Re: 答复: [chrony-users] 答复: about nts-cookies |
[ Thread Index |
Date Index
| More chrony.tuxfamily.org/chrony-users Archives
]
- To: chrony-users@xxxxxxxxxxxxxxxxxxxx
- Subject: Re: 答复: [chrony-users] 答复: about nts-cookies
- From: Miroslav Lichvar <mlichvar@xxxxxxxxxx>
- Date: Mon, 14 Nov 2022 17:02:00 +0100
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1668441725; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=jYuyRpRna/mKSPwPlviMFumqzPw1Pc30q/PmZx5MhWU=; b=bwEG22XYTU4KZyEp7Bla1BjWxNZy/cY0WcNMaEIgQ+k5PRtYT7P4/+6L/twn80/3Czx5mT aDLTMDKuApjQD/peUdxRIdWLVOAuKT1WtzwH8qNGFlGHLPasT5sVpKADgP6qD+DMf52lHd EzBfiRXeKf9quuRDBhOAmFA7Bb/0HAM=
On Mon, Nov 14, 2022 at 09:37:12AM +0000, chengyechun wrote:
> The public key encryption in the NTP software package does not support NAT forwarding. Want to know about nts-ke support?
NTS-NTP and NTS-KE work behind NAT fine. Autokey, if that's what you
are referring to, included the server and client IP address in the
calculation of the key, which breaks the authentication if NAT is
involved (on either side).
--
Miroslav Lichvar
--
To unsubscribe email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "unsubscribe" in the subject.
For help email chrony-users-request@xxxxxxxxxxxxxxxxxxxx
with "help" in the subject.
Trouble? Email listmaster@xxxxxxxxxxxxxxxxxxxx.