Access Control Permission Configuration
297
■
The total number of the servers and peers configured for a switch can be up to
128.
■
After the configuration, the S4200G series switch does not establish connections
with the peer if it operates in NTP server mode. Whereas if it operates in any of the
other modes, it establishes connections with the peer.
■
If an S4200G series switch operates as a passive peer in peer mode, NTP broadcast
client mode, or NTP multicast client mode, the connections it establishes with the
peers are dynamic. If it operates in other modes, the connections it establishes
with the peers are static.
Access Control
Permission
Configuration
Access control permission to NTP server is a security measure that is of the minimum
extent. Authentication is more reliable comparing to it.
An access request made to an NTP server is matched from the highest permission to
the lowest, that is, in the order of
peer
,
server
,
synchronization
, and
query
.
NTP Authentication
Configuration
For the networks with higher security requirements, you can specify to perform
authentications when enabling NTP. With the authentications performed on both the
client side and the server side, the client is synchronized only to the server that passes
the authentication. This improves network security.
Prerequisites
NTP authentication configuration involves:
■
Configuring NTP authentication on the client
■
Configuring NTP authentication on the server
Note the following when performing NTP authentication configuration:
■
If the NTP authentication is not enabled on a client, the client can be synchronized
to a server regardless of the NTP authentication configuration performed on the
server (assuming that the related configurations are performed).
■
You need to couple the NTP authentication with a trusted key.
■
The configurations performed on the server and the client must be the same.
■
A client with NTP authentication enabled is only synchronized to a server that can
provide a trusted key.
Table 258
Configure the access control permission to the local NTP server
Operation
Command
Description
Enter system view
system-view
—
Configure the access
control permission to
the local NTP server
ntp-service access
{
peer
|
server
|
synchronization
|
query
}
acl-number
Optional
By default, the access control
permission to the local NTP server is
peer
.
Summary of Contents for 4200G 12-Port
Page 10: ...8 CONTENTS...
Page 14: ...4 ABOUT THIS GUIDE...
Page 46: ...32 CHAPTER 5 LOGGING IN THROUGH WEB BASED NETWORK MANAGEMENT SYSTEM...
Page 48: ...34 CHAPTER 6 LOGGING IN THROUGH NMS...
Page 60: ...46 CHAPTER 9 VLAN CONFIGURATION...
Page 64: ...50 CHAPTER 10 MANAGEMENT VLAN CONFIGURATION...
Page 80: ...66 CHAPTER 13 GVRP CONFIGURATION...
Page 98: ...84 CHAPTER 15 LINK AGGREGATION CONFIGURATION...
Page 112: ...98 CHAPTER 18 MAC ADDRESS TABLE MANAGEMENT...
Page 126: ...112 CHAPTER 19 LOGGING IN THROUGH TELNET...
Page 162: ...148 CHAPTER 20 MSTP CONFIGURATION...
Page 274: ...260 CHAPTER 29 IGMP SNOOPING CONFIGURATION...
Page 276: ...262 CHAPTER 30 ROUTING PORT JOIN TO MULTICAST GROUP CONFIGURATION...
Page 298: ...284 CHAPTER 33 SNMP CONFIGURATION...
Page 304: ...290 CHAPTER 34 RMON CONFIGURATION...
Page 338: ...324 CHAPTER 36 SSH TERMINAL SERVICES...
Page 356: ...342 CHAPTER 38 FTP AND TFTP CONFIGURATION...
Page 365: ...Information Center Configuration Example 351 S4200G terminal logging...
Page 366: ...352 CHAPTER 39 INFORMATION CENTER...
Page 378: ...364 CHAPTER 40 BOOTROM AND HOST SOFTWARE LOADING...
Page 384: ...370 CHAPTER 41 Basic System Configuration and Debugging...
Page 388: ...374 CHAPTER 43 NETWORK CONNECTIVITY TEST...
Page 406: ...392 CHAPTER 45 CONFIGURATION OF NEWLY ADDED CLUSTER FUNCTIONS...