CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Check Point SecurePlatform (SPLAT)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2005-11-28
Junior Member
 
Join Date: 2005-11-01
Posts: 8
Rep Power: 0
Avertive has an average reputation (10+)
Default NTP in SPLAT

I've disabled the webgui on my enforcement module (SPLAT, R55), but need to configure the NTP client. I had hoped it would be an option under sysconfig, but could not find an option where I specify my servers, interval, etc. I did find the command line string to run ntp, but am not sure if the daemon thus started will automatically run on system reboot. Assuming not, I'm at a bit of a loss how to configure this.

I did find /etc/rc.d/init.d/ntp, which seems calls a file in /etc/sysconfig/ntp. I'm guessing this is the configuration file. However, this file does not yet exist so the ntp daemon never starts, and I'm not sure of the precise syntax this ntp file is expecting.

In any case, I may be making this harder than it is. Please let me know how best to set this up.

Thanks in advance!
Reply With Quote
  #2 (permalink)  
Old 2005-12-21
Senior Member
 
Join Date: 2005-08-29
Location: Upstate NY
Posts: 1,660
Rep Power: 5
chillyjim has an average reputation (10+)
Send a message via AIM to chillyjim Send a message via Skype™ to chillyjim
Default Re: NTP in SPLAT

from a cpshell login the "ntp" command is used:

Usage: ntp <MD5_secret> <interval> <server1> [<server2> <server3>]
ntp -n <interval> <server1> [<server2> [<server3>]] (when working w/o MD5 secret)

SPLAT doesn't run ntpd

-jlh
Reply With Quote
  #3 (permalink)  
Old 2006-01-09
Junior Member
 
Join Date: 2005-11-01
Posts: 8
Rep Power: 0
Avertive has an average reputation (10+)
Default Re: NTP in SPLAT

Quote:
Originally Posted by chillyjim
from a cpshell login the "ntp" command is used:

Usage: ntp <MD5_secret> <interval> <server1> [<server2> <server3>]
ntp -n <interval> <server1> [<server2> [<server3>]] (when working w/o MD5 secret)

SPLAT doesn't run ntpd

-jlh
Thank you for the response. I've tried this, and the command appears to work. But when I run ntpstat, I get the following error message:

/bin/ntpstat_ntpstart: cpd_sched_config: command not found
ntp is not running

The command I type in is:

ntp -n 60 <server>

No error or success messages print after typing this command.

I am able to run ntpdate at Expert, but would really like to find out why this ntp polling won't execute & persist. I'd rather avoid hacking a script together that runs ntpdate for me. :)
Reply With Quote
  #4 (permalink)  
Old 2006-01-10
Senior Member
 
Join Date: 2005-08-29
Location: Upstate NY
Posts: 1,660
Rep Power: 5
chillyjim has an average reputation (10+)
Send a message via AIM to chillyjim Send a message via Skype™ to chillyjim
Default Re: NTP in SPLAT

SPLAT doesn't run ntpd, it uses ntpdate every <x> seconds to query the ntp server.
Reply With Quote
  #5 (permalink)  
Old 2006-01-10
Junior Member
 
Join Date: 2005-11-01
Posts: 8
Rep Power: 0
Avertive has an average reputation (10+)
Default Re: NTP in SPLAT

Aha! I think I found the problem. When I run the "ntpstat" command as an admin-level user, I get the above error message. When I run as expert, I get "ntp is running".

I'm not sure why ntpstat would show up in the cpshell command list if it can't be run...or perhaps ntp was started at the Expert level...meaning the configuration file was created as the root user, and therefore could not be read by admin.

Anyway, thanks for the help!
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 08:20.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0