Re: [Ntp] Symmetric mode

Doug Arnold <doug.arnold@meinberg-usa.com> Fri, 30 September 2022 14:23 UTC

Return-Path: <doug.arnold@meinberg-usa.com>
X-Original-To: ntp@ietfa.amsl.com
Delivered-To: ntp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 23B90C1522B7 for <ntp@ietfa.amsl.com>; Fri, 30 Sep 2022 07:23:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.108
X-Spam-Level:
X-Spam-Status: No, score=-7.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=meinberg-usa.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7TpHsnQ1T3WL for <ntp@ietfa.amsl.com>; Fri, 30 Sep 2022 07:23:29 -0700 (PDT)
Received: from EUR02-AM0-obe.outbound.protection.outlook.com (mail-am0eur02on2074.outbound.protection.outlook.com [40.107.247.74]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 254B1C14CE41 for <ntp@ietf.org>; Fri, 30 Sep 2022 07:23:28 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Kwbb/9rMOaU70aOqCrew8Yvrpq2G41DYcbSoB1RVgCTcTs4sFA53lrHsw59ctDWYTkvzRTeq6pNBwMkHxGclCL1LQ/Iu2DhpGNb2KNPf9rF0bupdkqCBiWcScjyZDUvnWiNyRn2zA6Za87GIVOKEpGg2XVRdwgFgr1Hfp8JPcBwvPKSPspWHlgAi2GBwcohTuLG6HOyGjlIVPO+525X1y4RnBrFnQXUd49xmD9WgzPS6nM9FW+J7uLDLKx5UFUoPJr99OmKbz3SjVBbVHYNyrHtL3A8KHgRwi77W4kmenwb1p1keBY965iRn8qk9y1riBqGNKW4wCH20BGN/lBqpMw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=u6pmKpR4BqvEU1cRJcqtIt3xWf+BLL68+O1d9Ad/19c=; b=iVWdQ/AObQ3p5xCyw54jbotc42S+30sRNsexTd0HXVQYjGYTfvISZ9YGxPMDx9EBE85wz/M/R+wKEeCm96HupZo+JX2nq8wEhsRa6EeIZmQsT43F4rYa+SkGqHhHnYMJW8I8aB3CINptpqlwgfr6GNuT1JGdhDtdCej7kskLgSTJuooz7dzUOIyp/4qeikZRO8EgLksx1RmATnIAPYUH77XWCHNbXmWtDN6QvWGAgxidAo/BH6SkJG8kpczzEEiYSfQLGMK6Ua7e7IUNf0GxA0UVj0tKBQ66k+vRH4QtLX/xKiBazIHPPcg30Pub6Km9Hhbeh1Z0dP+VeqFHshFCgA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=meinberg-usa.com; dmarc=pass action=none header.from=meinberg-usa.com; dkim=pass header.d=meinberg-usa.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=meinberg-usa.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=u6pmKpR4BqvEU1cRJcqtIt3xWf+BLL68+O1d9Ad/19c=; b=jEqz7VM5qjfLztpBzi7bftazgwIEtH98J17DYsNI2Tzav55V7Gng0s+W+xRGgRtLfSMGTTqC9ghUvptXLRTr1MAVLbH4AgIr8A4nNA+aas4BBajmgQFytwYrhqB4Qfpk3CZ3CsuI6n4JaSW6dzTSAJZjKNxm3IfYlNC5yTFkLYkriJNOJx3u3tDEWQ8Ql1hKB7O5NxjmV0iccgZvrIPXHqCAAvhFx6f5fy/hsOl0/qMw6Xo6B64JD5nwnV2aHMjc5dDNblPyWYgnfapvNplQnDA84MjJI4BaXJmZCMXSwknddbl1TcuIhY5Gjw5NYgYxZ+ne1YI2M3+R/E/Zbk845Q==
Received: from AM7PR02MB5765.eurprd02.prod.outlook.com (2603:10a6:20b:102::15) by AM9PR02MB7122.eurprd02.prod.outlook.com (2603:10a6:20b:26a::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5676.23; Fri, 30 Sep 2022 14:23:22 +0000
Received: from AM7PR02MB5765.eurprd02.prod.outlook.com ([fe80::c55e:5c0f:3f08:38e1]) by AM7PR02MB5765.eurprd02.prod.outlook.com ([fe80::c55e:5c0f:3f08:38e1%6]) with mapi id 15.20.5676.023; Fri, 30 Sep 2022 14:23:22 +0000
From: Doug Arnold <doug.arnold@meinberg-usa.com>
To: Hal Murray <halmurray@sonic.net>, Miroslav Lichvar <mlichvar@redhat.com>
CC: Hal Murray <halmurray@sonic.net>, "ntp@ietf.org" <ntp@ietf.org>
Thread-Topic: [Ntp] Symmetric mode
Thread-Index: AQHY1G9SYnrjz+lXqk+p607xNI/heq34BSec
Date: Fri, 30 Sep 2022 14:23:22 +0000
Message-ID: <AM7PR02MB5765D115CABA9E9B5A148711CF569@AM7PR02MB5765.eurprd02.prod.outlook.com>
References: Message from Miroslav Lichvar <mlichvar@redhat.com> of "Thu, 29 Sep 2022 16:41:32 +0200." <YzWunE8uQwTh8suS@localhost> <20220930015229.B235628C1D8@107-137-68-211.lightspeed.sntcca.sbcglobal.net>
In-Reply-To: <20220930015229.B235628C1D8@107-137-68-211.lightspeed.sntcca.sbcglobal.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=meinberg-usa.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: AM7PR02MB5765:EE_|AM9PR02MB7122:EE_
x-ms-office365-filtering-correlation-id: 7a825167-35a2-43c6-9fbf-08daa2ef549d
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: rDi++d/SP8hJ0Pi/JJwG6ZoREaib7NDKxDWd1+MbcRnzLiqFBuoFnP//CVHDMZIJHiKsQxyprptEQV9LfVcIiqTU5Lm0JYyici+Yi94AmqzAZUH5JivKNblrbWUDaTfW0uDPtS9b0ws5cS79He6WR9ZGQDlwUV0/cSe/HiwRZxaCafAc62HOdw/4BfoPoqnjUgPCv3mQP17YNLJIm5n33IEgoOIYx1nYOIKQ6Q9pHU2zsDULKrMXtVLbP3xwgyCVaBynq8nIr/2kn9U8g2Cxj7bdV9laS2qr6kcZShFDq7xqJrgY0KmJoaxevaoJPxQmaTRWcrsw84K/Y03Go9wwLxC0bpLkpKKZqGu+/N/DjoRsEz+9dr8AKjnA5qDMO+mdBrFieWqYXv3//2B2KDxpAVvxMlFb4EKDMfti/dfzTPDt2s+9TAZZRzYjBObWorFkiha7n1rgQFToxDncCpcIrvXnlTixcg+6lXftCN1gl7HBRCycuYNCL3ojRqJhmBHtUDYLldRdfUtXuXMh0agJQ1SASu84NRArmWlHvzWeF5CR78Np8BlXpffIdhWyDqDM73H5Dwr36C28/1I8x2o8+JiMsUyha5OLUAgHw2zXAsKad7hdXSeuqiaRTIDiMjh3m5iBP/ZOaDzqj1K9mt3NX5Lm5W2Ig/gIl5Pl++iE00aIhTt4YQjNnlOe/3jquJ4jLUtDMtsGnjjBSPMSFHENAQI97vqy28JH3bjCaaJECwRcF4Ib0Z7tCue1WHzV01nYkhFwEAqw+FehdqJfL7Hr2li5WU09vQ2R8ryyoDKaMm8=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AM7PR02MB5765.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(39830400003)(366004)(376002)(346002)(136003)(396003)(451199015)(44832011)(8676002)(966005)(54906003)(316002)(91956017)(66476007)(8936002)(6506007)(7696005)(53546011)(41300700001)(33656002)(5660300002)(52536014)(64756008)(66556008)(9686003)(66946007)(66446008)(4326008)(76116006)(38070700005)(26005)(122000001)(166002)(38100700002)(86362001)(2906002)(55016003)(186003)(478600001)(71200400001)(83380400001)(110136005); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_AM7PR02MB5765D115CABA9E9B5A148711CF569AM7PR02MB5765eurp_"
MIME-Version: 1.0
X-OriginatorOrg: meinberg-usa.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: AM7PR02MB5765.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 7a825167-35a2-43c6-9fbf-08daa2ef549d
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Sep 2022 14:23:22.6221 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: d59904cd-769f-4368-8bd0-f5f435893a38
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: jp5CVSkrYj4hJT+4hCtaTBxwLOoDtXAHhrcB+SmJaIs+vPyyCY/25vGe2DfWylG7AcMMFq07RzBBE0I6XX+taX9kQ7fAIDHY0BmNlWfUNPo=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM9PR02MB7122
Archived-At: <https://mailarchive.ietf.org/arch/msg/ntp/oXGhPI2Rp62CDojjJe9uhc8BjZc>
Subject: Re: [Ntp] Symmetric mode
X-BeenThere: ntp@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Network Time Protocol <ntp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ntp>, <mailto:ntp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ntp/>
List-Post: <mailto:ntp@ietf.org>
List-Help: <mailto:ntp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ntp>, <mailto:ntp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 30 Sep 2022 14:23:35 -0000

Please enlighten me. I’ve been reading the discussion on symmetric ntp, and I don’t understand the purpose. An ntp server can ask other servers for time using client server ntp, and use that information to examine its own time and that of the peer it is looking at.  Why is a different over-the-wire version of the protocol needed?

Doug

From: ntp <ntp-bounces@ietf.org> on behalf of Hal Murray <halmurray@sonic.net>
Date: Thursday, September 29, 2022 at 9:52 PM
To: Miroslav Lichvar <mlichvar@redhat.com>
Cc: Hal Murray <halmurray@sonic.net>, ntp@ietf.org <ntp@ietf.org>
Subject: Re: [Ntp] Symmetric mode

mlichvar@redhat.com said:
> You need to either add "disable auth" to ntp.conf, or configure a symmetric
> key on both hosts and add it to the peer directive.

Thanks.  That worked.  I now see the active/passive pair where the passive is
not a direct response to the active.  I assume the timing difference is the
skew in the polling clocks.


> ntpq -p (or ntpq -c peers) prints emphemeral symmetric associations, but only
> if there was a valid response (reachable).

That "only if reachable" is important.  That takes another polling interval.
Or something like that.  I got confused by not seeing it but while
investigating it appeared.


--
These are my opinions.  I hate spam.



_______________________________________________
ntp mailing list
ntp@ietf.org
https://www.ietf.org/mailman/listinfo/ntp