<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: cannot manage to sync with ntp authentication in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199234#M875743</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;and WHAT is the difference from what I posted:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ntp authenticate&lt;/P&gt;&lt;P&gt;ntp authentication-key 1 md5 *&lt;/P&gt;&lt;P&gt;ntp trusted-key 1&lt;/P&gt;&lt;P&gt;ntp server server-ntp-USNO key 1 source outside prefer &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to what you're saying:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[no] ntp authenticate&lt;/P&gt;&lt;P&gt;[no] ntp authentication-key number md5 value&lt;/P&gt;&lt;P&gt;[no] ntp trusted-key number&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 04 Mar 2009 04:19:32 GMT</pubDate>
    <dc:creator>nlariguet</dc:creator>
    <dc:date>2009-03-04T04:19:32Z</dc:date>
    <item>
      <title>cannot manage to sync with ntp authentication</title>
      <link>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199232#M875741</link>
      <description>&lt;P&gt;ntp server whatever source outside prefer ... is working flawlessly but when I try:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;name 192.5.41.209 server-ntp-USNO description US Naval Obervatory&lt;/P&gt;&lt;P&gt;name 128.115.14.97 server-ntp-LLL description Lawrence Livermore Laboratory&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;ntp authentication-key 1 md5 * (where * is an arbitrary 32-character string; ie: a user-defined random-string am I right ?)&lt;/P&gt;&lt;P&gt;ntp authentication-key 2 md5 * (another different one)&lt;/P&gt;&lt;P&gt;ntp authenticate&lt;/P&gt;&lt;P&gt;ntp trusted-key 1&lt;/P&gt;&lt;P&gt;ntp trusted-key 2&lt;/P&gt;&lt;P&gt;ntp server server-ntp-LLL key 2 source outside&lt;/P&gt;&lt;P&gt;ntp server server-ntp-USNO key 1 source outside prefer&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the above example is more-or-less out of the PIX documentation but as you can see:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;firewall# show ntp status&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Clock is unsynchronized, stratum 16, no reference clock&lt;/P&gt;&lt;P&gt;nominal freq is 99.9984 Hz, actual freq is 99.9984 Hz, precision is 2**6&lt;/P&gt;&lt;P&gt;reference time is 00000000.00000000 (06:28:16.000 UTC Thu Feb 7 2036)&lt;/P&gt;&lt;P&gt;clock offset is 0.0000 msec, root delay is 0.00 msec&lt;/P&gt;&lt;P&gt;root dispersion is 0.00 msec, peer dispersion is 0.00 msec&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;firewall# show ntp associations detail&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;128.115.14.97 configured, insane, invalid, unsynced, stratum 16&lt;/P&gt;&lt;P&gt;ref ID 0.0.0.0, time 00000000.00000000 (06:28:16.000 UTC Thu Feb 7 2036)&lt;/P&gt;&lt;P&gt;our mode client, peer mode unspec, our poll intvl 64, peer poll intvl 64&lt;/P&gt;&lt;P&gt;root delay 0.00 msec, root disp 0.00, reach 0, sync dist 0.000&lt;/P&gt;&lt;P&gt;delay 0.00 msec, offset 0.0000 msec, dispersion 16000.00&lt;/P&gt;&lt;P&gt;precision 2**5, version 3&lt;/P&gt;&lt;P&gt;org time 00000000.00000000 (06:28:16.000 UTC Thu Feb 7 2036)&lt;/P&gt;&lt;P&gt;rcv time 00000000.00000000 (06:28:16.000 UTC Thu Feb 7 2036)&lt;/P&gt;&lt;P&gt;xmt time cd508e71.b903bb88 (03:43:45.722 UTC Thu Feb 26 2009)&lt;/P&gt;&lt;P&gt;filtdelay =     0.00    0.00    0.00    0.00    0.00    0.00    0.00    0.00&lt;/P&gt;&lt;P&gt;filtoffset =    0.00    0.00    0.00    0.00    0.00    0.00    0.00    0.00&lt;/P&gt;&lt;P&gt;filterror =  16000.0 16000.0 16000.0 16000.0 16000.0 16000.0 16000.0 16000.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;192.5.41.209 configured, insane, invalid, unsynced, stratum 16&lt;/P&gt;&lt;P&gt;ref ID 0.0.0.0, time 00000000.00000000 (06:28:16.000 UTC Thu Feb 7 2036)&lt;/P&gt;&lt;P&gt;our mode client, peer mode unspec, our poll intvl 64, peer poll intvl 64&lt;/P&gt;&lt;P&gt;root delay 0.00 msec, root disp 0.00, reach 0, sync dist 0.000&lt;/P&gt;&lt;P&gt;delay 0.00 msec, offset 0.0000 msec, dispersion 16000.00&lt;/P&gt;&lt;P&gt;precision 2**5, version 3&lt;/P&gt;&lt;P&gt;org time cd508e75.72d7dc0f (03:43:49.448 UTC Thu Feb 26 2009)&lt;/P&gt;&lt;P&gt;rcv time cd508e73.e8c22140 (03:43:47.909 UTC Thu Feb 26 2009)&lt;/P&gt;&lt;P&gt;xmt time cd508e73.b9046392 (03:43:47.722 UTC Thu Feb 26 2009)&lt;/P&gt;&lt;P&gt;filtdelay =     0.00    0.00    0.00    0.00    0.00    0.00    0.00    0.00&lt;/P&gt;&lt;P&gt;filtoffset =    0.00    0.00    0.00    0.00    0.00    0.00    0.00    0.00&lt;/P&gt;&lt;P&gt;filterror =  16000.0 16000.0 16000.0 16000.0 16000.0 16000.0 16000.0 16000.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what I am doing wrong ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pix804&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:57:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199232#M875741</guid>
      <dc:creator>nlariguet</dc:creator>
      <dc:date>2019-03-11T14:57:11Z</dc:date>
    </item>
    <item>
      <title>Re: cannot manage to sync with ntp authentication</title>
      <link>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199233#M875742</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To enable the PIX Firewall NTP client, enter the following command: &lt;/P&gt;&lt;P&gt;[no] ntp server ip_address [key number] source if_name [prefer]&lt;/P&gt;&lt;P&gt;To enable authentication for NTP messages, enter the following command: &lt;/P&gt;&lt;P&gt;[no] ntp authenticate&lt;/P&gt;&lt;P&gt;[no] ntp authentication-key number md5 value&lt;/P&gt;&lt;P&gt;[no] ntp trusted-key number&lt;/P&gt;&lt;P&gt;The ntp authenticate command enables NTP authentication. If you enter this command, the PIX Firewall will not synchronize to an NTP server unless the server is configured with one of the authentication keys specified using the ntp trusted-key command. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Mar 2009 03:40:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199233#M875742</guid>
      <dc:creator>sadbulali</dc:creator>
      <dc:date>2009-03-04T03:40:13Z</dc:date>
    </item>
    <item>
      <title>Re: cannot manage to sync with ntp authentication</title>
      <link>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199234#M875743</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;and WHAT is the difference from what I posted:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ntp authenticate&lt;/P&gt;&lt;P&gt;ntp authentication-key 1 md5 *&lt;/P&gt;&lt;P&gt;ntp trusted-key 1&lt;/P&gt;&lt;P&gt;ntp server server-ntp-USNO key 1 source outside prefer &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to what you're saying:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[no] ntp authenticate&lt;/P&gt;&lt;P&gt;[no] ntp authentication-key number md5 value&lt;/P&gt;&lt;P&gt;[no] ntp trusted-key number&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Mar 2009 04:19:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-manage-to-sync-with-ntp-authentication/m-p/1199234#M875743</guid>
      <dc:creator>nlariguet</dc:creator>
      <dc:date>2009-03-04T04:19:32Z</dc:date>
    </item>
  </channel>
</rss>

