Great Circle Associates Firewalls
(April 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Feeping Creaturism in routers (was Re: Response to Satan)
From: Richard Threadgill <richardt @ remarque . berkeley . edu>
Date: Mon, 03 Apr 1995 13:51:04 -0700
To: estutes @ frus . com
Cc: fitz @ wang . com, firewalls @ greatcircle . com
In-reply-to: <m0rveWX-00019OC @ eas>
References: Your message of "Mon, 3 Apr 1995 00:05:41 -0400"

> In our case, we need NTP running on the net because we need to
> syncronize our router and the authentication server, and in one case
> they are 1500 miles apart and the only way to keep them in sync is
> NTP.
 
This is the strongest reason to not run ntp on your firewall router.
Why do you consider the incoming ntp stream trustworthy?  (Not to cast
doubt upon the NTP project, but there are *lots* of interesting attacks 
on authentication systems which depend on perverting their clock).  I would
strongly recommend that if you are planning on using clock-based authentication
schemes (eg, kerberos), you make sure that the clock is fundamentally internal.
An atomic or radio clock on your premises is fairly unlikely to be compromised;
an external ntp clock is not so blessed.

RichardT


Follow-Ups:
References:
Indexed By Date Previous: Re: ccMail SMTP Gateway
From: Ron DuFresne <dufresne @ winternet . com>
Next: X.25 Security and Firewalls
From: Kenneth Martig <martig @ zgi . com>
Indexed By Thread Previous: Re: Feeping Creaturism in routers (was Re: Response to Satan)
From: Earl Stutes <estutes @ eas . westend . frus . com>
Next: Re: Feeping Creaturism in routers (was Re: Response to Satan)
From: Earl Stutes <estutes @ eas . westend . frus . com>

Google
 
Search Internet Search www.greatcircle.com