<Quidway> display ntp-service sessions
source reference stra reach poll now offset delay
disper
********************************************************************************
[12345]127.127.1.0 LOCAL(0) 7 1 64 2 - 0.0
15.6
note: 1 source(master),2 source(peer),3 selected,4 candidate,5 configured,
6 vpn-instance
Run the display ntp-service trace command to view the summary information on each passing
NTP server when tracing from the local device to the reference clock source.
<Quidway> display ntp-service trace
server 127.0.0.1,stratum 5, offset 0.024099, synch distance 0.06337,
server 171.1.1.2,stratum 4, offset 0.028786, synch distance 0.04575,
server 201.1.1.2,stratum 3, offset 0.035199, synch distance 0.03075,
server 200.1.7.1,stratum 2, offset 0.039855, synch distance 0.01096,
refid 127.127.1.0
3.4 Configuring NTP Security Mechanisms
This section describes how to configure NTP security mechanisms to guarantee reliable clock
synchronization on networks demanding high security.
3.4.1 Establishing the Configuration Task
Before configuring NTP security mechanisms , familiarize yourself with the applicable
environment, complete the pre-configuration tasks, and obtain the required data. This can help
you complete the configuration task quickly and accurately.
3.4.2 Setting NTP Access Authorities
When receiving an access request packet, the NTP server matches the request packet with the
access authority in descending order (from peer, server, synchronization to query). The first
matched authority takes effect.
3.4.3 Enabling NTP Authentication
You must configure the same authentication key on the NTP server and NTP client, and declare
that the key is reliable. Otherwise, NTP authentication fails.
3.4.4 Configuring NTP Authentication in Unicast Server/Client Mode
By configuring the authentication key ID used in the synchronization with the specific NTP
server on the NTP client, you can apply NTP authentication in C/S mode.
3.4.5 Configuring NTP Authentication in Peer Mode
By configuring the authentication key ID used in the synchronization with the peer on the local
end, you can apply NTP authentication in peer mode.
3.4.6 Configuring NTP Authentication in Broadcast Mode
By configuring the authentication key ID used in the synchronization with the NTP broadcast
server on the local switch, you can apply NTP authentication in broadcast mode.
3.4.7 Configuring NTP Authentication in Multicast Mode
By configuring the authentication key ID used in the synchronization with the NTP multicast
server on the local switch, you can apply NTP authentication in multicast mode.
3.4.8 Checking the Configuration
After NTP security mechanisms are configured, you can view the configuration.
3 NTP Configuration
Quidway S9300 Terabit Routing Switch
Configuration Guide - Network Management
3-14 Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Issue 03 (2010-09-20)