RE: NTP Auth - how to verify??

From: steven.j.nelson@xxxxxx
Date: Fri Apr 19 2002 - 07:13:27 GMT-3


   
Tim,

Thanks for that, I will check my config..

Steve

-----Original Message-----
From: Tim O'Brien [mailto:tobrien@cinci.rr.com]
Sent: 19 April 2002 11:09
To: Nelson,SJ,Steven,IVNH25 C; erickbe; bsin; Cisco
Cc: ccielab
Subject: RE: NTP Auth - how to verify??

When you do the "sho ntp ass det" if you do not have authentication on, you
will see in the first line:

192.5.41.41 configured, our_master, sane, valid, stratum 1

If you do have authentication on, you will see:

133.5.30.1 configured, authenticated, our_master, sane, valid, stratum 4

Notice the additional "authenticated".

Tim
CCIE 9015

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com]On Behalf Of
steven.j.nelson@bt.com
Sent: Friday, April 19, 2002 5:17 AM
To: tobrien@cinci.rr.com; erickbe@yahoo.com; bsin@erols.com;
Cisco@rsd-tc.com
Cc: ccielab@groupstudy.com
Subject: RE: NTP Auth - how to verify??

Hi

I have NTP running with auth also, clock is synced and configured correctly
on client.

When I do sho ntp ass det I cannot see any reference to Authentication being
OK.

However I suspect the very fact that you have authentication on the server
and the correct parameters on the client AND the clock is sync'ed that
Authentication must be OK.

Try changing the MD5 Password and see if the clock still syncs up OK.

Ta

Steve

-----Original Message-----
From: Tim O'Brien [mailto:tobrien@cinci.rr.com]
Sent: 19 April 2002 09:50
To: Erick B.; Bob Sinclair; Cisco
Cc: ccielab
Subject: RE: NTP Auth - how to verify??

Do a "show ntp ass det". The top like will tell you if it is synced, and
authenticated..

Tim
CCIE 9015

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com]On Behalf Of
Erick B.
Sent: Thursday, April 18, 2002 11:42 PM
To: Bob Sinclair; Cisco
Cc: ccielab@groupstudy.com
Subject: NTP Auth - how to verify??

Hi,

I have NTP up and running fine, but one thing is
bugging me about it. I can't seem to find a show
command to verify that it is indeed authenticated. I
did debug ntp auth and it saids Authentication key 1
and thats it. Is that a good or bad sign??

Heres my config:

Client router:

ntp authentication-key 1 md5 cisco
ntp authenticate
ntp trusted-key 1
ntp clock-period 17208464
ntp source Ethernet0/0
ntp server 172.17.101.9 key 1

Master Router (172.17.101.9):

ntp authentication-key 1 md5 cisco
ntp authenticate
ntp trusted-key 1
ntp source Ethernet5/0/0
ntp master

Thanks, Erick



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:58:13 GMT-3