Stefan Tauner wrote:
1. my university has a few timeservers (two with dcf77) but they are
only reachable inside the campus net or via vpn.
no problems so far, i am just interested in experiences/thoughts
with/about vpns (client is called vpnc, terminator is from cisco, it
uses a tun interface under linux)

Are you saying that your pool server's time is obtained over a VPN?

I'm not sure this is wise, for two reasons:

(a) The encryption layer within the VPN will not provide a symmetric time delay, so your own idea of time will necessarily wander.

(b) You're running a public facing server also with an established VPN tunnel. If your server is compromised it provides an easy route into your University's internal network.

Chris
_______________________________________________
timekeepers mailing list
[email protected]
https://fortytwo.ch/mailman/cgi-bin/listinfo/timekeepers

Reply via email to