# chronyd -Q -t 3 'server [myserver] iburst nts maxsamples 1'...... TLS handshake with [myserver] failed : The TLS connection was non-properly terminated....
# chronyd -Q -t 3 'server [myserver] iburst nts maxsamples 1'...... TLS handshake with [myserver] failed : Error in the certificate verification. The certificate is NOT trusted. The certificate issuer is unknown....
[NTS_renewal]command:cp /var/etc/acme-client/home/time.XXXXX/fullchain.cer /var/lib/chrony/chrony.fullchain.cer && cp /var/etc/acme-client/home/time.XXXXX/time.XXXXX.key /var/lib/chrony/chrony.key && cp /var/etc/acme-client/home/time.XXXXX/time.XXXXX.cer /var/lib/chrony/chrony.cer && chown chronyd /var/lib/chrony/chrony.key /var/lib/chrony/chrony.cer /var/lib/chrony/chrony.fullchain.cer && /usr/local/etc/rc.d/chronyd stop && /usr/local/etc/rc.d/chronyd starttype:scriptmessage: copy NTS certificates into chrony directory and make them readabledescription: Renew NTS certificate & restart chrony (all in one go)
service configd restart
ntsservercert /var/lib/chrony/chrony.fullchain.cerntsserverkey /var/lib/chrony/chrony.key