> From: Masataka Ohta
> Date: 2013-10-29 14:22
> To: Mark Andrews
> CC: 'Andrew Sullivan'; DNSOP; Hosnieh Rafiee; dnsext
> Subject: Re: [DNSOP] [dnsext] DNS vulnerabilities
> Mark Andrews wrote:

>>> Not necessarily. Some security protocol can safely assume
>>> clocks of related equipments are manually managed by skilled
>>> operators, which is not the case with DNS clients.
>> 
>> Most people are capable of setting the clocks on their laptops,
>> phones and other portable equiment which all should be validating
>> responses.  Most people are capable of setting clocks on their
>> desktop machines which should be validating responses.

> Because they have buttons and displays to do so, which is not
> the case for a home router as a black box.

I am wondering is it possible to provide a mechanism for people manually 
modifying the clock 
of home routers just as people setting the clock of their laptops. And in such 
mechanism, 
the clock of the home router is modified by human being while in NTP (Network 
Time Protocol) 
that is modified by a NTP server. 

> Masataka Ohta
> _______________________________________________
> DNSOP mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/dnsop



 
Guangqing Deng
CNNIC 
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to