On Fri, Aug 10, 2007 at 01:25:15PM +0200, Adrian von Bidder wrote:

||  On Friday 10 August 2007 11.59:22 Vincent Zweije wrote:
||  > This is just another demonstration that it's not a good idea to put
||  > intelligence into the network.  The network should be a dumb bitshoving
||  > medium.  Put the intelligence into the hosts.
||
||  Hmm.  Central adminitration of all pool.ntp.org servers via ntpd's remote
||  configuration facility might be one way, allowing things like "instantly"
||  disallowing service for ttnet etc.  But I very much doubt many timeserver
||  operators would be prepared to go that way.

True.  However, it might be possible to disallow ttnet clients to find out
where the NTP servers are in the first place with suitable DNS hacking.
I expect server operators to have far fewer problems with that.

||  ("Move the intelligence to the host" can only be done by making the ntp
||  server more clever.  The ntp clients are just outside of our sphere of
||  influence.  Or, of course, by improving the part of the DNS which is under
||  our control, which is work in progress.)

I didn't mean specifically making the NTP servers more clever, but
making the routers dumber, and moving their intelligence (access control)
to the NTP server hosts.

Ceteram censeo NAT esse delendam.  Go IPv6!  But I digress.  Again.

Ciao.                                                             Vincent.
-- 
Vincent Zweije <[EMAIL PROTECTED]>    | "If you're flamed in a group you
<http://www.xs4all.nl/~zweije/>      | don't read, does anybody get burnt?"
[Xhost should be taken out and shot] |            -- Paul Tomblin on a.s.r.

Attachment: signature.asc
Description: Digital signature

_______________________________________________
timekeepers mailing list
[email protected]
https://fortytwo.ch/mailman/cgi-bin/listinfo/timekeepers

Reply via email to