[70680] in North American Network Operators' Group
Re: ntp config tech note
daemon@ATHENA.MIT.EDU (Pekka Savola)
Fri May 21 08:58:56 2004
Date: Fri, 21 May 2004 15:58:05 +0300 (EEST)
From: Pekka Savola <pekkas@netcore.fi>
To: Adrian Chadd <adrian@creative.net.au>
Cc: nanog@nanog.org
In-Reply-To: <20040521023319.GO3305@skywalker.creative.net.au>
Errors-To: owner-nanog-outgoing@merit.edu
On Fri, 21 May 2004, Adrian Chadd wrote:
> RE the "ntpd as root" thing, is there a capability in some UNIXen
> which lets you fudge with the kernel time/timecounter frequency without
> being root? I think thats all it really needs root privilege for.
Yes, for example in Linux.
I've run ntpd chrooted and setuid'ed with special clock change
privileges for 3+ years now. The code has been shipping for about
three years in Red Hat Linux, for example.
--
Pekka Savola "You each name yourselves king, yet the
Netcore Oy kingdom bleeds."
Systems. Networks. Security. -- George R.R. Martin: A Clash of Kings