Re: [Ntp] NTS IANA request

" tglassey@earthlink.net " <tglassey@earthlink.net> Sun, 09 June 2019 08:53 UTC

Return-Path: <tglassey@earthlink.net>
X-Original-To: ntp@ietfa.amsl.com
Delivered-To: ntp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 33AA8120154 for <ntp@ietfa.amsl.com>; Sun, 9 Jun 2019 01:53:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.135
X-Spam-Level:
X-Spam-Status: No, score=-2.135 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FROM_EXCESS_BASE64=0.979, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H2=-0.415, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=earthlink.net; domainkeys=pass (2048-bit key) header.from=tglassey@earthlink.net header.d=earthlink.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uMa4ec_WfmcO for <ntp@ietfa.amsl.com>; Sun, 9 Jun 2019 01:53:13 -0700 (PDT)
Received: from elasmtp-mealy.atl.sa.earthlink.net (elasmtp-mealy.atl.sa.earthlink.net [209.86.89.69]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5A89E120099 for <ntp@ietf.org>; Sun, 9 Jun 2019 01:53:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=earthlink.net; s=dk12062016; t=1560070393; bh=US1REGWW9O+6jOnSDCAQf7dvKr3i9gKbnSst FC0v4h0=; h=Received:To:From:Subject:Date:MIME-Version:Content-Type: Message-ID:X-ELNK-Trace:X-Originating-IP; b=jVn69tiJZnhjAjFESqPsKu 3aTZKCm9nF7zLsi7UwAXuMIo77zDTMXEOU4i/yHIhK3HysI3FhvAfI7FqGI+PRwWWL1 DoYfijstgZ0L2RPjQh6Qgt6PgO8pP+jZtbyO0MKH6O+ACocQrA6RZykvS/ZiOPua+xW GvhqOh6+HgCW5uYDoWl0rserNH+YHcqzxSB6tJsW/pJVSpaGTGmlLsPBGApxJXlUHxU xax+rTeXX1IJ120smYgFC47KmKtCUoptkpTFDkjCxDdbqPAWxJE09GER5yB4GGw/VGF 2Ni6tCgWYkmK2Ysi0MlXC5Zms5qA22i7tlDuCqw+TnHBaSLHTQ/g==
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=dk12062016; d=earthlink.net; b=KCKT+5ksGtMUqPV0CgRWx0zduwHyjZdoE0GtFmbaX6t2xBMxyx1ohLXUVguWwmSM9+v8B2Ip5++68SHUxA/QR1tLWS9PJ+SmzJBKE/FgFcW5e2tmA9jEiEzIuY9NtWhKU8gxQ5lSY2AH77RAi+iAhGCpapJ6LTXyHEwa6rQb676ovSh9tHQJ6Iqmtt0So3pJ5Tp+AbqWb9/hbRYRZZT9+ue4kaWHd5QGnHXay70y1LC/9weFKjce6Ltsw9l9aHD4ff4rixfiZ+qVBS3nJyXFIWEWPw2G5E46VFq4TLDaMM2FN6MCbT/gkaNlkZ+H5GlDom08WtJEH5Xh6JnHkULgTQ==; h=Received:To:From:Subject:Date:MIME-Version:Content-Type:Message-ID:X-ELNK-Trace:X-Originating-IP;
Received: from [107.92.56.110] (helo=[10.169.158.27]) by elasmtp-mealy.atl.sa.earthlink.net with esmtpa (Exim 4) (envelope-from <tglassey@earthlink.net>) id 1hZtZf-0007DK-6L; Sun, 09 Jun 2019 04:53:11 -0400
To: Danny Mayer <mayer@ntp.org>, ntp@ietf.org
From: "tglassey@earthlink.net" <tglassey@earthlink.net>
Date: Sun, 09 Jun 2019 11:53:08 +0300
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_Part_0_1560070388864"
Message-ID: <E1hZtZf-0007DK-6L@elasmtp-mealy.atl.sa.earthlink.net>
X-ELNK-Trace: 01b7a7e171bdf5911aa676d7e74259b7b3291a7d08dfec797322a2903a97c79852b32f115e00dab4350badd9bab72f9c350badd9bab72f9c350badd9bab72f9c
X-Originating-IP: 107.92.56.110
Archived-At: <https://mailarchive.ietf.org/arch/msg/ntp/WUxGjkuW22YoHaD29G8eoIAon2I>
Subject: Re: [Ntp] NTS IANA request
X-BeenThere: ntp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <ntp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ntp>, <mailto:ntp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ntp/>
List-Post: <mailto:ntp@ietf.org>
List-Help: <mailto:ntp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ntp>, <mailto:ntp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 09 Jun 2019 08:53:15 -0000

Publish a letter from the group to firewall, security managers and auditors explaining this. the commercial users will move within a year or two at max.  Make it a IETF security notice BCP document as well.

//tsg


Sent from my HTC, so please excuse any typos.

----- Reply message -----
From: "Danny Mayer" <mayer@ntp.org>
To: <ntp@ietf.org>
Subject: [Ntp] NTS IANA request
Date: Fri, Jun 7, 2019 17:31

On 6/6/19 2:28 PM, Daniel Franke wrote:
> As a slight tangent, we never concluded the discussion as to what
> we're going to do about the fact that so many ISPs are dropping
> 123/udp traffic with payloads larger than 48 bytes. I think we got as
> far as concluding:
>
> 1. We're never going to persuade enough ISPs to change their policy,
> making 123/udp basically doomed.
> 2. NTS-KE's port negotiation record gives us all the mechanism we need
> in order to run NTP-with-NTS over an alternate port.

We do what we did for EDNS0, get the firewall folks to change their
policies to allow for larger payloads. It will takes years but firewall
people have to move with changes as they happen.

Danny


_______________________________________________
ntp mailing list
ntp@ietf.org
https://www.ietf.org/mailman/listinfo/ntp