Re: [ntpwg] New Version Notification for draft-ietf-ntp-network-time-security-12.txt and draft-ietf-ntp-using-nts-for-ntp-03.txt

Danny Mayer <mayer@ntp.org> Mon, 21 December 2015 20:20 UTC

Return-Path: <ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org>
X-Original-To: ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com
Delivered-To: ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5C78A1ACCF3 for <ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com>; Mon, 21 Dec 2015 12:20:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.91
X-Spam-Level:
X-Spam-Status: No, score=-6.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id veWbaMH0ptVc for <ietfarch-ntp-archives-ahFae6za@ietfa.amsl.com>; Mon, 21 Dec 2015 12:20:24 -0800 (PST)
Received: from lists.ntp.org (lists.ntp.org [149.20.68.7]) by ietfa.amsl.com (Postfix) with ESMTP id F065D1ACCF9 for <ntp-archives-ahFae6za@lists.ietf.org>; Mon, 21 Dec 2015 12:20:17 -0800 (PST)
Received: from lists.ntp.org (lists.ntp.org [149.20.68.7]) by lists.ntp.org (Postfix) with ESMTP id E555386DB27 for <ntp-archives-ahFae6za@lists.ietf.org>; Mon, 21 Dec 2015 20:20:17 +0000 (UTC)
X-Original-To: ntpwg@lists.ntp.org
Delivered-To: ntpwg@lists.ntp.org
Received: from mail1.ntp.org (mail1.ntp.org [IPv6:2001:4f8:fff7:1::5]) by lists.ntp.org (Postfix) with ESMTP id 22FFA86D9B3 for <ntpwg@lists.ntp.org>; Mon, 21 Dec 2015 20:11:20 +0000 (UTC)
Received: from pool-71-174-223-18.bstnma.east.verizon.net ([71.174.223.18] helo=[10.10.10.102]) by mail1.ntp.org with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.77 (FreeBSD)) (envelope-from <mayer@ntp.org>) id 1aB6nf-000NtH-Ar; Mon, 21 Dec 2015 20:11:20 +0000
References: <OFDECED69B.3FA71F92-ONC1257F22.0063AA4C-C1257F22.006401FE@ptb.de>
To: dieter.sibold@ptb.de, ntpwg@lists.ntp.org
From: Danny Mayer <mayer@ntp.org>
X-Enigmail-Draft-Status: N1110
Organization: NTP
Message-ID: <56785CE5.6080102@ntp.org>
Date: Mon, 21 Dec 2015 15:11:17 -0500
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:38.0) Gecko/20100101 Thunderbird/38.4.0
MIME-Version: 1.0
In-Reply-To: <OFDECED69B.3FA71F92-ONC1257F22.0063AA4C-C1257F22.006401FE@ptb.de>
X-SA-Exim-Connect-IP: 71.174.223.18
X-SA-Exim-Rcpt-To: ntpwg@lists.ntp.org, dieter.sibold@ptb.de
X-SA-Exim-Mail-From: mayer@ntp.org
X-SA-Exim-Version: 4.2
X-SA-Exim-Scanned: Yes (on mail1.ntp.org)
Subject: Re: [ntpwg] New Version Notification for draft-ietf-ntp-network-time-security-12.txt and draft-ietf-ntp-using-nts-for-ntp-03.txt
X-BeenThere: ntpwg@lists.ntp.org
X-Mailman-Version: 2.1.20
Precedence: list
List-Id: IETF Working Group for Network Time Protocol <ntpwg.lists.ntp.org>
List-Unsubscribe: <http://lists.ntp.org/options/ntpwg>, <mailto:ntpwg-request@lists.ntp.org?subject=unsubscribe>
List-Archive: <http://lists.ntp.org/pipermail/ntpwg/>
List-Post: <mailto:ntpwg@lists.ntp.org>
List-Help: <mailto:ntpwg-request@lists.ntp.org?subject=help>
List-Subscribe: <http://lists.ntp.org/listinfo/ntpwg>, <mailto:ntpwg-request@lists.ntp.org?subject=subscribe>
Reply-To: mayer@ntp.org
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org
Sender: ntpwg <ntpwg-bounces+ntp-archives-ahfae6za=lists.ietf.org@lists.ntp.org>

On 12/21/2015 1:12 PM, dieter.sibold@ptb.de wrote:
> Hi all,
> I've just submitted new versions of the drafts mentioned above. The most
> substantial change is the introduction of a MAC for the time_request
> message. Any comment is appreciated.
> 

Please don't use the existing MAC for this. It's horribly restrictive,
inflexible and impossible to extend. I'm in the process of putting
together an extension field MAC that will allow you to specify the
algorithm to be used for the hashing, you will know the length of the
MAC data and you will be able to have multiple MAC extension fields with
different algorithms. We need to get rid of the existing MAC as it
stands (though this will be gradual) and add flexibility.

Danny

_______________________________________________
ntpwg mailing list
ntpwg@lists.ntp.org
http://lists.ntp.org/listinfo/ntpwg