Paul <[email protected]> wrote: > On Tue, Nov 11, 2014 at 8:14 AM, Rob <[email protected]> wrote: > >> The current Debian Wheezy version, which comes with >> ntp 4.2.6, has separate "restrict -4 default" and "restrict -6 default" >> lines, which lead to believe that this is required. >> > > You can't use any particulary distributions configuration as a model. > Particularly when it's for a different version.
I have previously noted that the lack of a workable default ntp.conf in the source distribution, combined with documentation like found on http://support.ntp.org/bin/view/Support/AccessRestrictions leads to distributed configurations that are later described as incorrect, not desirable, not optimal, not to be taken as a model, etc. When you think they are not a model then please provide (in the source distribution) a model configuration. >> Just as confusing as the fact that "pool" requires the "restrict nopeer" >> is to be lifted for the affected servers (making a "restrict source" >> required), >> > > As noted previously it's not required in the common interpretation of > required which means "pool" can be used iff you have "restict source". > Please stop repeating incorrect information. Please note that there is no indication whatsoever in the documentation that "pool" requires some different configuration of "restrict" than "server" does, in particular in a config with only "restrict default", where an administrator would not expect that. This information is CORRECT and I repeat it as often as I like. >> even though the association with a pool member is a >> client-server association, not a peer assocation. >> > > This has also been explained to you -- twice. Please stop repeating > incorrect information. Nobody has explained to me why a server configuration works with a default restrict of nopeer, which is a suggested configuration in http://support.ntp.org/bin/view/Support/AccessRestrictions and a pool configuration (which is in fact just an automatic server configuration) does not. I know about "restrict source". It is not required for "server". There is NO reference in the documentation that it is required for "pool". _______________________________________________ questions mailing list [email protected] http://lists.ntp.org/listinfo/questions
