23.2.1 Configuring Global Security
Authentication Mechanism for the
NTP
The NTP client of DGS-3610 series supports encrypting communication with the server by
means of key encryption.
There are two steps to configure the NTP client to communicate with the server by means of
encryption: Step 1, complete relevant settings for global security authentication and global
key for the NTP client; Step 2, complete the trusted key settings for the communication
server. The global security settings of NTP should be done in Step 1, however, the
authentication key should be set also for corresponding server if encrypting communication
with the server is to be initiated.
By default, the client does not use the global security authentication mechanism. If the
security authentication mechanism is not used, the communication will not be encrypted.
However, only the setting of global security authentication does not mean that the encryption
is used to implement the communication between the server and client. The other global key
must also be configured and the encrypted key must be set for the server before the
encrypted communication with the server can be initiated.
To configure the global security authentication mechanism, run the following commands in
the global configuration mode:
The packet is verified by the trusted key, which is specified by the command ntp
authentication-key or ntp trusted-key.
23.2.2 Configuring Global Authentication
Key for the NTP
The next step to configure the global security authentication for the NTP is to set the global
authentication key.
During the configuration of global authentication key, each key is identified by a unique
key-id. The customer can use the command ntp trusted-key to set the key corresponding to
the key-id as a global trusted key.
To specify a global authentication key, run the following commands in the global
configuration mode: