Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 22 Dec 2005 16:37:14 -1000
From:      Robert Brewer <rbrewer@lava.net>
To:        doc@FreeBSD.org
Subject:   Suggestions for NTP section of FreeBSD Handbook
Message-ID:  <4D601184E98FB015176F2C0F@fac-dhcp13.ics.hawaii.edu>

next in thread | raw e-mail | index | archive | help
I was setting up NTP based on section 24 of the FreeBSD Handbook

<http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/network-ntp.html>;

and I felt section 24.11.3.3 could be a little more helpful. If you add the 
suggested "restrict default ignore", it looks like all incoming NTP packets 
will be dropped, which prevents synchronization with the configured 
servers. Since one of the most common configurations will be to configure 
some servers and disable all NTP access except for the servers, I think it 
would be helpful to point out this fact. Something like "Make sure to allow 
any upstream servers you have configured to access your server by adding a 
line like 'restrict ntp2a.example.net nomodify' to your configuration.

-- 
Robert Brewer
Information Technology Specialist
University of Hawaii at Manoa, Information and Computer Sciences Dept



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4D601184E98FB015176F2C0F>