UDP/123 policers & status

Ragnar Sundblad ragge at kth.se
Mon Mar 30 09:01:31 UTC 2020



> On 30 Mar 2020, at 08:18, Saku Ytti <saku at ytti.fi> wrote:
> 
> On Mon, 30 Mar 2020 at 01:58, Ragnar Sundblad <ragge at kth.se> wrote:
> 
>> A protocol with varying packet size, as the NTS protected NTP is,
>> can easily have the bad property of having responses larger than the
>> requests if not taken care. Don’t you see that?
> 
> Why? Why not pad requests to guarantee attenuation vector until
> authenticity of packets can be verified?

Right, and NTS does that.

Ragnar




More information about the NANOG mailing list