Re: [Ntp] [NTP] Using NTS for other negotiations (WAS: No more options for NTP)

Watson Ladd <> Wed, 24 April 2019 14:58 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id 11D151203CC for <>; Wed, 24 Apr 2019 07:58:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (2048-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id 7EdmDBSERGne for <>; Wed, 24 Apr 2019 07:58:01 -0700 (PDT)
Received: from ( [IPv6:2a00:1450:4864:20::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by (Postfix) with ESMTPS id 8F32B1203C5 for <>; Wed, 24 Apr 2019 07:58:00 -0700 (PDT)
Received: by with SMTP id p14so17183641ljg.5 for <>; Wed, 24 Apr 2019 07:58:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to; bh=BEDceHy44PkrvFcOIXWex5BtLS7G1BgwlVg128ypwUk=; b=GiytCX4xFu13asnwza2OzJF6dSTbrRA8HMKdIDc2N0SfYOHf0abfj1fLOWkycuQ75X 8qVW5kTK4/7Y5Wp77SvqjSo552ww+2FR9ricDwcwx6tr6rZ8xzIeD/oThdLu6m0DAxvS JdHaoe8Fqcpim25m8bAE0UpqRWBMcnMqVxDmRfAmO1t0X95paG7bZ3ND17M3HHXA1sKv yu5QBgrKvIV7r4EZKNvVzvCQXbgVicD647736wk/GI75QQjbj4GcjYG1HqNGccryZiRt XpYMbWe0lwJrs4CFgOZhHdFqtxGP02CE5fiFk0irtvHnf0FqL/RzkjrAv43fN6riC6h1 VvZw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=BEDceHy44PkrvFcOIXWex5BtLS7G1BgwlVg128ypwUk=; b=epCTmTkakVUhNvQaujYhU+ffGXOrMi96ycXHio2lpQtBY6ickbLKYZ/BStDhMwNpEH ov6bHcXAFrDm1D49F6DXmvWsmVelJV7ZxJBOqk9+T4Gql7PoNqj20qQ6vsWyDkN6M4Xe a8U4Fv6KHWBwD1YXJupicNcwbMWfHCsdwaXZCmnlAv7fEoOw09Ce7mcX7biHlj4QFDQF c/J2LdlHza2wUnEJcWDN8PMRM9FbFl5J0hEcwdUa3HGXXKAg04k+TPFs3alTIIcR6jkb ykGrbyj2aSPmUWdc7npktdd7K7OVTLHz1wJdwKA/UNHZzACqjUM1AD8zrohgCyMZ8QlY r56A==
X-Gm-Message-State: APjAAAVATcoI8OD2qgMx+CYILjkd0Dl7D5+/doUYJGmKIkzdTwb0RrNc VNdReTD69lxv9ZF5JJ2URuSJ6hqICXEXmwry4/E=
X-Google-Smtp-Source: APXvYqxt2U2R9bQZvsHooFKVudnUnsY80sYtBjs1cnhFMchELekpF3fWYeOF7s41RCXOMqYDXEtp+JLu/fnmXznJqaE=
X-Received: by 2002:a2e:5d94:: with SMTP id v20mr16316516lje.138.1556117878654; Wed, 24 Apr 2019 07:57:58 -0700 (PDT)
MIME-Version: 1.0
References: <> <>
In-Reply-To: <>
From: Watson Ladd <>
Date: Wed, 24 Apr 2019 07:57:47 -0700
Message-ID: <>
To:, NTP WG <>
Content-Type: multipart/alternative; boundary="00000000000062cf04058747ed02"
Archived-At: <>
Subject: Re: [Ntp] [NTP] Using NTS for other negotiations (WAS: No more options for NTP)
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Wed, 24 Apr 2019 14:58:10 -0000

On Tue, Apr 16, 2019, 12:10 AM <> wrote:

> Hey all, hey Watson,
> I can't speak for everyone of course, but personally, I felt that I
> couldn't comment on the suggestion because I didn't feel I understood
> enough of what it entailed.
> Would you care to elaborate a bit on how you propose this would  work?

The goal I have is to sunset NTP without security as well as provide
solution to the problems of NTP v4

When I look at proposals like I-Do or the smearing proposal, or interleaved
mode, these have to be very painfully arranged because extensions in NTP
are broken. But NTS provides a similar client advertises capability and
server selects capability flow, and is not constrained by the need to
maintain close similarity to NTP or eschew extensions. Something like an
I-Do inquiry sent in the client NTS-KE request and then responded to in the
server's response in a new packet type would provide a feature discovery
mechanism. I think this will be a much more flexible approach then
proposals that try to cram everything into a packet.