On Sat, May 05, 2007 at 04:16:06PM -0400, [EMAIL PROTECTED] wrote:
> 
> >why not just block 123 at the firewall and provide an ntp service ?
> >
> 
> That's an acceptable alternative !
> 

I would say that it's the first step on the road you are describing, and the
first thing to mention.  The measure you are advocating is an 'advanced' 
alternative, precisely because it breaks things in quite a subtle way, 
will hide breakage elsewhere and is more complex.

But it is just a matter of emphasis, and I agree with you that this
is a practice that some sites might want to adopt, and might benefit
all by being a more obvious alternative for sites who would not
otherwise see a suitable way to manage their ntp traffic.

Perhaps the world would be a better place if the makers of routers
who can't seem to help hardcoding ntp servers could be persuaded
to make this the default ;-)

Regards,
Paddy
_______________________________________________
timekeepers mailing list
[email protected]
https://fortytwo.ch/mailman/cgi-bin/listinfo/timekeepers

Reply via email to