RE: [chrony-users] Configuring chronyd w/o real time source

[ Thread Index | Date Index | More chrony.tuxfamily.org/chrony-users Archives ]


I am not recommending any particular card, but if you need to know your drift and don't mind spending a little money to keep your time sever close to real time, and this doesn't violate the security of your air gapping; there are manufactures of PCI cards, or standalone devices that have antenna's that can take you position and time from either the GPS systems and/or if you are in north America from the United States National Institute of Standards and Technology, Atomic Clock Radio Broadcasts stations. These can vary greatly in cost depending on what crystal you buy them with. (Also note while an appliance may physically last for almost ever, you may be better off buying a cheaper standalone device or card than, paying thousands for a more expensive standalone devices as recently older time appliances by at least one manufacturer turned to junk due to the nature of how they work and being way too old, for the company to issue a firmware update to support the rollover of the time clocks.)


-Alexander Kohr.

-----Original Message-----
From: Bill Unruh <unruh@xxxxxxxxxxxxxx>
Sent: Thursday, March 12, 2020 7:16 PM
To: chrony-users@xxxxxxxxxxxxxxxxxxxx
Subject: Re: [chrony-users] Configuring chronyd w/o real time source

EXTERNAL MESSAGE. DO NOT open attachments or click links from unknown senders or unknown emails.
________________________________


Read the manual

you set up chronyd on your "server". You can set the time by wristwatch if need be.
chronyc
type help to see a list of the commands and concentrate on the ones under Manual time input, especially settime settime Sep 25, 2015 16:30:05 (or whatever time you want to set it to). It will then "freewheel" and will reports its best guess of the current time to anyone that asks.
Note that since it has no idea what the real time is, it will not be able to correct for clock drift (eg if it is running 1% faster than real time, it will not know) except if you put in a number of settime commands (eg once a day) from a clock that you know to be right, it will try to use those to estimate and correct ay speed differences from that right time.
That is it.
Your /etc/chrony.conf will be minimal since you have no time servers that you can access, except your wristwatch when you run settime About all you need is dumponexit
rtconutc   (if your rtc clock is set to UTC and not local time),
allow 192.168.0.0/16 (assuming tha the other computers who will be
                  getting time from your machine are on that network And that is about it.
So, it will all depend on how accurately you can enter the time When you hit return on the settime command, the computer will assume that that time is exact at that instant.



William G. Unruh __| Canadian Institute for|____ Tel: +1(604)822-3273 Physics&Astronomy _|___ Advanced Research _|____ Fax: +1(604)822-5324 UBC, Vancouver,BC _|_ Program in Cosmology |____ unruh@xxxxxxxxxxxxxx Canada V6T 1Z1 ____|____ and Gravity ______|_ https://nam01.safelinks.protection.outlook.com/?url=www.theory.physics.ubc.ca%2F&amp;data=02%7C01%7Calexander.kohr%40tuhs.temple.edu%7C89c8825275694287dbb808d7c6db567f%7C6c85bf6157fb436280e22cd2d7bef6a0%7C0%7C0%7C637196517670599741&amp;sdata=Fj4dSh8GkOWk7K8fmj1WwktRrURDOxMqyiFfz7lr3%2Bw%3D&amp;reserved=0

On Thu, 12 Mar 2020, Dominik Vogt wrote:

> Hi folks,
>
> for a test setup I need to configure chronyd to run in an isolated
> network without internet access and without any real time source other
> than the system clock.  The only requirement is that the server
> replies to any client request with the system time and claims that its
> absolutely precise.
>
> Using the system clock is fine, or /dev/rtc or any other source that
> is usually present on a vanilla Linux system.
>
> (Unfortunately my knowledge of ntp in general and chrony specifically
> is close to zero, so I really need some hint on
> this.)
>
> Ciao
>
> Dominik ^_^  ^_^
>
> --
>
> Dominik Vogt
>
> --
> To unsubscribe email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
> with "unsubscribe" in the subject.
> For help email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
> with "help" in the subject.
> Trouble?  Email listmaster@xxxxxxxxxxxxxxxxxxxx.
>

--
To unsubscribe email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "unsubscribe" in the subject.
For help email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "help" in the subject.
Trouble?  Email listmaster@xxxxxxxxxxxxxxxxxxxx.


________________________________

This electronic message is intended to be for the use of the named recipient, and may contain information that is confidential or privileged. This communication may contain protected health information (PHI) that is legally protected from inappropriate disclosure by the Privacy Standards of the Health Insurance Portability and Accountability Act (HIPAA) and relevant Pennsylvania Laws. You can direct questions concerning PHI or HIPAA to the Corporate Compliance and Privacy Officer at (215) 707-5605. If you are not the intended recipient, please note that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this message in error, you should notify the sender immediately by telephone or by return e-mail and delete and destroy all copies of this message.


--
To unsubscribe email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "unsubscribe" in the subject.
For help email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "help" in the subject.
Trouble?  Email listmaster@xxxxxxxxxxxxxxxxxxxx.


Mail converted by MHonArc 2.6.19+ http://listengine.tuxfamily.org/