[ntpwg] DNSSEC in names vs. numbers for NTP server information in DHCP

Shane Kerr Shane_Kerr at isc.org
Wed Nov 28 00:42:55 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

All,

I was reading the long, long, long thread(s) about putting NTP information into
DHCP, and the focus on whether DHCP servers should provide names or IP addresses
for NTP servers.

It occurs to me that DNSSEC requires accurate time. So, we have a bit of a
bootstrapping issue if we ever decide to secure DNS zones that contain NTP
servers in them and expect clients to use the server names to find them.

It seems like we have to provide IP addresses for NTP servers for this reason.

- --
Shane
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFHTLmLMsfZxBO4kbQRAvdVAJ4j3CdU7WOIobV7/1shw6nNaX+j9wCfQgY9
Tu1+WtSfMikoNqked4ceQxc=
=WxZu
-----END PGP SIGNATURE-----


More information about the ntpwg mailing list