NTS and ipv6

Gary E. Miller gem at rellim.com
Thu Jul 25 19:17:53 UTC 2019

Yo Paul!

On Thu, 25 Jul 2019 12:11:16 -0700
Paul Theodoropoulos <paul at anastrophe.com> wrote:

> I just ran a first pass at setting up NTS on a device (RPI 3b+,
> raspbian 10/buster).


> The server failed to come up on restart of service, as follows:
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: Private Key OK
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: OpenSSL security level is 2
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: listen4 worked
> 2019-07-25T12:03:53 ntpd[21436]: NTSs: Can't create socket6:

Odd, does your kernel not support IPv6?  What does your ntp.conf
look like?

I use NTS with IPv6 just fine.  Try pi4.rellim.com

> 2019-07-25T12:03:53 ntpd[21436]: NTSc: Using system default root 
> certificates.
> 2019-07-25T12:03:53 ntpd[21436]: NTS: troubles during init. Bailing.

Not really clear why it bailed...

> I don't use ipv6.


> Without regard to the countless arguments
> associated with ipv6, shouldn't NTS simply acknowledge that ipv6
> isn't enabled, and continue initialization if it isn't  available?

I would guess so.

> It was easily enough solved by re-enabling ipv6 in the boot config,
> and I have it running fine now in my test environment.

Why would you ever turn off IPv6????

Gary E. Miller Rellim 109 NW Wilmington Ave., Suite E, Bend, OR 97703
	gem at rellim.com  Tel:+1 541 382 8588

	    Veritas liberabit vos. -- Quid est veritas?
    "If you can’t measure it, you can’t improve it." - Lord Kelvin
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 851 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ntpsec.org/pipermail/users/attachments/20190725/69439fed/attachment.bin>

More information about the users mailing list