the IP address of
ip-address
in the specified VPN.
If you do not include the
vpn-instance
vpn-instance-name
option in this command, the command removes
the NTP server with the IP address of
ip-address
in the public network.
If the specified IPv6 address of the NTP server is a link local address, you must specify the source
interface for NTP messages and cannot specify a VPN for the NTP server.
Examples
# Specify the IPv6 NTP server 2001::1 for the device.
<Sysname> system-view
[Sysname] sntp ipv6 unicast-server 2001::1
Related commands
sntp authentication enable
sntp authentication-keyid
sntp reliable authentication-keyid
sntp reliable authentication-keyid
Use
sntp reliable authentication-keyid
to specify the created authentication key as a trusted key.
Use
undo sntp reliable authentication-keyid
to remove the specified trusted key.