Public bug reported: The default ntp configuration that ships with ubuntu has ntp listening on all interfaces when in most instances that's not needed. Adding the line:
interface ignore wildcard to ntp.conf disables this and makes ntp only listen to localhost, which is enough for things like ntpq to still work. It would probably be even safer for it not to listen on any interfaces but that doesn't seem to be possible as "interface ignore all" seems to be completely ignored and "interface ignore lo" only disables localhost on ipv6. It seems listening to localhost on ipv4 is hardcoded into ntpd. ProblemType: Bug DistroRelease: Ubuntu 11.04 Package: ntp 1:4.2.6.p2+dfsg-1ubuntu5.1 ProcVersionSignature: Ubuntu 2.6.38-11.48-generic 2.6.38.8 Uname: Linux 2.6.38-11-generic x86_64 Architecture: amd64 Date: Sat Sep 24 20:04:13 2011 EcryptfsInUse: Yes ProcEnviron: LANGUAGE=en_US:en PATH=(custom, user) LANG=en_US.UTF-8 SHELL=/bin/bash ProcVersionSignature_: Ubuntu 2.6.38-11.48-generic 2.6.38.8 SourcePackage: ntp UpgradeStatus: Upgraded to natty on 2011-05-07 (140 days ago) ** Affects: ntp (Ubuntu) Importance: Undecided Status: New ** Tags: amd64 apport-bug natty -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to ntp in Ubuntu. https://bugs.launchpad.net/bugs/858493 Title: By default ntpd listens on all interfaces To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ntp/+bug/858493/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs