RE: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- From: "Young, Mike" <Mike.Young@xxxxxxxxxxxxxx>
- Date: Fri, 18 May 2007 15:05:41 -0500
Good info, but does ntpq use different ports than ntpdate? After all, ntpdate works, but ntpq does not.
-----Original Message-----
From: redhat-list-bounces@xxxxxxxxxx [mailto:redhat-list-bounces@xxxxxxxxxx] On Behalf Of Herta Van den Eynde
Sent: Friday, May 18, 2007 2:58 PM
To: General Red Hat Linux discussion list
Subject: Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
On 18/05/07, Young, Mike <Mike.Young@xxxxxxxxxxxxxx> wrote:
Hello,
I'm seeing an odd NTP problem on a couple of Redhat servers here. Basically the NTP client is on a firewalled DMZ, away from the NTP server. NTP updates via ntpq work fine on the local NTP server subnet, but it isn't working for hosts on the firewalled DMZ. We've checked ports on the firewall, and 123/UDP is open. In addition, we see packets incrementing when we use the "iostat" command in ntpdc, and don't see any dropped or ignored packets in iostat either.
Any ideas?
Thanks,
Mike.
The ntp server uses 123/UDP, the client use ports above 1023.
http://www.unix.org.ua/orelly/networking/firewall/ch08_13.htm suggests
setting up an ntp server on your DMZ.
Kind regards,
Herta
--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list
--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list
- Follow-Ups:
- Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- From: Herta Van den Eynde
- Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- References:
- Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- From: Herta Van den Eynde
- Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- Prev by Date: Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- Next by Date: RE: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- Previous by thread: Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- Next by thread: Re: Firewalled NTP on Redhat - ntpdate works, but ntpq doesn't
- Index(es):
Relevant Pages
- Re: drift value very large and very unstable
... still be a fluke since the drift was rather unpredictable (but _always_ ...
restarted ntp. ... for the refclock 16) and ntpq -crv would be useful. ...
kernel on the same exact hardware as was used last night on the Redhat ... (comp.protocols.time.ntp) - Re: NTP fails synchronization with server at startup
... synchronize with the server at booting. ... not make the connection.
... isn't up when NTP starts. ... Just for info I post a bit of output from ntpq>
pe from FC2, ... (Fedora) - RE: How to start NTPD?
... Should either install ntp or say the latest is installed. ... If ntpq
says "connection refused" then it doesnt look like ntp is running. ... > Subject: How to start
NTPD? ... (Debian-User) - Re: Time server...how to set it up on FC1?
... >>The new ntpdate will no longer make the brutal abrupt time adjustment ...
> on the evils of ntpdate. ... Protocol (NTP) daemon page. ... Connection
closed by foreign host. ... (Fedora) - NTP problems--REPOST
... I've been struggling with getting NTP working on Linux off-and-on for over a
year. ... ntpdate no longer works anymore. ... > From: Shaw, Marco ...
(RedHat)