The Road to Deployment
Network Time Security (NTS)
Karen O’Donoghue Director, Internet Trust Technology
- donoghue@isoc.org
LACNIC – 6 May 2020
Presentation title – Client name
Network Time Security (NTS) The Road to Deployment Karen ODonoghue - - PowerPoint PPT Presentation
LACNIC 6 May 2020 Network Time Security (NTS) The Road to Deployment Karen ODonoghue Director, Internet Trust Technology odonoghue@isoc.org Presentation title Client name Humans have always measured time 2 Accurate time is
Karen O’Donoghue Director, Internet Trust Technology
LACNIC – 6 May 2020
Presentation title – Client name
2
3
User Time Reference (Clock) Time Dissemination Time Distribution UTC
5
(RFC 5905)
1588
the purposes of clock synchronization
determine the offset between two independent clocks
the distribution of time information
loss
6
7
8
9
10
11
Lack of adequate security mechanisms Network Time Security (NTS) Weaknesses in the protocol itself. Updated MAC for NTP (RFC 8573), NTP client data minimization, etc. Flaws in configuration and implementation of the protocol. NTP Best Current Practice (RFC 8633)
NTS Approved by IESG in March 2020!
13
14
15
Technology / Standards Development Preliminary / Prototype Implementations Interoperability Testing Production quality open source implementations Commercial products Tools for testing and troubleshooting Preliminary deployments Lessons Learned and Best Practices Large scale deployments
16
Building a community (of key collaborators)
Maturing the NTS products
Developing NTS deployment guidance
Outreach to expand NTS deployment
17
participants, time service providers
security/
18
internetsociety.org @internetsociety Rue Vallin 2 CH-1201 Geneva Switzerland 11710 Plaza America Drive Suite 400 Reston, VA 20190, USA Rambla Republica de Mexico 6125 11000 Montevideo, Uruguay 3 Temasek Avenue, Level 21 Centennial Tower Singapore 039190 Science Park 400 1098 XH Amsterdam Netherlands 66 Centrepoint Drive Nepean, Ontario, K2G 6J5 Canada
Karen O’Donoghue Director, Internet Trust Technology
19