Eric S. Raymond via devel writes: > Achim Gratz via devel <devel@ntpsec.org>: >> However, there is still value in the knowledge of which interface the >> packet came in so that ntpd can place different levels of trust >> depending on whether it's from a private (virtual) network segement, an >> internal or public network. > > If I'm following the argument, this exactly what oacket filter should do.
I don't quite follow how you propose to do that with a packet filter? At least I'm not aware of any packet filter that makes trust decisions that are not binary. >> Also, this information would potentially be >> quite valuable to get a better grip on asymmetric network delays, which >> are dominating the residual timing error on many types of networks these >> days. > > How? Can you explain that more? Provided you somehow route the packets from different networks to different (virtual) interfaces, you could measure and eventually compensate the asymmetry associated with that particular network provided you have some trusted time server on each side of the asymmetry. Regards, Achim. -- +<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+ Waldorf MIDI Implementation & additional documentation: http://Synth.Stromeko.net/Downloads.html#WaldorfDocs _______________________________________________ devel mailing list devel@ntpsec.org http://lists.ntpsec.org/mailman/listinfo/devel