Re: [Ntp] WGLC: draft-ietf-ntp-using-nts-for-ntp

Marcus Dansarie <marcus@dansarie.se> Tue, 11 December 2018 16:19 UTC

Return-Path: <marcus.dansarie.nilsson@gmail.com>
X-Original-To: ntp@ietfa.amsl.com
Delivered-To: ntp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D94D5130E2A for <ntp@ietfa.amsl.com>; Tue, 11 Dec 2018 08:19:08 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.649
X-Spam-Level:
X-Spam-Status: No, score=-1.649 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.25, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8uZ_Rn8tLbKS for <ntp@ietfa.amsl.com>; Tue, 11 Dec 2018 08:19:01 -0800 (PST)
Received: from mail-lj1-x235.google.com (mail-lj1-x235.google.com [IPv6:2a00:1450:4864:20::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8184A130E27 for <ntp@ietf.org>; Tue, 11 Dec 2018 08:18:58 -0800 (PST)
Received: by mail-lj1-x235.google.com with SMTP id c19-v6so13501957lja.5 for <ntp@ietf.org>; Tue, 11 Dec 2018 08:18:58 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=sender:subject:to:references:from:openpgp:autocrypt:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=wHwWeFozPysFYnvAexcQv8GHEYoKNyI4a7MlP7K+ij4=; b=j5PncY0oCfsbA/hXEjsb00BEuSnTUf1h0sqjB5cHZvoKTNmInJu+VI9qCO/ZeQcBS5 H5PQqCELY0QPYiho0MU9vSgUxhvzpQal79nSrpXhOoch3ot/JxULNJNhQtK4CJ3wdCIe GJ4aK4uCbUaHs+4PcxmrYAIHa0uCzEhrebdQc+BiA7iu1QYmgkYRNZeG9AYqdBzj8Vio 8piUFE9IIq/lHrZGTNTkjj/lsqYXQx+uoIVlnXuNTEHOxyzKMzbPOk2I4ROBZgzwAmKv huc5V52KLYbcXmiZ8qIYZLZ8PFuq6K90I/7v2BviniDCnuvLZWUoPPC8L/2mbjgtiNYL 0geA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:sender:subject:to:references:from:openpgp :autocrypt:message-id:date:user-agent:mime-version:in-reply-to :content-language:content-transfer-encoding; bh=wHwWeFozPysFYnvAexcQv8GHEYoKNyI4a7MlP7K+ij4=; b=KBJj+wlY+ocE0J9qmqW6QkaVH2NJYv5IVXRO8oNIK/yqVg0WsrTsWQhI1flHVbHgiG +svd1g/3xZcval18ZdQNZT0IfCNJTXHQmF+0E+JaeoIgasqa4lqlFpdYBZUD82Hf8z0U LoOxzIpO5Ey1J+87x1DkJvwUvBfIKHFZIzYl6P9JMw2bVLUndUcgwmDEzNu9TKxwxLGF +Xvow5OrxbJAalET3LlXbAulVMW9BxL6FHTKsf6polnQnOcrl98VPCFHqUgeDGETvqnw v+QN6HqLNUsiXOg8eUiZhq5MVQBDi2W38QcSyfqStPSdA1kLIGdReuFWsCT4sx44Jjfu Kt/w==
X-Gm-Message-State: AA+aEWYGDYniFjLnig9l88cZMTiGDg72iimK1qys5r04W0yEwVuV9DvC tntSLsdtaoeQAjhVNzFh8Ja54/2X+Tc=
X-Google-Smtp-Source: AFSGD/UimoeR91Zmj6kZcPESS+EGgKTYGakfeO2HMH5ElILOsb/5BfRnbzn9GChCZBoUuQrkF6KExw==
X-Received: by 2002:a2e:9957:: with SMTP id r23-v6mr9784613ljj.98.1544545136382; Tue, 11 Dec 2018 08:18:56 -0800 (PST)
Received: from [10.0.0.126] ([185.40.184.26]) by smtp.gmail.com with ESMTPSA id n16sm2699147lfl.35.2018.12.11.08.18.55 for <ntp@ietf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 11 Dec 2018 08:18:55 -0800 (PST)
Sender: Marcus Dansarie <marcus.dansarie.nilsson@gmail.com>
To: "ntp@ietf.org" <ntp@ietf.org>
References: <FF5E07A6-6F59-4D45-A186-7FC7C9B4A41C@isoc.org> <0805badf-b411-a0f7-e1ae-b94b4581a86c@dansarie.se> <07E2892F-AD50-4585-AD43-8886FDAD776F@gmail.com>
From: Marcus Dansarie <marcus@dansarie.se>
Openpgp: preference=signencrypt
Autocrypt: addr=marcus@dansarie.se; prefer-encrypt=mutual; keydata= mQINBFawEn4BEAC8YukDy8f3eczlE8WAcuctrjsNltPCLZDzcj3vBmiayXlXuPULOopqeuw4 +oaZqj4KqvdFBA1mzvwPll7IHePuwAoJYJr48IbIXc9MRjtLoFtd0KnhiVPUS8F2cmfzSJ8E FEv92sz6UT8/tlLEu6sNqr6/caYUivspuW5wf4f6nkSE+6rao9Nx9X03r289IPNBSZv+Y/Ym jWHDPpbT8WLUJZ+A8RsW/1oza609oAzqTkclmnRzip8wZZWNg3Q55P7onBmTIOrEz13My9r5 DWCMHyxXgFL1RJ9YW0t4yRkRm+HvOn3Vesk3m8CCGA6esHV0IPZmBOxJr3l+UQYuDiTgFufr WMpu5MvlyKGHS4fNd505DyyJY2G6eQLLrOq3nZy4qoZSL42TMxzYglexg+H6P/YsIIShk5Ch h/hNphXjrElDWhbGT5JiRWIivgSj/gq5QVBbDLR3b25n9PA0byGemfcEHLkii6EKyH7GW6v9 sgmvCmPfEfppYcOP2g9Jdt8RPitx0UBjoCzWAn0Py0NvlFDyz0FQhWDPig3yo1CG5ljb686v VBwcHJthczUV0rIyVzfmnikIb9ZjydHSX3fFwLz1IcIIX+INS58qA0SDqOoyP2WTYGZCDPVw GMMh+wMtAL2MICTr6vybFWB58m4PsI1j8Ri+AQiEkxyJauI2WQARAQABtCRNYXJjdXMgRGFu c2FyaWUgPG1hcmN1c0BkYW5zYXJpZS5zZT6JAkUEEwEIAC8CGwMCHgECF4ACGQEJCwkNCAwH CwoEBhUKCQgLAgUWAwIBAAUCWkqmHAUJBXvHHgAKCRAvY+f+raTwY6zwD/sEuXIeNbM8hhBr E5LMZFFhpVKzbToKlPifWO9SbChgDkSYx4SqrLqwD1oA6DkDK5NHO/Jj++QCN68jaOCIsT8v n++1mxHRWxEzC65I/WTLAxeLBswm9qfdpObC9ZXNSdyN+AXqzzTJR/GpUawDVe6Cc0RlYaFT 4crQHFNKYJ6lh7/xiDzWghsSKL2DuZzGdcxkMhMYFcHo26OK91OlykdfpwRT4Oe59QhBuzp+ +d76B5lCYD0QBcDRlj1pexgOcSYHPvwsdBsDL7CxHpmeEQe9RmGsGEwV+PEgXGzJr8YpSXVz 5dCR8bRAjmJZFnfiB98L1aO7lz/1Mp+OgS4vkNLLzbB4absm+Mw/s5mwDsVu3982ywJX5qoj yYySvN7YOEloUQ90aNwqMZ7s2J0rEdUvHtHLXUv5ZHwhYWt9XENiVyPyrAT58VDtHorQzBqg mj0jgaQPOBrGw6Ow1RyL046e1mYiwZYHbHoECejDCuUVQZsb8NJnKxf39YIeM02vSD3+oSfG wcEomD569XdUYqq/Y2dR7s34eteyFEQtUTZ/qRMU5x/Fw3M5zMwWEPVK7uRXySxp+jxXg3YY wNjcWC0h+YEpdhZOoWyfdaP4ZXWQSZu3wj0USsX0Ld2t7lHBkr7xm2TDU9wtH7dQwBcmIGUO T+3GvA/bGbIj1hAZNUV3q7kCDQRWsBKsARAApSTo9czkEzERsyyv9PLRHcEeBMAQ4ljXItCb Y0+fcbSXZRro7n//cJLfYUSIgC6rfFNLx8As5sVUzxLnnsL+NFjq2ic8w7+jgVyWTHhfiDdf whq2XJ/KyxvSdQsslX/oAsVFF5qUA5RPdYmDAeIn43U004s0Z1WDkIeeE1dMsoi9m5/mXS/D WDaVG6aBtr6aZbbdDV7/Ym/Vj7oPUPEsd9wpJAo9xRySx3h6qOgJBU6QXUp+vxM7PmR6boTQ h7a2coiTotmGfBM6bsQ8FYxy4fIl7tGppV0hj+cAOzKTRLaJoRsN21K92gXHp30uLv0RN1f8 vr12nt9y7VZmh+7JYtEpqz/IlMZJLNqo7Uultmv6hcZRyvxVwQoTSBtLkUTrw5SLnYOlB80J SuJgXa2hs+HrXw6bDQF9MebLMQU2hayZWc/d+Rjy0bIOKOX/hWHEKyGRorHwpoh/K3RdW5M+ OdPzsn80u5UwqMXoszp5WplcFAk361mof5fAV4D/4mOipWxqX6+2lWLwOXu3z3u7kasz7Mau 6S+9q96f05Dbj7Se3G0oTffae7/79/Ek0ieI288tlizARcOXSSO917UhlNoP74mYFX5eE66O F3mDBfxZkQ4mHHfhqbg6AfoPjSWKRkRp6+PhoFpfVGApzdUxPS0qb3ob7yjLxqotFNRDTlMA EQEAAYkERAQYAQgADwIbAgUCWH7TMwUJA5rcBwIpwV0gBBkBCAAGBQJWsBKsAAoJEMEIAA7D 4SHmu1gP/A15k6i/7SvCGzN8P4hj18jioVSO6IpZHTp8nrQdXtxK2QNbpa2sX42RQDAfkbTK sD6LPIj3C1Hivk5bmu49ZNFsfE6awt9GeqHh0pTq4K+2gv4s3MAzI85GJmTOiY5ooA922JWA QJW6kuwCkOXi0jaGkxgqZ5NW56yxdrzegY6Ly5AYr8znsqjPbQo98uW0kGwJw7Ch8JR1uZo8 6U38Oyk5oh4tbM3upvenMC5SW0EK9UjdVGCq9+HolKIbJpJR+OCF9u3PS4CVnjBJ8dfb4jD7 X/2aUSVmOQLLpCDEJvW8yoZLDm7n3poZWbubbNUYufj/GGkU1vEdTBat78AAy0lHkBIrdyrZ q7VTas6Nrd+tF/My4GpOtAZv45wJp6xo6yx3u35GYMp+/S7jTPqWz0zNq/4EJfN86dvcc0CA kTkL/EClOx3GGfkFmjEfLw3Y9zR6ZZ7okjlQM+Uqm7AfokMqstqgeETsbLZTqKKdByAjkgQR rzCbChZ+SNTmmFNtlUcn7JM55lZxsm3IUhfXx9vPKtlaC6jURYe5u/fcqpuInqSWl+DlyHAp dZkiUuZuK+kO/QpHJuTkYH5fzc6l4Af10pPeS9y7qaJ2mmMXNqRIiJqhIkNL2NypBgSJEbvW WcPtB0KiqNt8dmHwdcZhJt6cPOKxYhGi4ayKY7J5JpfpCRAvY+f+raTwY+2QD/sEqt/Mi8Uq LlPJV7NBnXa8APBMyTISLha5pKH68qtvRQy7acTTxHmau3ZA1qUdRyfxwEEZIvubljSSAzPW yYycwLmLaeTBuquEY7UAsPkc3rV9y4ZNXoAZzSz30FpzM6AcZmSzUvNzes+X6hHJf8VmN4Oj GWGmGbRAmo74AyXzIFQxTqREkJ1kPwHR8Rt3lPgtY4Dhj77G0Mk/rzTZvVPPszS2yZ2If3Qq ZIM8FsbgDt6i01ekWR7rVgycKiFhQBUo4b20BbeZmeaZ+xUPqvZMsOOnUz7XZT819sLT6UV9 nZzZ+KmCAzfqu86xtf/q2GHmfcW2F6S3Q1ShaVtWKIVHuj7Y5RfxX2vg7ZkeRKVDzYfcYWv1 dZgpQmilVmIEp0RkNvRWsTaoBOuFos3gTMr+N2ET6UrmqqIlbHZBZQEpv9+L2+ZxqNNj4MTt 4amI2iLGihwfTwMHKKZxIqISzMER80nKFVgzQpZDXnQQMzCIkJF1Cilyxlw5wYqFoyRUmZ+W kmKxD6mmVRN4rmxdQevmRfMsNb3gFhK3bYQQU4sCtUbQvDNQkb+vikYFKsMXNp0x+RHTdqz7 a2b2J2QKOsWSYYSo9XXdWBn6FiF9nz45C55FDtXQZAW9ba3JlNTw8F8AG4ig77wCdSMqfoYV My+3MEoEMbfOzqc8l4iD3063AYkERAQYAQgADwIbAgUCWkqmOAUJBXvHDAIpwV0gBBkBCAAG BQJWsBKsAAoJEMEIAA7D4SHmu1gP/A15k6i/7SvCGzN8P4hj18jioVSO6IpZHTp8nrQdXtxK 2QNbpa2sX42RQDAfkbTKsD6LPIj3C1Hivk5bmu49ZNFsfE6awt9GeqHh0pTq4K+2gv4s3MAz I85GJmTOiY5ooA922JWAQJW6kuwCkOXi0jaGkxgqZ5NW56yxdrzegY6Ly5AYr8znsqjPbQo9 8uW0kGwJw7Ch8JR1uZo86U38Oyk5oh4tbM3upvenMC5SW0EK9UjdVGCq9+HolKIbJpJR+OCF 9u3PS4CVnjBJ8dfb4jD7X/2aUSVmOQLLpCDEJvW8yoZLDm7n3poZWbubbNUYufj/GGkU1vEd TBat78AAy0lHkBIrdyrZq7VTas6Nrd+tF/My4GpOtAZv45wJp6xo6yx3u35GYMp+/S7jTPqW z0zNq/4EJfN86dvcc0CAkTkL/EClOx3GGfkFmjEfLw3Y9zR6ZZ7okjlQM+Uqm7AfokMqstqg eETsbLZTqKKdByAjkgQRrzCbChZ+SNTmmFNtlUcn7JM55lZxsm3IUhfXx9vPKtlaC6jURYe5 u/fcqpuInqSWl+DlyHApdZkiUuZuK+kO/QpHJuTkYH5fzc6l4Af10pPeS9y7qaJ2mmMXNqRI iJqhIkNL2NypBgSJEbvWWcPtB0KiqNt8dmHwdcZhJt6cPOKxYhGi4ayKY7J5JpfpCRAvY+f+ raTwY8QcD/9XUx8phbJaqpZpIEsay2OsXk0I0MFlmKqgHhi1YgLZoNk6UzqT+/GDrHsBN7lY j5wHtBHLONS7/CbYgyHh1JnuIxRBp2VM4bd7TXpmFpf6fDI4n5JFE5t0ThzXoB8fLY+7Onyl sszvfz83VGEYrmJNKCLKezjvj6JiuUfeImAjT8syGgxXzX+eSjJWegW+nQ/EWqBF6TfqhxgO bb14pbEelbAxdAe6rY+eXsB2B3UNlQz/OPiOykvdi5PCQjhGDI54ogLT7kH5jznouf1zCkC9 NQpHTQVGI/gYR9+VbRAcLKvyiI6it0JA92GZDqmGhmq4GJrHCJfhFW9wh4F0faaHoyqFbOu/ 5gfmfysMoedLx5GAeU03NTedmPs2g4DsAdyh+FdUn/Q5lX/VrsR5IbIO0p0I8E7+A1yE6xNq zDjbBOkxLj3uyOcmx70kQSO9l0H5T+dHUFvJqLzG3BQ6otBB7w8lNlBDTRguUeHNcMhvot1G zJBt++8Jpp1TY3IEuNlMiBpL+iPqgViqyReDsjmVaJbtP/7XM+lZLTM+LVvkFQgt+t3r2NgA ZEj91zKYOsPB1V/0USeGkpoir6BXVPvg2WOunEd3QxkxElNsGH9uxfadNgSS4bn9tib2TGy/ urm1fULsuIOiJR6vMQ1fjjJoPnM8b6dkHSQ7y3+PiPhTpbkCDQRWsBLLARAAyxyKDIPLq3FD 9xQTw/5L3Mw81uxNKpreLKPRJESzDGYmytSi77I639jhTEZf4ktz/OMjX5+tYTfcI2a5xgy2 tlKvGBAOn5anwCTtQ1CUG1EiN1w+qYAQXOAb04/sh/swlkx5ZV3jvJshhQqiG5N0WDAlIXzR /4MYsuMhyHJVlu/JlZJAogDF9q+ZmvUI0RVhfKsvvnastUH4qdCAloWocU+npw79jbRWIX1C wtG2Wt5/VWvG10+4guEQoyaZz5lGwOEnRXwyLmrylZxhavP4mJVHIDVQsCGDoLbKmPVwU2dD I3bZem1dvPrztuplDFqvnHIABXgPqL/yrWQ2BKxsOr5eRa4aNL2Sa8sYz2QYBE2EwU2C4lKB J+pkTE8AmEJniFVuhMoWhFHXTjzauU7KPRVrQZuakap+2M2h0DiaOkGLnak3KZQX6zp5OTXc v0M44nx3T7ZB3p7i5N41cmE1bqDaXtvl239tscyVruGCpEpS1OpBFHYkKk/e8Xiwdaddh0Rw lIAJqsFzFt93BkGcX03C/saI1MQSDs77yrCWPXotMHyg1aM7AAeKqDTFCUvwlPPauRfSBQhb UfL0DpvpSKRWJFuakdeDSzvfrhe3GOKaQoPwNWcLk0kOLBnO2obaJbuTEmd8D54AKUoSH6eJ mjk2mNY1R+GNRczkM1Ue1yEAEQEAAYkCJQQYAQgADwIbDAUCWH7TMwUJA5rb6AAKCRAvY+f+ raTwY9jcD/49jEB5A1YjXzIfNXhJjFH/7jpL6lk8xfK8dDD6e1OsOEqu6l7Ito+7HrDgn7RV urrWXTehCQ95R/uUeXAErHIVAPWt32lm9umB+lDB8KXL6sh3WbavQdzk4UE/hpOKPDX+assu u7GI3ZXY0UzhsRIz1gw6LoZVUqvYIP8S2y+bfDSWkqjwU5ExAi5cuGH8k/LUIbpdb1ALggia kPi+hXRtfGikiw3UY7LtCv5MjkeWL43Prj0w0kdWyWup+/KunI3DsjcvSVvr1nWpuVwQm8WA FfOf85+qL8ACB+2aknGuHot948UcJvSaTbYMFk0HPUVDfDPpUlBmVMZft1Akxa2EGK877uM6 +gC9roB7BF8b/CyEx3QnpvDK53iCns1qaLjL3P8sRJF+K7bHJm0k58BpDH5Yg1Ia8h4ihPEs U0FQznREdR28xsFHzC7NfdDhYTCRNFee4AVB3MDmfdBOiPprAhusSa/h2Q1w3GjBQtI30Pr2 ZaVl9TVvFE/uIQtheW8MQgRgSOqwV6JVg8Cu/Tt+88C2ngLGAp2ty6rZ6xUcKr1gup/OkX8o MIwDmFFKrnz9GBEBh6FHBz27wHANojHN6KJAPRpIY1SClBxIn/vkGdhlL9cgQgieMP3LixbQ BdBhTJWHjiWh+HZzuFuLkh+wpraJEbvsmPPMSPfnjsMrmokCJQQYAQgADwIbDAUCWkqmOAUJ BXvG7QAKCRAvY+f+raTwY1BFD/0e1Vr993CDFGjTJFO24O14xp6JY5L9b80LNqOvBeLnIgF+ HssKxP8Vh0CWCMO7EAA1dAIq8iBzWLlqTQ4xnMuiIXA/y5HP7noVIWNxUBu8tnHZU/1mlN5Z tCE2rLJ8VjN2Wz4zyi0xnKjALkLflmK751YDZvctgRmx3ous1k8LpZwKrzL8NYeLmG5uAENk tz/FI2RLIjijfogdaSvZKBOMe6Gqtb9WdzoMP9kKj6uEqwWUoZB19Jy6rTxB0jjoAwkXvHjT WaoqDlSPyldsDsCXF4FeYOpq53N59yugLl3xN0UUQscAczYdUgONeTL5SY+2ILtwTRgWPO2S SOC88PPHQMK2XhZqCHiVXMU7BYbXGVXqV62/1gpWTw+5IAiIo4LqlWY7oQiuc+BL/z0p0Vap Boexa7rTa3T1ytqhpeQzqDLtkEVlYv+LQ6qB3cRtCNmNAi3nwmzKnElumimz0f9fsbhNMMAC 6DQnksB74rakgyNLZSaCCqt9lb2tPHYF+NPGqFxSW8r62yrRUNx2phvFO2j/B1f0NMm7h7PN qbkNv0b9nQPf2MSYMTavN2EZ4/vfhAfOf07Z55ahpA+zfAfeQvrEPY2JutdET4jpa9xtSuoe S3LbYs7Sy2OUpbmIWM/pCo9OUZsMxbWgn1x1A/LEWElPx4HioOlW6SnYvKOiOw==
Message-ID: <a017887b-3eac-7c18-ef41-e33ddd715caa@dansarie.se>
Date: Tue, 11 Dec 2018 17:18:54 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.2.1
MIME-Version: 1.0
In-Reply-To: <07E2892F-AD50-4585-AD43-8886FDAD776F@gmail.com>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ntp/j4PycTfM8-v-AlELLJGk0w0CO08>
Subject: Re: [Ntp] WGLC: draft-ietf-ntp-using-nts-for-ntp
X-BeenThere: ntp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <ntp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ntp>, <mailto:ntp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ntp/>
List-Post: <mailto:ntp@ietf.org>
List-Help: <mailto:ntp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ntp>, <mailto:ntp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Dec 2018 16:19:09 -0000

Thank you! My replies follow inline.

Kind regards,
Marcus


On 2018-12-10 23:08, Dieter Sibold wrote:
> Hi Marcus,
> here are my comments for pull request #15
> 
> 
> 
> 077f0da6
> The current documents translates correctly without any errors.
> Therefore, I would imply that the additional section closing tag is one
> too much.

This appears to have been due to an error on my end. My apologies.

> ---------------------
> a7c4f563
> I don't get why you want to relax this requirement. Please explain.

There may be some (weird) cases where a user wishes to manually instruct
their NTP client to use the received cookies with a different NTP
server. I also believe SHALL should be reserved for cases where
non-compliance could cause security issues or cause the protocol to
break. This is not an important issue for me, however, and I'll be
perfectly happy even if this isn't included.

> ---------------------
> 2b436df8
> I agree in principal. I suggest following changes
> 
> ### original
>         <t>
>           Implementers must be aware of the possibility of "NTS stripping"
>           attacks, where an attacker tricks clients into reverting to plain
>           NTP. Naive client implementations might, for example, revert
>           automatically if the NTS-KE handshake fails. A man-in-the-middle
>           attacker can easily cause this to happen. Even clients that
> already
>           hold valid cookies can be vulnerable, since an attacker can
> force a
>           client to reperform the NTS-KE handshake by sending faked NTP
> mode 4
>           replies with the NTS NAK kiss code. Forcing a client to
> reperform the
>           NTS-KE handshake can also be the first step in more advanced
> attacks.
>         </t>
> 
> ### new
>         <t>
>           Implementers must be aware of the possibility of "NTS stripping"
>           attacks, where an attacker tricks clients into reverting to plain
>           NTP. Naive client implementations might, for example, revert
>           automatically to plain NTP if the NTS-KE handshake fails. A
> man-in-the-middle
>           attacker can easily cause this to happen. Even clients that
> already
>           hold valid cookies can be vulnerable, since an attacker can
> force a
>           client to repeat the NTS-KE handshake by sending faked NTP mode 4
>           replies with the NTS NAK kiss code. Forcing a client to repeat
> the
>           NTS-KE handshake can also be the first step in more advanced
> attacks.
>         </t>
> 

Ok.