Configuration Guide NTP Configuration
NTP Configuration
Understanding NTP
Network Time Protocol (NTP) is designed for time synchronization on network
devices. A device can synchronize its clock source and the server. Moreover,
the NTP protocol can provide precise time correction (less than one millisecond
on the LAN and dozens of milliseconds on the WAN, compared with the
standard time) and prevent from attacks by means of encryption and
confirmation.
To provide precise time, NTP needs precise time source, the Coordinated
Universal Time (UTC). The NTP may obtain UTC from the atom clock,
observatory, satellite or Internet. Thus, accurate and reliable time source is
available.
To prevent the time server from malicious destroying, an authentication
mechanism is used by the NTP to check whether the request of time correction
really comes from the declared server, and check the path of returning data.
This mechanism provides protection of anti-interference.
Ruijie switches support the NTP client and server. That is, the switch can not
only synchronize the time of server, but also be the time server to synchronize
the time of other switches. But when the switch works as the time server, it only
support the unicast server mode.
Configuring NTP
This chapter describes how to configure the NTP client and server.
Configuring the Global NTP Authentication Mechanism
The NTP client of Ruijie supports encrypted communication with the NTP server
by means of key encryption.
There are two steps to configure the NTP client to communicate with the NTP
server by means of encryption:
Step 1, Authenticate the NTP client and configure the key globally;
Step 2, Configure the trusted key for the NTP server.
To initiate the encrypted communication with the NTP server, you need to set
authentication key for the NTP server in addition to perfomring Step 1.
By default, the NTP client does not use the global security authentication
mechanism. Without this mechanism, the communication will not be encrypted.