From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail-wg0-x22b.google.com (mail-wg0-x22b.google.com [IPv6:2a00:1450:400c:c00::22b]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by huchra.bufferbloat.net (Postfix) with ESMTPS id 6DB6621F1B5 for ; Sat, 29 Mar 2014 14:30:15 -0700 (PDT) Received: by mail-wg0-f43.google.com with SMTP id x13so4531399wgg.2 for ; Sat, 29 Mar 2014 14:30:13 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=M+QVrrUPvAXlyLKUM2xZq5v/KqR+95TlJ6qVn+AvViY=; b=zj9UnKKyhwNAWn+vu7EkrwgRmG3Ivze1XkouvQwHjqlmJv3Btj74hBS9AH5W0kEmmJ BtU4BTj3gqdQ84XkC9JbYx7yzxKy4tpybMuN+rU5eYFl5RJLwgFp/mrsbxTLfkSaZUGm h611xFWkhY8PtAolYd4pjAIrourrmMtK4Q6ue/dHVbsLUKh9JJHkn+kMqAUMxJaDOs/Y UOIyy/rJtzT3ixWnItIytXt4WhXsPYQHRL6Pg9WUR4KOu14Y357gqEwSN4QonRkWCe8T PqgtpZ4ctXiKR2LPD/pUcmZwY732MIaPCFyB8HXoYNCjxMqadrU00IutXY/fJPe8Iia2 DjTw== MIME-Version: 1.0 X-Received: by 10.180.37.178 with SMTP id z18mr3203519wij.46.1396128613264; Sat, 29 Mar 2014 14:30:13 -0700 (PDT) Received: by 10.216.8.1 with HTTP; Sat, 29 Mar 2014 14:30:13 -0700 (PDT) In-Reply-To: <421.1396128076@sandelman.ca> References: <532DD9DD.8040301@thekelleys.org.uk> <871txut453.fsf@alrua-x1.karlstad.toke.dk> <532DE7A8.3010504@thekelleys.org.uk> <87ppleroks.fsf@alrua-x1.karlstad.toke.dk> <53348C32.4040907@thekelleys.org.uk> <87ha6idabz.fsf@alrua-x1.karlstad.toke.dk> <53353C07.9030000@thekelleys.org.uk> <87eh1madfy.fsf@toke.dk> <533551F6.9010402@thekelleys.org.uk> <87lhvu8uqi.fsf@toke.dk> <5335E1BD.7010304@thekelleys.org.uk> <87k3bdbbt6.fsf@alrua-x1.karlstad.toke.dk> <87bnwpb7f7.fsf_-_@alrua-x1.karlstad.toke.dk> <421.1396128076@sandelman.ca> Date: Sat, 29 Mar 2014 14:30:13 -0700 Message-ID: From: Dave Taht To: Michael Richardson Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Cc: "cerowrt-devel@lists.bufferbloat.net" Subject: Re: [Cerowrt-devel] DNSSEC & NTP Bootstrapping -- prototype! X-BeenThere: cerowrt-devel@lists.bufferbloat.net X-Mailman-Version: 2.1.13 Precedence: list List-Id: Development issues regarding the cerowrt test router project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 29 Mar 2014 21:30:16 -0000 Well I strongly favor less interdependency between ntp, a monitoring script, and dnsmasq. I'd kind of like some sort of check on validating the dns roots, if it fail= s due to the time being wrong, disable dnssec and wait for clock slew. Another other alternative is a ntp that does a query with the authenticate bit off, all the time. I kind of lost track of all the other suggestions... On Sat, Mar 29, 2014 at 2:21 PM, Michael Richardson wrot= e: > > This process needs to be written up as an IETF BCP. > > _______________________________________________ > Cerowrt-devel mailing list > Cerowrt-devel@lists.bufferbloat.net > https://lists.bufferbloat.net/listinfo/cerowrt-devel --=20 Dave T=E4ht Fixing bufferbloat with cerowrt: http://www.teklibre.com/cerowrt/subscribe.= html