Hi all, I am need of some help with our public ntp setup. We upgraded our servers from RH7.3 ->FC1 (ntp4.1.1->4.1.2) last week and I have now had several reports of people who are seeing our servers apparently port scanning them :-( I didn't change the config for ntp but can confirm that after their server first asks for the time, we start sending them packets on high UDP ports. The complaints that I have been investigating are Windows servers but that may be a red-herring. I have previously treated ntp as a black-box but am obviously going to have to understand things better. Any help would be appreciated. Glen -- .*. | Glen Eustace, Infrastructure Development Engineer /V\ | Information Technology Services PN460, Turitea, (/ \) | Massey University, Palmerston North, New Zealand. ( ) | Ph: +64 6 356 9099 x 81005, Fax: +64 6 350 5607, ^^_^^ | Mob: +64 27 4 500 321 ------+-----------------------------------------------------