H3C S7500 Series Ethernet Switches Operation Manual
Operation Manual – NTP
H3C S7500 Series Ethernet Switches Chapter 1
NTP Configuration
1-9
z If the NTP authentication is not enabled on a client, the client can be synchronized
to a server regardless of the NTP authentication configuration performed on the
server (assuming that the related configurations are performed).
z You need to couple the NTP authentication with a trusted key.
z The configurations performed on the server and the client must be the same.
z A client with NTP authentication enabled is only synchronized to a server that can
provide a trusted key.
1.4.2 Configuring NTP Authentication
I. Configuring NTP authentication on the client
Follow these steps to configure NTP authentication on the client:
To do... Use the command... Remarks
Enter system view
system-view
—
Enable NTP
authentication
globally
ntp-service
authentication enable
Required
By default, the NTP
authentication is disabled
Configure the NTP
authentication key
ntp-service
authentication-keyid
key-id
authentication-mode
md5 value
Required
By default, the NTP
authentication key is not
configured
Configure the
specified key to be a
trusted key
ntp-service reliable
authentication-keyid
key-id
Required
By default, no trusted
authentication key is
configured
NTP client mode:
ntp-service
unicast-server
{ remote-ip | server-name }
authentication-keyid
key-id
Associate the
specified key with
the corresponding
NTP server
Peer mode:
ntp-service unicast-peer
{ remote-ip | peer-name }
authentication-keyid
key-id
z In NTP client mode and
NTP peer mode, you need
to associate the specified
key with the corresponding
NTP server on the client.
z You can associate the NTP
server with the
authentication key while
configuring the switch to
operate in a specific NTP
mode. You can also
associate them using this
command after configuring
the NTP mode where the
switch is to operate