[Ntp] Last Call: <draft-ietf-ntp-port-randomization-06.txt> (Port Randomization in the Network Time Protocol Version 4) to Proposed Standard
The IESG <iesg-secretary@ietf.org> Thu, 11 February 2021 14:35 UTC
Return-Path: <iesg-secretary@ietf.org>
X-Original-To: ntp@ietf.org
Delivered-To: ntp@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 8E5A63A1647; Thu, 11 Feb 2021 06:35:34 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.25.0
Auto-Submitted: auto-generated
Precedence: bulk
CC: draft-ietf-ntp-port-randomization@ietf.org, ek.ietf@gmail.com, ntp-chairs@ietf.org, ntp@ietf.org, odonoghue@isoc.org
Reply-To: last-call@ietf.org
Sender: iesg-secretary@ietf.org
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <161305413455.23870.1021954813431745959@ietfa.amsl.com>
Date: Thu, 11 Feb 2021 06:35:34 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/ntp/II0aIwwq0l46pNPMuyoV4izTx4Y>
Subject: [Ntp] Last Call: <draft-ietf-ntp-port-randomization-06.txt> (Port Randomization in the Network Time Protocol Version 4) to Proposed Standard
X-BeenThere: ntp@ietf.org
X-Mailman-Version: 2.1.29
List-Id: <ntp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ntp>, <mailto:ntp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ntp/>
List-Post: <mailto:ntp@ietf.org>
List-Help: <mailto:ntp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ntp>, <mailto:ntp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 Feb 2021 14:35:35 -0000
The IESG has received a request from the Network Time Protocol WG (ntp) to consider the following document: - 'Port Randomization in the Network Time Protocol Version 4' <draft-ietf-ntp-port-randomization-06.txt> as Proposed Standard The IESG plans to make a decision in the next few weeks, and solicits final comments on this action. Please send substantive comments to the last-call@ietf.org mailing lists by 2021-02-25. Exceptionally, comments may be sent to iesg@ietf.org instead. In either case, please retain the beginning of the Subject line to allow automated sorting. Abstract The Network Time Protocol can operate in several modes. Some of these modes are based on the receipt of unsolicited packets, and therefore require the use of a well-known port as the local port number. However, in the case of NTP modes where the use of a well- known port is not required, employing such well-known port unnecessarily increases the ability of attackers to perform blind/ off-path attacks. This document formally updates RFC5905, recommending the use of transport-protocol ephemeral port randomization for those modes where use of the NTP well-known port is not required. The file can be obtained via https://datatracker.ietf.org/doc/draft-ietf-ntp-port-randomization/ No IPR declarations have been submitted directly on this I-D.