Resuming the great cleanup

Eric S. Raymond esr at thyrsus.com
Tue May 29 20:08:24 UTC 2018


Achim Gratz via devel <devel at ntpsec.org>:
> Eric S. Raymond via devel writes:
> > Achim Gratz via devel <devel at ntpsec.org>:
> >> However, there is still value in the knowledge of which interface the
> >> packet came in so that ntpd can place different levels of trust
> >> depending on whether it's from a private (virtual) network segement, an
> >> internal or public network.
> >
> > If I'm following the argument, this exactly what oacket filter should do.
> 
> I don't quite follow how you propose to do that with a packet filter?
> At least I'm not aware of any packet filter that makes trust decisions
> that are not binary.

I guess I failed to undersyand your proposal.  Never mnind, I think Hal
answered it.-- 
		<a href="http://www.catb.org/~esr/">Eric S. Raymond</a>

My work is funded by the Internet Civil Engineering Institute: https://icei.org
Please visit their site and donate: the civilization you save might be your own.




More information about the devel mailing list