• Our team is looking to connect with folks who use email services provided by Plesk, or a premium service. If you'd like to be part of the discovery process and share your experiences, we invite you to complete this short screening survey. If your responses match the persona we are looking for, you'll receive a link to schedule a call at your convenience. We look forward to hearing from you!
  • We are looking for U.S.-based freelancer or agency working with SEO or WordPress for a quick 30-min interviews to gather feedback on XOVI, a successful German SEO tool we’re looking to launch in the U.S.
    If you qualify and participate, you’ll receive a $30 Amazon gift card as a thank-you. Please apply here. Thanks for helping shape a better SEO product for agencies!
  • The BIND DNS server has already been deprecated and removed from Plesk for Windows.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS. We strongly recommend transitioning to Microsoft DNS within the next 6 weeks, before the Plesk 18.0.70 release.
  • The Horde component is removed from Plesk Installer. We recommend switching to another webmail software supported in Plesk.

Question NTP port

stevenm

New Pleskian
Server operating system version
Ubuntu 22.04
Plesk version and microupdate number
18.0.56
Hi,

I was configuring a new firewall (a MikroTik CHR) for a customer to sit in front of their new Plesk web server (deployed using the Plesk provided qcow2 with Ubuntu 22.04 and Plesk pre-installed) and I was going through all the ports I needed to NAT / firewall from this guide...

Which ports should be opened in the firewall on a Plesk server - Support Cases from Plesk Knowledge Base

This is the one that has me confused...

123 - NTP (UDP)

I'm not entirely sure why this has been listed... or at least listed in this way?

If this is meant to imply you need to open port 123 incoming... then not all NTP daemons by default listen for incoming NTP requests (e.g. timesyncd from systemd doesn't... but ntpd does). I know Plesk has a UI that lets you set the NTP server(s) that you'd like your server to get time from... but this UI can't be used for configuring anything to do with letting customers get the time from your server... it seems to be intended just to be for configuring NTP only in the scope of making sure the server has accurate time.

So why list this a port that needs to be open? Or is this only on the list as it needs to be open outbound and not inbound?

Maybe this would be better?

123 - NTP (UDP) - outgoing connections only

Just a thought :)
 
Back
Top