[ntp:questions] Restrict vs DNS lookup

Hal Murray hal-usenet at ip-64-139-1-69.sjc.megapath.net
Mon Jun 7 08:32:09 UTC 2010


In article <hufjh0$aue$1 at news.eternal-september.org>,
 David Woolley <david at ex.djwhome.demon.invalid> writes:
>Hal Murray wrote:
>
>> 
>> Description here:
>>   http://www.eecis.udel.edu/~mills/ntp/html/accopt.html
>> 
>> Would somebody who uses restrict please check to see if this
>> does what you want.
>> 
>
>I'm not convinced that the people who try to use restrict on pool 
>servers really know what they want!  I think they are trying to blindly 
>apply a "when in doubt block" policy, without really thinking about the 
>fact that they are opening themselves up to random, untrusted, servers 
>by using the pool in the first place, and that they are already 
>protected from unsolicited associations.

Could we fix that by improving the documentation?

>Unfortunately, it is often not them that is enforcing the policy (and 
>therefore not them that could evaluate the appropriateness of restrict 
>server.

I assume anybody serious about needing good time will pick
servers they trust and use autokey.  (and/or setup their
own refclocks)

-- 
These are my opinions, not necessarily my employer's.  I hate spam.




More information about the questions mailing list