Mailing List ArchiveSupport open source code!
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: Network time protocol
- To: tlug@example.com
- Subject: Re: Network time protocol
- From: Frank BENNETT <bennett@example.com>
- Date: Wed, 20 Sep 2000 08:23:35 +0900
- Content-Transfer-Encoding: 7bit
- Content-Type: text/plain; charset=iso-2022-jp
- In-Reply-To: <XFMail.20000919140739.s-luppescu@example.com>; from s-luppescu@example.com on Tue, Sep 19, 2000 at 02:07:39PM -0500
- References: <20000919111115.A592@example.com> <XFMail.20000919140739.s-luppescu@example.com>
- Reply-To: tlug@example.com
- Resent-From: tlug@example.com
- Resent-Message-ID: <FWBwG.A.FG.df_x5@example.com>
- Resent-Sender: tlug-request@example.com
On Tue, Sep 19, 2000 at 02:07:39PM -0500, s-luppescu@example.com wrote: > Here's what I was told, when I asked about the safety of opening up a port on > my firewall to permit ntp: > > ----------------------------------------------------------- > Theorically there is a problem when opening the NTP server. Many > of the cryptographic systems use the system time to generate random > numbers, and if 'attackers' can have access to your exactly system time, > they theorically can break your cryptographic messages, etc. I recomment > to close this to the internet, but if you don't run any PGP/GPG/SSL big > programs or/and don't have big concern about your cryptography, it's okay > to leave it open. Wow again. Reminds me of what Chuck Yaeger said about the ejection seat in test aircraft: "A way of committing suicide to keep from getting killed." I wonder what folks do about this. I remember seeing a note recently about using some facility other than the time for the entropy pool in encryption on Linux systems. Maybe this is only a concern if your particular setup draws on the time. ? Frank Bennett Nagoya
- Follow-Ups:
- Re: Network time protocol
- From: "Stephen J. Turnbull" <turnbull@example.com>
- References:
- Re: Network time protocol
- From: Frank BENNETT <bennett@example.com>
- Re: Network time protocol
- From: s-luppescu@example.com
Home | Main Index | Thread Index
- Prev by Date: Re: Network time protocol
- Next by Date: Re: Network time protocol
- Prev by thread: Re: Network time protocol
- Next by thread: Re: Network time protocol
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links