Project

General

Profile

Actions

Bug #16058

closed

NTPD issue with authenticated update since upgrade

Added by Eric Nguyen 3 months ago. Updated 3 months ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
NTPD
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Release Notes:
Default
Affected Plus Version:
24.11
Affected Architecture:
All

Description

Hi there,

I have happily setup authenticated NTPD using a sha256 key a while ago, and it was working quite happily (I was on 24.08). Last week I upgraded, and last night one of my servers refused to auth, refused TOTP tokens etc.... So I investigated and found out that server (as others) was not getting time from my pfsense. The log I get is:

Feb 19 05:03:28 ntpd 39338 MAC decrypt: MAC length error: 24 not 36 for key 1
Feb 19 05:03:01 ntpd 39338 MAC decrypt: MAC length error: 24 not 36 for key 1

If I disable authenticated NTP, the spamming stops and my devices can get time. I use Chrony as a client on my servers

Actions

Also available in: Atom PDF