[ntpwg] Antw: Re: New Version Notification for draft-ietf-ntp-network-time-security-12.txt and draft-ietf-ntp-using-nts-for-ntp-03.txt

"Ulrich Windl" <Ulrich.Windl@rz.uni-regensburg.de> Mon, 28 December 2015 07:52 UTC

Return-Path: <ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org>
X-Original-To: ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com
Delivered-To: ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 51EC71A8A1D for <ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com>; Sun, 27 Dec 2015 23:52:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.21
X-Spam-Level:
X-Spam-Status: No, score=-4.21 tagged_above=-999 required=5 tests=[BAYES_50=0.8, RCVD_IN_DNSWL_HI=-5, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ealaoIbU-1aG for <ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com>; Sun, 27 Dec 2015 23:52:25 -0800 (PST)
Received: from lists.ntp.org (lists.ntp.org [149.20.68.7]) by ietfa.amsl.com (Postfix) with ESMTP id A3B671A8A1A for <ntp-archives-ahFae6za@lists.ietf.org>; Sun, 27 Dec 2015 23:52:25 -0800 (PST)
Received: from lists.ntp.org (lists.ntp.org [149.20.68.7]) by lists.ntp.org (Postfix) with ESMTP id 74D5F86DB23 for <ntp-archives-ahFae6za@lists.ietf.org>; Mon, 28 Dec 2015 07:52:25 +0000 (UTC)
X-Original-To: ntpwg@lists.ntp.org
Delivered-To: ntpwg@lists.ntp.org
Received: from mail1.ntp.org (mail1.ntp.org [IPv6:2001:4f8:fff7:1::5]) by lists.ntp.org (Postfix) with ESMTP id 9496986DAB8; Mon, 28 Dec 2015 06:52:03 +0000 (UTC)
Received: from rrzmta1.uni-regensburg.de ([194.94.155.51]) by mail1.ntp.org with esmtps (TLSv1:CAMELLIA256-SHA:256) (Exim 4.77 (FreeBSD)) (envelope-from <Ulrich.Windl@rz.uni-regensburg.de>) id 1aDRep-000M9k-Pg; Mon, 28 Dec 2015 06:52:02 +0000
Received: from rrzmta1.uni-regensburg.de (localhost [127.0.0.1]) by localhost (Postfix) with SMTP id ED27D574C9; Mon, 28 Dec 2015 07:51:48 +0100 (CET)
Received: from gwsmtp1.uni-regensburg.de (gwsmtp1.uni-regensburg.de [132.199.5.51]) by rrzmta1.uni-regensburg.de (Postfix) with ESMTP id C4DF1363AE; Mon, 28 Dec 2015 07:51:48 +0100 (CET)
Received: from uni-regensburg-smtp1-MTA by gwsmtp1.uni-regensburg.de with Novell_GroupWise; Mon, 28 Dec 2015 07:51:48 +0100
Message-Id: <5680EA12020000A10001F6A4@gwsmtp1.uni-regensburg.de>
X-Mailer: Novell GroupWise Internet Agent 14.2.0
Date: Mon, 28 Dec 2015 07:51:46 +0100
From: Ulrich Windl <Ulrich.Windl@rz.uni-regensburg.de>
To: Danny Mayer <mayer@ntp.org>, Harlan Stenn <stenn@ntp.org>
References: <56785CE5.6080102@ntp.org> <OFDECED69B.3FA71F92-ONC1257F22.0063AA4C-C1257F22.006401FE@ptb.de> <OF3D6DD6FA.812C6BCC-ONC1257F22.00775A28-C1257F22.00775A29@ptb.de> <567877FB.7030608@ntp.org> <OF0AC1CCBA.2E240196-ONC1257F23.00313FBA-C1257F23.0033AC80@ptb.de> <5679639D.4010906@nwtime.org> <56799A3E.3020506@ntp.org> <OFB626AB50.8283A0AC-ONC1257F24.002B274D-C1257F24.002CE30C@ptb.de> <567AB392.8040008@ntp.org> <E1aBqjC-000Dx3-DH@stenn.ntp.org> <567B191C.5050801@ntp.org>
In-Reply-To: <567B191C.5050801@ntp.org>
Mime-Version: 1.0
Content-Disposition: inline
X-SA-Exim-Connect-IP: 194.94.155.51
X-SA-Exim-Rcpt-To: ntpwg-bounces+dieter.sibold=ptb.de@lists.ntp.org, ntpwg@lists.ntp.org
X-SA-Exim-Mail-From: Ulrich.Windl@rz.uni-regensburg.de
X-SA-Exim-Version: 4.2
X-SA-Exim-Scanned: Yes (on mail1.ntp.org)
Subject: [ntpwg] Antw: Re: New Version Notification for draft-ietf-ntp-network-time-security-12.txt and draft-ietf-ntp-using-nts-for-ntp-03.txt
X-BeenThere: ntpwg@lists.ntp.org
X-Mailman-Version: 2.1.20
Precedence: list
List-Id: IETF Working Group for Network Time Protocol <ntpwg.lists.ntp.org>
List-Unsubscribe: <http://lists.ntp.org/options/ntpwg>, <mailto:ntpwg-request@lists.ntp.org?subject=unsubscribe>
List-Archive: <http://lists.ntp.org/pipermail/ntpwg/>
List-Post: <mailto:ntpwg@lists.ntp.org>
List-Help: <mailto:ntpwg-request@lists.ntp.org?subject=help>
List-Subscribe: <http://lists.ntp.org/listinfo/ntpwg>, <mailto:ntpwg-request@lists.ntp.org?subject=subscribe>
Cc: ntpwg@lists.ntp.org, ntpwg-bounces+dieter.sibold=ptb.de@lists.ntp.org
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org
Sender: ntpwg <ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org>

>>> Danny Mayer <mayer@ntp.org> schrieb am 23.12.2015 um 22:58 in Nachricht
<567B191C.5050801@ntp.org>:
> On 12/23/2015 4:13 PM, Harlan Stenn wrote:
>> Danny Mayer writes:
>>> ... The problem is that a
>>> MAC extension field needs to be specified so that it can replace the
>>> existing MAC field. I'm also considering allowing for multiple MAC
>>> extension fields in a single packet so that one MAC hashing algorithm
>>> can be retired if found to be compromisable without disrupting NTP
>>> infrastructure and existing implementations. It also needs some
>>> discussion on usage by responding packets and which to use.
>> 
>> If this is a V4 thing there will be backward compatability issues.
>> 
> 
> No, not really. New code like NTS would use the new Extension Field but
> the MAC will need to be kept for older systems who won't be able to use
> NTS anyway.

Obviously in a transition period the servers need to provide both, the new MAC extension AND the old one, so old partners can ignore the MAC extension field and use the old MAC, while new partners will ignore(?) the old MAC and use the new one instead. Then the next generation can drop the old MAC. Maybe for consistency the transition version should check both MACS for consistency.

Ulrich

> 
>> I think I have an idea about how to do this so older systems might still
>> work.  It will require more research though.
> 
> The older systems won't know about the NTS stuff so it doesn't matter.
> The MAC itself can't go away until v5.
> 
> Danny
> 
> _______________________________________________
> ntpwg mailing list
> ntpwg@lists.ntp.org 
> http://lists.ntp.org/listinfo/ntpwg 




_______________________________________________
ntpwg mailing list
ntpwg@lists.ntp.org
http://lists.ntp.org/listinfo/ntpwg