Mailinglist Archive: opensuse (982 mails)

< Previous Next >
Re: [opensuse] ntp default restrict options - seems to block broadcastclient ?
On 9/23/2014 10:23 AM, Per Jessen wrote:
The current openSUSE packaged NTP config contains the following:

restrict -4 default kod notrap nomodify nopeer noquery
restrict -6 default kod notrap nomodify nopeer noquery

When they're enabled, ntp doesn't sync to my broadcast. Only when I
comment them out does it work.

Which one of "default kod notrap nomodify nopeer noquery" is preventing
my broadcast sync?


thanks
Per


Are you sure those are the only restrictions?
Some suggest you also need a line to allow management from locolhost
and specific server lines for it to query.

server ntp.ubuntu.com

restrict -4 default kod notrap nomodify nopeer noquery
restrict -6 default kod notrap nomodify nopeer noquery

restrict 127.0.0.1
restrict ::1
restrict <some-ip-that-y0u-trust> <-------


The only part that is exploitable is the management functions.
Serving time to others, even those outside your network is not
risky. Being able to manage it from outside is.

--
_____________________________________
---This space for rent---
--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
To contact the owner, e-mail: opensuse+owner@xxxxxxxxxxxx

< Previous Next >
Follow Ups
References