RE: Ping Brian McGahan - Your NTP Paper

From: Kenneth Wygand (KWygand@customonline.com)
Date: Mon Feb 09 2004 - 13:18:19 GMT-3


Thanks Kasturi. You've confirmed my assumptions. :-)

Thanks again Brian for your help as well. Your paper was very
beneficial to my NTP understanding.

Kenneth E. Wygand
Systems Engineer, Project Services

CISSP #37102, CCNP, CCDP, ACSP, Cisco IPT Design Specialist, MCP, CNA,
Network+, A+
Custom Computer Specialists, Inc.

"Success is to be measured not so much by the position one has reached
in life as by the obstacles which he has overcome while trying to
succeed."
-Booker Taliaferro Washington

-----Original Message-----
From: kasturi cisco [mailto:kasturi_cisco@hotmail.com]
Sent: Monday, February 09, 2004 11:10 AM
To: Kenneth Wygand; ccielab@groupstudy.com
Subject: RE: Ping Brian McGahan - Your NTP Paper

Kenneth,

Two more NTP questions:

1) If I am synchronizing R1 with an NTP master and synchronizing R2 with
R1, I assume I do *NOT* need the "ntp master" command on R1. I believe
R2 can synchronize with any device that is either a) an NTP master, or
b) a device that has synchronized with an NTP master. Please confirm.

i think what u are saying is correct. R1 need not have "master" command.
R2 can have Peer or server relationship with R1.In ur case R1 already
had its time from master so the config on R2 should be "Ntp server R1".
Yes, R2 can synchronize with master or any device synchronized with
master. But when a router has 2 servers to choose from the Stratum #
will come into play. the lower # will be preferred.

2) I want to use R1 and R2 to both synchronize with different external
time sources. The NTP servers they get their time from do *NOT* use
authentication. I also want them to peer with each other *WITH*
authentication. I am assuming I need to use the "ntp authenticate" and
"ntp trusted-key" commands, but that I only tack the "key" attribute
onto the "ntp peer" configuration lines and leave the "ntp server" line
without a key. Please confirm.

When u want R1 and R2 to peer with each other are u looking at using
them as alt servers to the external master time source (ntp server cmd)
or peer with each other (ntp peer cmd). I guess second one is what u
meant.

in the first case u may want to make the External masters have a better
Stratum #. Yes, when they authenticate with each other the
"authenticate"cmd will be used only with peer cmds and not the server
commands.

Hope that helps.

Good Luck,
Kasturi.

  _____

Post Classifieds on MSN classifieds. Buy and Sell on MSN Classifieds.
<http://g.msn.com/8HMBENIN/2734??PS=>



This archive was generated by hypermail 2.1.4 : Fri Mar 05 2004 - 07:13:48 GMT-3