This article provides information on how to configure NTP with authentication keys on a SRX device.
How to configure NTP with authentication keys on a SRX device.
When synchronizing the time with the NTP server, the system is exposed and can be vulnerable to attacks.
By default, network time synchronization is unauthenticated. To authenticate other time servers, include the trusted-key statement at the [edit system ntp] hierarchy level. Only the time servers that transmit the network time packets, which contain one of the specified key numbers and whose key matches the value that is configured for the key number, are eligible to be synchronized with. Other systems can synchronize to the local router, without being authenticated. To configure NTP with authentication keys, perform the following procedure:
[edit system ntp] trusted-key [ key-numbers ];
[edit system ntp] authentication-key key-number type type value password;