[168712] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: TWC (AS11351) blocking all NTP?

daemon@ATHENA.MIT.EDU (John R. Levine)
Mon Feb 3 15:32:07 2014

Date: 3 Feb 2014 15:29:21 -0500
From: "John R. Levine" <johnl@iecc.com>
To: "Joel M Snyder" <Joel.Snyder@Opus1.COM>
In-Reply-To: <52EFEC54.2060905@Opus1.COM>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

>> It seems thata hosts sending large amounts of NTP traffic over the
>> public Internet can be safely filtered if you don't already know that
>> it's one of the handful that's in the ntp.org pools or another well
>> known NTP master.
>
> Speaking as one of the 3841 servers in the pool.ntp.org pool, I'm happy to be 
> described as a "handful," something my mother used to say, but I do feel 
> obligated to point out that it's a pretty big handful especially if you want 
> to be fiddling ACLs on an hourly basis which is pretty much what it takes.

I was thinking that the ntp.org servers on any particular network are a 
small set of exceptions to a general rule to rate limit outgoing NTP 
traffic.

Regards,
John Levine, johnl@iecc.com, Primary Perpetrator of "The Internet for Dummies",
Please consider the environment before reading this e-mail. http://jl.ly


home help back first fref pref prev next nref lref last post