Re: ntpd or openntpd?



On Sun, 30 Dec 2007 17:17:43 +0000 (UTC), Michael Grimm
<trashcan@xxxxxxxxxxxxxxxx> wrote:

Hi -

Disclaimer: I have to admit that I'm a newbie with regard to FBSD.

I'm currently running 6.2-RELEASE on a small newsserver behind a Netgear
router with its "firewall" settings in place, synchronizing time by
invoking "ntpd -q" out of /etc/crontab twice an hour.

Not a good idea.

Occasionally
this command hangs forever, and time synchronization is gone ...

Therefore I'm considering to run ntpd in daemon mode. It's only purpose
will be the time synchronization for that given server, no ntp server
functionality for my LAN needed. Here comes my question:

What would you recommend to use from a security point of view, ntp
4.2.0-a as part of 6.2-RELEASEi [1],
a newer ntpd port aka ntp-4.2.2p4 or
ntp-4.2.5p75, or the OpenBSD ntpd port?

To avoid compatiblity issues, you are best off to use what came with
your release, unless you have some explicit reason to do otherwise.
Simply add: ntpd_enable="YES"
to your /etc/rc.conf


[1] /etc/ntp.conf:
server 1.xxxx
server 2.xxxx
server 3.xxxx
restrict default ignore

Use NTP Pool Servers for your region
See: http://support.ntp.org/bin/view/Servers/NTPPoolServers

Your ntp.conf should also have: driftfile /var/db/ntp.drift
It takes about an hour+ of running before the drift file gets created.
Make sure that it is created.


Regards,
Michael
--
to let

.



Relevant Pages

  • Re: Time synchronization
    ... > I need working example or links which describe really well this topic (what> should I set on server and clients). ... > -type NTP ... When client change> local time I need that server synchronize time in max 5 minutes. ... Is it possible to set time synchronization every 2 or> 5 minutes ?? ...
    (microsoft.public.win2000.networking)
  • Time synchronization
    ... Anyone know way how to enforce time synchronization (automatic, ... should I set on server and clients). ... -type NTP ...
    (microsoft.public.win2000.networking)
  • Re: broadcast client
    ... synchronizing with the same ntp server. ... ntp displined clock. ... because the drift discipline is inversely ... The reason for the backup to long poll intervals is ...
    (comp.protocols.time.ntp)
  • Re: Local (own site) NTP servers.
    ... been messing about trying to get a local GPS ... Disciplined NTP server working, ... to be able to take PPS based GPS signals, and act as a server. ... GPSDNTP server for a small low traffic LAN?.. ...
    (comp.protocols.time.ntp)
  • Re: NTPD concurrent clients limit
    ... I use my own Symmetricom gps disciplined ntp servers, my own Datum/Symmetricom gps disciplined rubidium standards for 1PPP and 10 MHz all using HP/Symmetricom gps antennas and gps splitters. ... I also run the latest release of ntpd software on several HP/Compaq Servers. ... Is this packet also implemented in a "canned" or hardware only ntp server? ... NTP is designed to work with poll intervals between 64 seconds and 1024 ...
    (comp.protocols.time.ntp)