Model: MTS200 (1U)
Doc. Ref. no. : - m08/om/201
Issue no.: 03
Page 91 of 195
User’s Manual
User need to enter 3 for NTP Autokey settings in console based configuration utility. Once user has
entered in the NTP Autokey settings it will ask for the certificate type. Enter „1‟ for trusted server.
In above menu below options are available.
1) Generate NTP Autokey
– This option is used to generate NTP PC/IFF Auto key. User need to enter
password and copy respected keys in the client.
2) View NTP Autokey: - This option is used to view generated NTP autokey either it is from PC or from
IFF scheme.
3) Remove Old NTP Autokey:- This option is used to remove old generated key in the MTS200
4) Update NTP Autokey.
9.2.5.3.1 NTP Autokey PC Scheme:
The PC scheme uses a private certificate (X509.3 type certificate) generated by Trusted host as the
group key and is distributed to all ntp group clients by secure means such as HTTPS or SCP. It is owner
or operator responsibility to reveal this group key outside the ntp group. This scheme is cryptographically
strong as long as the private certificate is kept secured. Refer below figure for further understanding of
PC scheme.
Whenever a new private certificate is generated by Trusted host, it is necessary to distribute new key to
all ntp clients for successful associations.