On 22/03/2014 17:01, Frank Bulk wrote: > It's not as good as an access-group, but I've applied "ntp disable" on each > Vlan interface that I don't want to participate in NTP. It seems effective.
hadn't noticed that command before. Yes it seems to work nicely, but only when applied on the ingress interface of the ntp packets. I.e. it doesn't work when you apply it to interface which contains the address that you're trying to protect. Nick _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
