NTS and ipv6

Gary E. Miller gem at rellim.com
Thu Jul 25 19:17:53 UTC 2019


Yo Paul!

On Thu, 25 Jul 2019 12:11:16 -0700
Paul Theodoropoulos <paul at anastrophe.com> wrote:

> I just ran a first pass at setting up NTS on a device (RPI 3b+,
> raspbian 10/buster).

Cool.

> The server failed to come up on restart of service, as follows:
> 
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: Private Key OK
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: OpenSSL security level is 2
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: listen4 worked
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: Can't create socket6:

Odd, does your kernel not support IPv6?  What does your ntp.conf
look like?

I use NTS with IPv6 just fine.  Try pi4.rellim.com


> 2019-07-25T12:03:53 ntpd[21436]: NTSc: Using system default root 
> certificates.
> 2019-07-25T12:03:53 ntpd[21436]: NTS: troubles during init. Bailing.

Not really clear why it bailed...

> I don't use ipv6.

Shame.

> Without regard to the countless arguments
> associated with ipv6, shouldn't NTS simply acknowledge that ipv6
> isn't enabled, and continue initialization if it isn't  available?

I would guess so.

> It was easily enough solved by re-enabling ipv6 in the boot config,
> and I have it running fine now in my test environment.

Why would you ever turn off IPv6????

RGDS
GARY
---------------------------------------------------------------------------
Gary E. Miller Rellim 109 NW Wilmington Ave., Suite E, Bend, OR 97703
	gem at rellim.com  Tel:+1 541 382 8588

	    Veritas liberabit vos. -- Quid est veritas?
    "If you can’t measure it, you can’t improve it." - Lord Kelvin
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 851 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ntpsec.org/pipermail/users/attachments/20190725/69439fed/attachment.bin>


More information about the users mailing list