background image

© MOBATIME 

61 / 84 

800847.08 

8.8.2 

NTP Autokey 

The validity of the time received to the NTP clients is assured by symmetric keys. For a 
higher degree of certainty, exchanging the keys used regularly is, however, necessary 
to obtain protection, e.g. from replay attacks (i.e. attacks in which recorded network 
traffic is simply played back). 

The autokey procedure was introduced as the exchange is very involved in a large 
network. A combination of group keys and public keys enables all NTP clients to check 
the validity of the time information which they receive from servers in their own autokey 
group. 

NTP Autokey is relatively complex in its use and studying the functionality is definitely 
necessary beforehand. 

Autokey is descrbied at 

http://www.cis.udel.edu/~mills/proto.html

 or on the NTP 

homepage 

http://www.ntp.org

Autokey is currently defined in an IETF draft.  

http://www.ietf.org/internet-drafts/draft-ietf-ntp-autokey-04.txt

 

The configuration of Autokey is explained in 

http://support.ntp.org/bin/view/Support/ConfiguringAutokey

 or in 

http://www.ntp.org/ntpfaq/NTP-s-config-adv.htm#S-CONFIG-ADV-AUTH

 

 

8.9 

Redundant operation of 2 DTS 4128.timeservers 

For redundant operation two DTS 4128 devices are synchronized via optical fibers. For 
this purpose, a mini GBIC module is plugged into both devices and connected via optical 
fibers (see Appendix F, Technical Data): 

 

 

 

 

Both devices have a GPS receiver in redundant operation. Both devices are configured 
for  the  redundant  mode,  but  are  basically  equal  and  work  out  the  master/slave  role 
among themselves. The slave is always synchronized to the master in operation. The 
slave supervises the system time on the basis of its own GPS time and generates an 
error message, should the time difference amount  exceed the configurable value of n 
milliseconds. 

 

 

mini GBIC Module 

Содержание DTS 4128.timeserver

Страница 1: ...MOBATIME BE 800847 08 INSTRUCTION MANUAL DTS 4128 timeserver Network Time Server...

Страница 2: ...his Instruction Manual has been composed with the utmost care in order to explain all details in respect of the operation of the product Should you nevertheless have questions or discover errors in th...

Страница 3: ...troduction 9 4 Displays 13 5 Installation 14 6 Operation 16 7 Updates 54 8 Time administration 58 9 SNMP 63 APPENDIX A Connection diagrams 69 B Time zone table 72 C Alarm list 74 D Troubleshooting 75...

Страница 4: ...dant operation 30 6 5 8 NTP server 31 6 5 9 Manual time set Leap second 35 6 5 10Alarms 36 6 5 11Alarm relay 36 6 5 12Alarm mask 37 6 5 13E mail 38 6 5 14SNMP traps 40 6 5 15General settings 42 6 5 16...

Страница 5: ...on Please observe this safety message to avoid damages to property and devices Notice Additional information for the use of the device Important information in the Manual This information must be foll...

Страница 6: ...r it has regained its normal operating temperature it will restart automatically The settings are saved Danger Make sure that you wait before using the device after any transport until the device has...

Страница 7: ...n regulations must be adhered For the power supply connection DC In1 a fuse in according to the performance data has to be provided The used fuses for the DC supply have to be approved for DC The powe...

Страница 8: ...not rectify this problem yourself 2 2 Cleaning Please make sure that the device remains clean especially in the area of the connections the control elements and the display elements Clean your device...

Страница 9: ...g terminals 3 2 Technical Data See Appendix F Technical data 3 3 Introduction The DTS 4128 timeserver is a NTP Time Server for use in network environments It can be synchronized by DCF or GPS e g from...

Страница 10: ...inted on it The precise description is made on the identification plate on the back 3 5 DTS distributed time system The DTS Distributed Time System is a system developed by Moser Baer AG to connect de...

Страница 11: ...uired For DTS devices all communication is conducted over SNMP V3 The SFTP protocol is used for broadcasting files 3 6 1 Overview of the main functions The main MOBA NMS functions for DTS devices and...

Страница 12: ...s no limit to the number of groups and sub groups Besides the organizational advantages easier locating better overview a device group has the following advantages commands and device updates can be a...

Страница 13: ...4128 can read the time from a synchronization source Synchronization source is not available LAN control lamps Left Green Orange Blinking Blinking Network activity No connection to network Right Yell...

Страница 14: ...the operating system is displayed on the serial console After that the sync control lamp is switched off and only switched on again when time is received from the time source Without any connection t...

Страница 15: ...Time keeping Mode Catch up Catch up speed 100 000ns s Quartz type 0 Synch only offset 800ms Redundant operation Mode off stratum limit 16 Max offset to slave 100000us Port for LAN link 14338 NTP Serv...

Страница 16: ...d To start the menu dts must be logged in as user The standard password is dts Changing the password see Chapter 6 5 15 General Settings Only one menu can be open at any time The first menu started ha...

Страница 17: ...ialized with ENTER When rebooting the boot process will be displayed on the serial console Important The serial connection should always be disconnected before switching off the operating PC exit term...

Страница 18: ...er The numbers 98 and 99 are always used identically With 98 the settings entered are saved and the menu exited Depending on the change the DTS 4128 or only partial functions are rebooted With 99 all...

Страница 19: ...inal menu and designated accordingly Example The terminal menu Configuration Alarms can be found in MOBA NMS under the tab Alarms Configuration example of a DTS 4128 timeserver For further details on...

Страница 20: ...n of the DTS 4128 See Chapter 6 5 Configuration Menu Maintenance Software update backup and restore See Chapter 6 6 Maintenance Menu DTS 4128 timeserver Moser Baer AG MAIN SELECTION 1 Status Actual al...

Страница 21: ...larm first The ALARM RECORD menu pages can be scrolled through with ENTER The ALARM RECORD menu page can be exited with ESC 3 Current time and status display See Chapter 6 4 1 Time Information and Sta...

Страница 22: ...system time Last time info from source time of the last information from source Jitter of the source current jitter Quality of the source quality of the source DTS 4128 timeserver Moser Baer AG STATE...

Страница 23: ...DTS Link Sec counter link analogue sec counter DCF NTP Source current time source system peer of the NTP Server NTP source offset current offset of the NTP Server NTP source jitter jitter of the curr...

Страница 24: ...5 Network Settings See Chapter 6 5 16 Network 6 Services switching network services such as FTP Telnet SSH on or off See Chapter 6 5 17 Services Network services FTP Telnet SSH 7 SNMP Configuration f...

Страница 25: ...t loop DCF output The settings of the DCF line Path 2 Configuration 1 Line 1 DCF out 1 Select line function off or DCF on 2 Select time zone see Chapter 6 5 21 Time Zone Selection DTS 4128 timeserver...

Страница 26: ...in hops Number of Routers in a network to transfer the packets through for simple network without routing enter value 1 for 1 Router enter 2 6 Repeat time to send time zone table 10 86400 sec 7 Delay...

Страница 27: ...zone servers for NTP slave clock lines Choose a zone number to change selected zone Time zone selection see chapter 6 5 21 Time zone selection The page can be exited with 99 Changes are first stored...

Страница 28: ...tratum counts up from 1 to 16 within 24 hrs 6 Offset per Stratum in ms 0 40 000ms Stratum is calculated with this value when time is received again Offset Stratum 30ms offset of the time source 150ms...

Страница 29: ...e Standard 0 0 255 4 Synch only offset 0 off 100 5000ms Limits as from which time is no longer accepted Alarm Syn only diff too great For a description of time keeping see Chapter 8 Time administratio...

Страница 30: ...ink is not working Format 10 241 23 99 ENTER without entering an address will delete the entry 6 Manual change from slave to master The command is effected immediately Saving with 98 is not required w...

Страница 31: ...red Path 2 Configuration 2 Time handling 4 NTP server configuration 1 4 Summary about configured NTP time sources Select to configure 5 6 Summary about configured NTP broadcast addresses Select to con...

Страница 32: ...off 6 Authentication key off key number autokey Notice If a key number is entered at point 6 the entered key must also be added to the trusted keys Notice All changes lead to a restart of the NTP ser...

Страница 33: ...d which only permits values of format 2x 1 2 4 8 16 32 64 Maximum 65536 seconds 3 TTL time to live in hops Only required for multicast Number of routers over which the multicast packet should be trans...

Страница 34: ...ient certificate update_server update the server certificate update_client update the client certificate export_iff export the IFF server certificate to ram Parameter password of the client export_gq...

Страница 35: ...et with ENTER 3 Leap second mode 0 Off 1 Additional second will be inserted at entered time 1 Second will be deleted at entered time 4 Set UTC time of leap second in format hh mm ss DD MM YY Operation...

Страница 36: ...1 E Mail see Chapter 6 5 13 SNMP Traps see Chapter 6 5 14 6 5 11 Alarm relay Path 2 Configuration 3 Alarms 1 Alarm relay 1 Alarm mask for relay see Chapter 6 5 12 Alarm mask DTS 4128 timeserver Moser...

Страница 37: ...C Alarm list The alarm masks for the various applications E Mail SNMP SNMP Traps alarm relay can differ The alarm masks only apply to the respective function but not to the internal alarm recording me...

Страница 38: ...an address will delete the entry 8 Sender address important for authentication through the mail server ENTER without entering an address will delete the entry Press ENTER to change to page 2 Importan...

Страница 39: ...2 User name only for authentication mode 1 4 13 Password only for authentication mode 1 4 Press ENTER to change to page 1 Format of an error message via E Mail Event Alarm 03 set Power failure 1 Time...

Страница 40: ...period for alive messages in seconds 0 no alive traps are sent Range 1 7 200sec Important General settings for SNMP can be found in menu 2 Configuration 7 SNMP See also Chapter 0 SNMP Important Config...

Страница 41: ...will delete the entry 2 Port of the evaluation system usually 162 3 SNMP Version 1 SNMP V1 2 SNMP V2c Important Each configuration change leads to a restart of the DTS SNMP Agent DTS 4128 timeserver M...

Страница 42: ...pter 6 5 21 Time Zone Selection 3 Enter password for the menu user dts max 15 characters A password must be configured Caution The default password shall be changed after the commissioning of the devi...

Страница 43: ...erface Auto 100 10Mbit half full duplex View of the current network state in Menu 1 Status 6 Info network config Notice The menu is closed upon modifying the IP or the DHCP mode Notice DHCP on off eac...

Страница 44: ...ds are not available in case of DHCP on A DHCP renew can also be triggered via this point Notice DHCP on if no DHCP server is available leads to longer start up time 75 sec of the DTS 2 5 Set IP addre...

Страница 45: ...or off 3 IP address with prefix in IPv6 format e g 2001 2345 6789 12 1 34 64 4 Gateway in IPv6 format 5 IPv6 DNS server DTS 4128 timeserver Moser Baer AG NETWORK IPV6 1 Mode Autoconf off 2 DHCPv6 off...

Страница 46: ...work services configuration Path 2 Configuration 6 Services FTP telnet SSH 1 3 Switch the individual services off or on DTS 4128 timeserver Moser Baer AG NETWORK SERVICES 1 telnet off 2 ftp off 3 ssh...

Страница 47: ...higher in SNMP CONFIGURATION 3 DTS Location information which is displayed in the SNMP management tool 4 Contact information which is displayed in the SNMP management tool 5 Configuration of SNMP V1 V...

Страница 48: ...batime 2 Community string for read write Group membership for GET PUT Standard rwmobatime Important Each configuration change leads to a restart of the DTS SNMP Agent DTS 4128 timeserver Moser Baer AG...

Страница 49: ...4 Configuration of user defined SNMP access rights viewDTS1 and viewDTS2 Important Each configuration change leads to a restart of the DTS SNMP Agent DTS 4128 timeserver Moser Baer AG SNMP V3 CONFIGU...

Страница 50: ...DTS specific information 3 user defined 1 viewDTS1 4 user defined 2 viewDTS2 4 SNMP write access 0 none no access 1 all full access 2 DTS info only DTS specific information 3 user defined 1 viewDTS1...

Страница 51: ...h 4 6 Exclude View path analogue include Important Each configuration change leads to a restart of the DTS SNMP Agent DTS 4128 timeserver Moser Baer AG SNMP V3 ACCESS CONFIGURATION viewDTS1 1 Include...

Страница 52: ...ime zone is selected at any time Press ESC to leave the page The modifications will be saved or restored one menu level higher DTS 4128 timeserver Moser Baer AG SELECTION TIME ZONE Page 1 00 0 UTC 01...

Страница 53: ...ackup the entire configuration 3 Restore the entire configuration from the saved backup 4 Restore the entire configuration to factory settings 5 Restart DTS 4128 See also Chapter 7 Updates DTS 4128 ti...

Страница 54: ...p file s If a destination folder is selected the whole device configuration will be saved before the backup Additionally if the device configuration image is written too the saved configuration can be...

Страница 55: ...n via a serial connection before via FTP the earlier saved file dts4128 conf dtsdevice conf can be copied back see procedure in chapter 7 4 7 4 Updating configurations To update the configuration on t...

Страница 56: ...nu Edit Select Backup configuration 3 Select the elements that are to be saved In case of doubt select everything 4 Click button Next 5 Indicate destination file by clicking the Browse button 6 Option...

Страница 57: ...ransferred and start the assistant in the menu Edit Transfer configuration It will lead you through the individual steps Without MOBA NMS perform the procedure explained in chapter 7 4 Important When...

Страница 58: ...source stratum 0 stratum of the DTS 4128 1 Stratum normal synchronized operation The stratum value behaves as follows for synchronization from the time source If St_fix 0 then stratum St_fix particula...

Страница 59: ...or Failure of primary Source St est expected NTP Stratum St est MAX Stratum NTP candidates If Stratum St est 1 then change to NTP as source takes place internal stratum is one step higher than the poo...

Страница 60: ...for accessing server variables controlkey 5 key 6 for accessing server variables server ntp1 test org key 2 server ntp2 test org key 6 server 192 168 23 5 key 3 The description of the ntp conf file ca...

Страница 61: ...ww ntp org Autokey is currently defined in an IETF draft http www ietf org internet drafts draft ietf ntp autokey 04 txt The configuration of Autokey is explained in http support ntp org bin view Supp...

Страница 62: ...ble stratum value if the status of the slave is better than that of the master and synchronizes to its own GPS The previous master becomes the slave This distribution of roles remains until the new ma...

Страница 63: ...cr sysContact sysName or sysLocation can only be modified over the DTS menu but not via SNMP The following MIB definitions are used SNMPv2 SMI SNMPv2 MIB SNMPv2 CONF SNMPv2 TC SNMPv2 TM SNMP FRAMEWORK...

Страница 64: ...n from the MIB files Example Management System DTS Put dts4128FTPMode 1 Variable is set to 1 internally Put dts4128NetServicesConfigCmd 1 Configuration group is assumed Sends dts4128ConfigChanged Noti...

Страница 65: ...agent detects a configuration change in the DTS application processes This Notification is always sent out as soon as SNMP is activated and a destination address is configured The Notification sent ou...

Страница 66: ...id dts4128TSDCFAdjusment dts4128TSAdjusmentMode dts4128TSMaxAdjusmentSpeed dts4128TSQuartzType dts4128TSOffsetSynchOnly dts4128TSLeapSecMode dts4128TSLeapSecDate dts4128RedOpConfigChangedTime dts4128R...

Страница 67: ...ts4128SnmpV3View24 dts4128SnmpV3View25 dts4128SnmpV3View26 dts4128OutLineDCFConfigChangedTime dts4128OutLineDCFMode dts4128OutLineDCFTimezone dts4128OutLineTZServerConfigChangedTime dts4128OutLineTZSe...

Страница 68: ...and a destination address is configured The Notification sent out contains the following data Field Type Size Description Example dts4128TrapAlMsgErrorNr Byte 1 Bytes No of the alarm bit 0 63 3 dts412...

Страница 69: ...onnection 3m Connections between female connector 1 SUB D 9 1 and female connector 2 SUB D 9 2 SUB D 9 1 SUB D 9 2 Receive Data 2 3 Transmit Data Transmit Data 3 2 Receive Data Data Terminal Ready 4 1...

Страница 70: ...DC in power supply GND 3 DCF input DCF input e g for connection of a GPS 4500 or DCF receiver with current loop output 4 DCF input 5 DC output DC output for GPS 4500 DC in voltage 2V max 400mA 6 DC ou...

Страница 71: ...A 10 A Rated voltage EN 250 V Rated surge voltage 2 5 kV Nominal current 10 A Strip length 7 mm 0 28 in Pulled off spring terminal with operation tool 2 operation tools are delivered with the accessor...

Страница 72: ...o 15 Mumbai Kolkata Chennai New Delhi Colombo 5 5 No 16 Astana Thimphu Dhaka Novosibirsk 6 No 17 Bangkok Hanoi Jakarta Krasnoyarsk 7 No 18 Beijing Hong Kong Singapore Taipei Irkutsk 8 No 19 Tokyo Seou...

Страница 73: ...r time zone table entries 80 99 Legend UTC Universal Time Coordinate equivalent to GMT DST Daylight Saving Time DST Change Daylight Saving Time changeover Standard DST Time change from Standard time W...

Страница 74: ...in after starting no valid time Check time source 19 NTP synch lost Check NTP source 20 Software trimming Quartz error or poor source quality 21 NTP not working Check NTP configuration 22 Offset sourc...

Страница 75: ...changes particularly if the time configuration is concerned it can take several minutes for the change to appear correctly 6 Error Bit 16 set time source fail stratum See 1 7 Error Bit 17 set time sou...

Страница 76: ...ar SSH server v2020 81 MIT style Free party BSD LICENSE wide dhcpv6 DHCPv6 client 20080615 Free COPYRIGHT flex Flex Lib 2 6 4 BSD adapted COPYING zlib Compress lib 1 2 11 Free README mailsend E mail c...

Страница 77: ...least 12 hours synchronization from the time source 0 01 sec day 0 1ppm measured over 24 h at 20 C 5 C 1 ms day 0 01ppm measured over 24 h at constant temperature After reboot without synchronization...

Страница 78: ...er 10 s DCF time code passive current loop interface Vmax 30 VDC Ion 10 15 am Ioff 0 1 mA 20VDC Alarm contact Opening relay contact Alarm active contact open Switching load 30 W 125 VDC or 1 A e g 1 A...

Страница 79: ...TP tools 56 G GBIC 61 70 78 I Installation 14 IPv4 configuration 44 IPv6 configuration 45 K Key 34 59 L Language setting 42 Leap second 35 59 LED description back side 13 LED description front side 13...

Страница 80: ...guration 50 Software update 54 Spring terminals 71 SSH 17 Standard settings 15 Status menu 21 Stratum 22 58 T Telnet 17 Terminal 16 Time accepance 58 Time administration 27 58 Time server 59 77 Time s...

Страница 81: ...MOBATIME 81 84 800847 08 H Connection table to fill in Line Type Description Example Line Type Description DCF DCF out DCF for master clock ETC1...

Страница 82: ...MOBATIME 82 84 800847 08...

Страница 83: ...MOBATIME 83 84 800847 08...

Страница 84: ...MOBATIME BE 800847 08...

Отзывы: