> As an authentication protocol, it looks vulnerable to a time
> synchronization attack: an attacker that can desynchronize the server
> and client's clocks predictably can block the client's authentication
> and use it as his own.  (Assuming the server's clock is monotonically

I don't see where the client's time is used. What am I missing?


