[Samba] Correct NTP Settings for Samba 4.0.6?

Andrew Martin amartin at xes-inc.com
Sat Jul 27 00:26:53 MDT 2013


I recently compiled Samba 4.0.6 (as an AD DC) and am running it on Ubuntu 12.04. 
I followed the instructions on the Samba wiki (https://wiki.samba.org/index.php/Configure_NTP)
for how to configure ntp, however the domain clients are rejecting the DCs as
being acceptable time sources. Below is my ntp.conf:

fudge stratum 10
server 0.pool.ntp.org  iburst prefer
server 1.pool.ntp.org  iburst prefer
driftfile /var/lib/ntp/ntp.drift
logfile /var/log/ntp
ntpsigndsocket /var/run/samba/ntp_signd
restrict default kod nomodify notrap nopeer mssntp
restrict 0.pool.ntp.org mask nomodify notrap nopeer noquery
restrict 1.pool.ntp.org mask nomodify notrap nopeer noquery

Using Ubuntu, I am not using SELinux. I do not believe there to be any problems
with apparmor, as it contains these lines in /etc/apparmor.d/usr.sbin.ntpd:
  # samba4 ntp signing socket
  /{,var/}run/samba/ntp_signd/socket rw,

What is the correct procedure for configuring NTP for a Samba4 AD DC?



