rPUA-2006-0181-1 ntp
[Posted October 6, 2006 by ris]
From: |
| rPath Update Announcements <announce-noreply-AT-rpath.com> |
To: |
| update-announce-AT-lists.rpath.com |
Subject: |
| rPUA-2006-0181-1 ntp |
Date: |
| Thu, 05 Oct 2006 17:44:14 -0400 |
Cc: |
| lwn-AT-lwn.net |
rPath Update Advisory: 2006-0181-1
Published: 2006-10-05
Products: rPath Linux 1
Rating: Informational
Updated Versions:
ntp=/conary.rpath.com@rpl:devel//1/4.2.0-11.3-1
References:
https://issues.rpath.com/browse/RPL-651
https://issues.rpath.com/browse/RPL-652
https://issues.rpath.com/browse/RPL-295
Description:
Previous versions of the ntp package had configuration and init
scripts which made it work poorly when installed without further
configuration, including the potential for delaying boot if the
timeservers listed could not be reached. In newer versions, the
default configuration uses a new rpath.pool.ntp.org pool of NTP
servers, does not delay on boot to synchronize with timeservers,
and starts by default on initial install (an update will not
change whether the ntp daemon is configured to start, however).
Additionally, the previous "restrict default ignore" configuration
prevented any synchronization, and has been removed. Removing the
general restriction enables synchronization, but allows general
access to the NTP service. This access can be limited by firewall
configuration or otherwise, as documented in official NTP
documentation provided at:
http://ntp.isc.org/bin/view/Support/AccessRestrictions
The default firewall configuration for rPath Linux, if enabled,
does not provide public access to NTP services.
Finally, two utilities that are not critical to NTP services and
which are written in perl have been split into the new ntp:utils
component. This allows small software appliances that include
NTP services to remove the ntp:utils component and thereby avoid
the requirement to include perl on those systems.