Hi all,
I am need of some help with our public ntp setup.
We upgraded our servers from RH7.3 ->FC1 (ntp4.1.1->4.1.2) last week and
I have now had several reports of people who are seeing our servers
apparently port scanning them :-(
I didn't change the config for ntp but can confirm that after their
server first asks for the time, we start sending them packets on high
UDP ports. The complaints that I have been investigating are Windows
servers but that may be a red-herring.
I have previously treated ntp as a black-box but am obviously going to
have to understand things better.
Any help would be appreciated.
Glen
--
.*. | Glen Eustace, Infrastructure Development Engineer
/V\ | Information Technology Services PN460, Turitea,
(/ \) | Massey University, Palmerston North, New Zealand.
( ) | Ph: +64 6 356 9099 x 81005, Fax: +64 6 350 5607,
^^_^^ | Mob: +64 27 4 500 321
------+-----------------------------------------------------