From owner-freebsd-questions@FreeBSD.ORG Sat Sep 15 21:03:47 2007 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 13D7316A525 for ; Sat, 15 Sep 2007 21:03:47 +0000 (UTC) (envelope-from dkelly@Grumpy.DynDNS.org) Received: from smtp.knology.net (smtp.knology.net [24.214.63.101]) by mx1.freebsd.org (Postfix) with ESMTP id A993B13C483 for ; Sat, 15 Sep 2007 21:03:46 +0000 (UTC) (envelope-from dkelly@Grumpy.DynDNS.org) Received: (qmail 15607 invoked by uid 0); 15 Sep 2007 21:03:45 -0000 Received: from unknown (HELO Grumpy.DynDNS.org) (216.186.148.249) by smtp5.knology.net with SMTP; 15 Sep 2007 21:03:45 -0000 Received: by Grumpy.DynDNS.org (Postfix, from userid 928) id 31D882841F; Sat, 15 Sep 2007 16:03:45 -0500 (CDT) Date: Sat, 15 Sep 2007 16:03:45 -0500 From: David Kelly To: jhall@vandaliamo.net Message-ID: <20070915210345.GA34684@Grumpy.DynDNS.org> References: <3713.65.117.48.155.1189889169.squirrel@admintool.trueband.net> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <3713.65.117.48.155.1189889169.squirrel@admintool.trueband.net> User-Agent: Mutt/1.4.2.3i Cc: freebsd-questions@freebsd.org Subject: Re: ntpd time server X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 15 Sep 2007 21:03:47 -0000 On Sat, Sep 15, 2007 at 08:46:09PM -0000, jhall@vandaliamo.net wrote: > Is it possible to use ntpd as a client as well as a server? Of course. Your server is a client of its own ntpd. > I have my firewall setup to get updates from the Internet which it does > without any problem. However, I am not seeing any clients syncrhonizing > with the firewall. > > The firewall ntp.conf files contains the following. > > server ntp-2.mcs.anl.gov prefer > driftfile /data_prgs/local/etc/ntp.drift Is my understanding these days the Politically Correct and Polite thing to do is not list a specific machine (unless its yours) as ntp server but to use servers which have volunteered to be placed in a revolving DNS pool, like this: server 0.pool.ntp.org server 1.pool.ntp.org server 2.pool.ntp.org server pool.ntp.org > The clients contain the following. > server firewall > driftfile /var/db/ntp.drift > > firewall is a resolved via internal DNS, and it is resolved to the correct > IP address. > > Any suggestions would be greatly appreciated. On your clients type "ntpd -c peers" and one machine should be listed, your "server" named "firewall" something like this (on MacOS X): % ntpdc -c peers remote local st poll reach delay offset disp ======================================================================= =andraia.local 192.168.123.177 2 4096 3 0.00085 -0.231870 3.95285 Do the same thing on the "server" to see what it thinks of the servers it is connected to. -- David Kelly N4HHE, dkelly@HiWAAY.net ======================================================================== Whom computers would destroy, they must first drive mad.