nanog mailing list archives

Re: NTP for ASBRs?


From: Christopher Morrow <morrowc.lists () gmail com>
Date: Wed, 8 May 2019 10:34:34 -0400

On Wed, May 8, 2019 at 8:38 AM Job Snijders <job () ntt net> wrote:

Dear Lars,

On Wed, May 08, 2019 at 09:56:33AM +0200, Lars Prehn wrote:
do you NTP sync your AS boundary routers?

yes

If so, what are incentives for doing so? Are there incentives, e.g.
security considerations, not to do it?

The major advantage of NTP syncing your routers is that it allows you to
more effectively correlate any log messages that these devices emit to
log messages other devices generated.

Note that if you step into the wonderful world of streaming telemetry
you MAY need to worry about certificate validation and time becomes
important for that.
Similarly any other usages of certificates on the devices will bring
with it a stricter time regime.


Current thread: