In message <530b2dee.3030...@rewt.org.uk>, Joe Holden writes:

>The other point I should make here is that if you care that much about 
>time security you shouldn't be contacting ntp servers over 3rd party 
>networks anyway, at least not without some IP-level 
>encryption/authentication, or use a source that can't easily be used as 
>an attack surface, such as GPS/MSF etc.

Please check how NTP is authenticated before giving bad advice,
it's all in the RFC.

-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
p...@freebsd.org         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.
_______________________________________________
freebsd-current@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-current
To unsubscribe, send any mail to "freebsd-current-unsubscr...@freebsd.org"

Reply via email to