[Cerowrt-devel] DNSSEC & NTP Bootstrapping

Toke Høiland-Jørgensen toke at toke.dk
Sat Mar 22 16:00:19 EDT 2014


Simon Kelley <simon at thekelleys.org.uk> writes:

> That would be possible: it would require care to make it work in the
> face of the system time being warped by NTP. Best way may  be to use
> times() rather than time()

Good point. Since the availability of reliable time is what we're
waiting for, perhaps a large jump in the system clock could be taken to
mean it has been achieved and taken as a signal to exit the grace
period? With a timer for the case where the time is already accurate, of
course. This would make it rather specific to this use case, though...

-Toke
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 489 bytes
Desc: not available
URL: <https://lists.bufferbloat.net/pipermail/cerowrt-devel/attachments/20140322/0f7a5457/attachment.sig>


More information about the Cerowrt-devel mailing list