Bug 1224821

Summary: [doc] Issue in "Configuring NTP by adjusting /etc/chrony.conf"
Product: [Non-product-specific documentation] Documentation Reporter: Cameron Cumberland <cameron.cumberland>
Component: Smart DocsAssignee: Tomáš Bažant <tbazant>
Status: CONFIRMED --- QA Contact: Tanja Roth <taroth>
Severity: Normal    
Priority: P5 - None CC: cameron.cumberland
Version: unspecified   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard: https://jira.suse.com/browse/DOCTEAM-1437
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Description Cameron Cumberland 2024-05-21 21:50:21 UTC
Configuring NTP by adjusting /etc/chrony.conf:

[ URL - Main Page ]
https://documentation.suse.com/smart/network/html/ntp-time-synchronization/index.html#ntp-configure-configuration-file


[ REQUEST FOR CONTENT ]
A customer has asked how to use NTS (network time security) with NTP, which was a capability to encrypt NTP traffic added to chrony in 2020.

I provided them with external links to setup but could not find a similar one that we have written (i.e. for SLES specifically, endorsed by SUSE).

( Request )
Can such a section for NTS-via-NTP be written and added to the docs?




[ BACKGROUND ]
( NTS Server )
Unfortunately, the only guide I can find seems to be from "TechTutorials" but the steps appear to mirror official documentation from Chrony's troubleshooting FAQ and other forums online where posters have asked their configs to be checked. [2]

The actual guide is about 2/3 down the page, heading Configure NTS Server. It does require both a .key and .crt file be generated and readable (chown-ed to) chrony.


( NTS Client )
It appears that you can edit the /etc/chrony.conf file and add the nts parameter to the end to specify on the client (once the server provides NTS):
 
`server fqdn.of.ntp.server iburst nts`


[ 1 - chrony: NTS ]
https://chrony-project.org/faq.html#_using_nts

[ 2 - Setup NTS with Chrony ]
https://www.techtutorials.tv/sections/linux/how-to-setup-an-nts-server/
Comment 1 Tomáš Bažant 2024-05-27 07:08:06 UTC
Thank you for reporting this bug!
It is being tracked and processed as part of our queue.