From owner-freebsd-questions@FreeBSD.ORG Tue Apr 7 14:44:52 2015 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 19F6B399; Tue, 7 Apr 2015 14:44:52 +0000 (UTC) Received: from webmail.dweimer.net (24-240-198-187.static.stls.mo.charter.com [24.240.198.187]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id DAB29D86; Tue, 7 Apr 2015 14:44:51 +0000 (UTC) Received: from www.dweimer.net (webmail [192.168.5.2]) by webmail.dweimer.net (8.14.9/8.14.9) with ESMTP id t37EikEj001118 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Tue, 7 Apr 2015 09:44:46 -0500 (CDT) (envelope-from dweimer@dweimer.net) MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII; format=flowed Content-Transfer-Encoding: 7bit Date: Tue, 07 Apr 2015 09:44:46 -0500 From: dweimer To: Robert Schulze Subject: Re: NTPD in jail Organization: dweimer.net Reply-To: dweimer@dweimer.net Mail-Reply-To: dweimer@dweimer.net In-Reply-To: <5523E974.2060601@bytecamp.net> References: <8ee743046ce9a8e9e7e6359150fbfa1e@dweimer.net> <5523E974.2060601@bytecamp.net> Message-ID: <85d94af6e6d16f72a168c546246f9c8b@dweimer.net> X-Sender: dweimer@dweimer.net User-Agent: Roundcube Webmail/1.1.1 Cc: freebsd-questions@freebsd.org, owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 07 Apr 2015 14:44:52 -0000 On 04/07/2015 9:28 am, Robert Schulze wrote: > Hi, > >> >> In the short term to make sure clients don't lose their time sync does >> anyone have a work around that will allow NTPD to run on the jail? >> > > just run it on the host and you'll be fine. > No need to run another instance in a jail. Yes I understand that NTPD on the host keeps the server time in sync, including the jail's time its the clients that sync against the jail's IP address that I am trying to take care of. If I take out the IP address restriction on the host's NTPD service and restart it after the jail, yes its now listening on the Jails IP address as well. But that leaves a bunch of questions about when server/service/jails are restarted, what needs to be restarted when to make sure those ports are bound to on the jail's IP as well as the hosts. -- Thanks, Dean E. Weimer http://www.dweimer.net/