Gentoo Logo
Gentoo Spaceship

Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-amd64
Lists: gentoo-amd64: < Prev By Thread Next > < Prev By Date Next >
To: gentoo-amd64@g.o, Peter Humphrey <prh@...>
From: David Fellows <fellows@...>
Subject: Re: ntpd configuration question
Date: Wed, 22 Mar 2006 22:52:15 -0400
> I don't suppose this is the right place to ask, but I hope you won't mind 
> too much. Perhaps I'm just not looking in the right place, though I've been 
> through the extensive ntp documentation with the proverbial tooth comb but 
> still can't find what I need.
> I'm putting a new iDEQ box to work as my replacement firewall and gateway, 
> and I've got as far as setting up an ntpd on it for my network to use. 
> Naturally, I don't want it to listen on the external interface, so I've 
> uncommented the appropriate lines in /etc/ntpd.conf to restrict what 
> addresses are listened to. All with no effect: the system log shows ntpd 
> listening on two wildcard addresses and, specifically, my external address, 
> as well as the (intended) internal one. How on earth do I get the program 
> to obey its own configuration declarations?
> I'd prefer to use chrony, but it hasn't been ported to amd64 yet so I have 
> to make do with ntpd. Any clues, anyone?
> -- 
> Rgds
> Peter.
> -- 
> gentoo-amd64@g.o mailing list
Following are the non-comment lines  from my /etc/ntp.conf. I have changed 
the values that define the real external server that I sync with.  My guess 
is you are missing the "restrict default ignore" line in yours. My policy is 
for one machine to sync with the external world, but not to serve to the 
external world.  Internally other machines sync against this machine.
I do have firewall between the local ntp server that blocks all externally
initiated traffic so maybe I have a bug in my config that has never been 
probed, but I have been using a variant of this for many years - pre-gentoo.

 server  ntp.extern.server prefer  #dmf 2004-08-17
server        #local clock a la Fedora 2
fudge  stratum 10  #a la Fedora 2

driftfile       /var/lib/ntp/ntp.drift

restrict default ignore

restrict # allow local control

restrict mask nomodify notrap #allow local network machines to sync to us 
restrict 999.888.0.0 mask nomodify #so we can sync with external server

Dave F

gentoo-amd64@g.o mailing list

Re: ntpd configuration question
-- Duncan
Re: ntpd configuration question
-- Peter Humphrey
ntpd configuration question
-- Peter Humphrey
Lists: gentoo-amd64: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
ntpd configuration question
Next by thread:
Re: ntpd configuration question
Previous by date:
Re: Active mailing list?
Next by date:
Re: ntpd configuration question

Updated Jun 17, 2009

Summary: Archive of the gentoo-amd64 mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.