Possibly chose a server that is "near" to your location then set properly the system time before starting ntp for the first time you can do it by running ntpdate

Ie would that give public access somehow? –Tuinslak Dec 28 '16 at 7:32 add a comment| up vote 0 down vote When read the second answer, I realize the reason of

With notrust in the default restrict line, you need to add the following line in order for the local clock to synchronize.restrict

so i uncommented it again and set my clock back 10 minutes before going to bed last night, and this morning i am synched with my time servers:21 Jul 01:49:05 ntpd[11506]: So my next question is this: Why are some examples of ntp.conf files using restrict lines and some are not.

  Check which servers you're connecting to in /etc/ntp.conf and try to ping them (it could be a name resolution issue or connectivity issue).Also try it in SELinux permissive mode if that
  • Encryption?
  The ntp "restrict" command matches source addresses the same way, but just remember that a naked address like without any flags, means that everything from that address is ALLOWED, not
  So ntpd accelerate/slow the clock untill it reach the correct time.

driftfile /var/lib/ntp/ntp.drift statdir /var/log/ntpstats/ statistics loopstats peerstats clockstats filegen loopstats file loopstats type day enable filegen peerstats file peerstats type

ntpd is made to guarantee a very precise clock timing (in the order of microsecond) it is not only to keep the time correct. Your default line says don't trust any server as a source of time, and then for each server you list, you have to specifically trust it as a source of time.

GET THOSE LINES OUT OF YOUR CONFIG FILE!

However after the recent waves of attacks egress ntp filtering is a lot more common than you think. –dfc Mar 10 '14 at 23:28 @BojanVidanovic It does not make

restrict default noquery nomodify restrict fudge stratum 3 server server server driftfile /etc/ntp.drift logfile /var/log/ntp.log Look at your log.

Letting ntp run against your own local clock gives you a false sense of having a "backup" source. Running the daemon ensures that your time is never stepped backwards (if configured and working correctly). restrict noserve nomodify

Offline #22 2004-07-23 02:58:43 jak Member From: Charlotte, NC, USA Registered: 2004-04-08 Posts: 84 Re: ntp - there's gotta be a correct way schome1 wrote:According to jak, you should remove the The clients are Raspberry Pis and so have no real time clock.

You can test if NTP is up and listening by using netstat on the server and ntpdate on the client On the server: $ sudo netstat -unlp | grep ntp udp When I try connecting specifically to the server, the client cannot find it.