Re: [Ntp] NTS Hackathon coordination

Watson Ladd <watsonbladd@gmail.com> Sat, 23 March 2019 12:45 UTC

Return-Path: <watsonbladd@gmail.com>
X-Original-To: ntp@ietfa.amsl.com
Delivered-To: ntp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4E860130EC0 for <ntp@ietfa.amsl.com>; Sat, 23 Mar 2019 05:45:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3uPCo-J6rI37 for <ntp@ietfa.amsl.com>; Sat, 23 Mar 2019 05:45:37 -0700 (PDT)
Received: from mail-lj1-x22a.google.com (mail-lj1-x22a.google.com [IPv6:2a00:1450:4864:20::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 115E612426E for <ntp@ietf.org>; Sat, 23 Mar 2019 05:45:37 -0700 (PDT)
Received: by mail-lj1-x22a.google.com with SMTP id f23so4203357ljc.0 for <ntp@ietf.org>; Sat, 23 Mar 2019 05:45:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=0ITFA0RF5bfACqigps/1ELA5YMHMJh5ZU1RfDO4eXfQ=; b=mCqp6rk8zcRollo7coiXgpCn/UyqpPttPT+cVyAnaRC6RyfbLOJwt3Bq7p0LTtAOzf Y05CgGsVifl4U/2cZRh/bdIVR6GlO2zHVdoYoFRHXzR660MgOztnIAGqAaY5a9UL7kqS 9z73bOmjeU5ocdeDBow+/Vy0GFJWkvYWosotYEthEI2B43nTXyAlLFXCHCpqnwkEPgKD jjeggl+JfOWnixSo4+dmLipRFRl8f+wHTCKfM3GFAgsuRImp0GOWWfrsunfFCrVbkfIK 9oAYQQAkxDwEowVR5/1acBERNfV+eZDVBJFilZNY1DUbj56V8+D0tNm2IoAG/AHVvRPO pqAw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=0ITFA0RF5bfACqigps/1ELA5YMHMJh5ZU1RfDO4eXfQ=; b=ocFSBe/2MeMRhj8D9dS2OfDjsp6JTKA0bKlDmhFOw0lFNbxbQ6IR/yQEb5IBjxlo9E RlLPFwaaA5jvmzCW1R8zV4B1ed9vWPcWXYnlKAA4MIYBxk7jefnywlmwAEM+WP6ZjooC NK3PMfkZ8rUfQPcJcfGUCPOUMPKnB8FhS7OcJ0qYSgwmAViRT565L3wMoCEDxuupFkzJ quRifYyCJ1qN7gjDrjDzc3mthhhDyfbNmJ3Kph+4JerXTgdbLkw9ND4v6n48WFedsuD8 lFQAln0Tnwv7UJseOf9BY1dyrAJatWrYaIvDchkhiyYiEBlE0fABXVs9LFDYlEqBjV++ Umyg==
X-Gm-Message-State: APjAAAXZgnjE5veNTne2ggN38I/5eYu1joA8f1vWN3aYf0KnJC3GPOBR WTPiVYDU83qC3CFLxybO5dyXwtV0jYLKrZWX9f0=
X-Google-Smtp-Source: APXvYqyT5dKgbxtys5EQ/YoOdk2zSGeXqpLOlf2XkJCgacD7Qkaa5emEE2YjW1DPqPt8GTUDHdnUm/5hAQ0MZnvEBXw=
X-Received: by 2002:a2e:719:: with SMTP id 25mr8133622ljh.122.1553345135016; Sat, 23 Mar 2019 05:45:35 -0700 (PDT)
MIME-Version: 1.0
References: <20190322223210.1181540605C@ip-64-139-1-69.sjc.megapath.net> <CAJm83bCkJ+yOe_P=ZefZS8ve1sNft7n6fLK3sRnLfBdME2kwhg@mail.gmail.com>
In-Reply-To: <CAJm83bCkJ+yOe_P=ZefZS8ve1sNft7n6fLK3sRnLfBdME2kwhg@mail.gmail.com>
From: Watson Ladd <watsonbladd@gmail.com>
Date: Sat, 23 Mar 2019 13:45:24 +0100
Message-ID: <CACsn0ck1cbmYcL79dxFD-=yYz2r2QNF4zNFffCGnvwd8WV07DQ@mail.gmail.com>
To: Daniel Franke <dfoxfranke@gmail.com>
Cc: Hal Murray <hmurray@megapathdsl.net>, ntp@ietf.org
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/ntp/JH-qVwIAsdVucJyWCNe7RDwyrAk>
Subject: Re: [Ntp] NTS Hackathon coordination
X-BeenThere: ntp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <ntp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ntp>, <mailto:ntp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ntp/>
List-Post: <mailto:ntp@ietf.org>
List-Help: <mailto:ntp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ntp>, <mailto:ntp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 23 Mar 2019 12:45:40 -0000

We had a similar conversation with our network people at work.
Apparently ASICs are bad at looking inside packets, even at fixed bit
positions inside packets. They are limited to port, udp or tcp, and
length.

On Sat, Mar 23, 2019 at 12:38 PM Daniel Franke <dfoxfranke@gmail.com> wrote:
>
> We need to get the word out to network operators to stop filtering in this manner (and that if they really must filter, they should limit it to mode 7 packets). As a (hopefully) temporary measure, implementers should make it easy for users to serve NTP on an alternate port in addition to 123, and use Port Negotiation in NTS-KE to advertise it. There should be no need for any spec changes or IANA actions to accommodate this behavior; since we have the negotiation mechanism, there is no need for a registered port and administrators can pick anything not in use by another service.
>
> On Fri, Mar 22, 2019, 23:32 Hal Murray <hmurray@megapathdsl.net> wrote:
>>
>>
>> odonoghue@isoc.org said:
>> >    For those participating, I’ll see you physically or virtually tomorrow.
>> >    The room will open at 9:00 am CET. It will take us a little while to get
>> >    started and get through the opening portions, so for the remote folks,
>> >    please be patient with us.
>>
>> I assume somebody will find bugs/quirks in our code.  I'll be available via
>> email.  I'm in California.  I think that means you are starting at my
>> midnight.  I'm a night owl, so we'll get some overlap.
>>
>> 2 more servers:
>>   ntp1.glypnod.com - San Francisco
>>   ntp2.glypnod.com - London
>>
>> The NTS-LE server is listening on port 123, both IPv4 and IPv6.
>>
>> I've seen cases where some NTP packets don't make it to London.  I assume it's
>> filtering leftover from the DDoS mess of a few years ago.  Normal NTP
>> request/responses get through.  Longer requests with NTS extensions don't get
>> in to London if the source port is 123.
>>
>>
>>
>> --
>> These are my opinions.  I hate spam.
>>
>>
>>
>> _______________________________________________
>> ntp mailing list
>> ntp@ietf.org
>> https://www.ietf.org/mailman/listinfo/ntp
>
> _______________________________________________
> ntp mailing list
> ntp@ietf.org
> https://www.ietf.org/mailman/listinfo/ntp



-- 
"Man is born free, but everywhere he is in chains".
--Rousseau.