Authenticated Network Time Synchronization
Benjamin Dowling, Douglas Stebila, Greg Zaverucha
摘要
The Network Time Protocol (NTP) is used by many network-connected devices to synchronize device time with remote servers. Many security features depend on the device knowing the current time, for example in deciding whether a certificate is still valid. Currently, most services implement NTP without authentication, and the authentication mechanisms available in the standard have not been formally analyzed, require a pre-shared key, or are known to have cryptographic weaknesses. In this paper we present an authenticated version of NTP, called ANTP, to protect against desynchronization attacks. To make ANTP suitable for large-scale deployments, it is designed to minimize server-side public key operations by infrequently performing a key exchange using public key cryptography, then relying solely on symmetric cryptography for subsequent time synchronization requests; moreover, it does so without requiring server-side per-connection state. Additionally, ANTP ensures that authentication does not degrade accuracy of time synchronization. We measured the performance of ANTP by implementing it in OpenNTPD using OpenSSL. Compared to plain NTP, ANTP's symmetric crypto reduces the server throughput (connections/second) for time synchronization requests by a factor of only 1.6. We analyzed the security of ANTP using a novel provable security framework that involves adversary control of time, and show that ANTP achieves secure time synchronization under standard cryptographic assumptions; our framework may also be used to analyze other candidates for securing NTP.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper3
- Preventing (Network) Time Travel with ChronosOmer Deutsch, Neta Rozen Schiff, Danny Dolev, Michael SchapiraNDSS 2018 · 被引用 17 次
- Did the Shark Eat the Watchdog in the NTP Pool? Deceiving the NTP Pool's Monitoring SystemJonghoon Kwon, Jeonggyu Song, Junbeom Hur, Adrian PerrigUSENIX Security 2023
- A Devil of a Time: How Vulnerable is NTP to Malicious Timeservers?Yarin Perry, Neta Rozen Schiff, Michael SchapiraNDSS 2021
它引用的顶会 Paper1
相关 Paper
- On Borrowed Time: Measurement-Informed Understanding of the NTP Pool's Robustness to Monopoly AttacksRobert Beverly, Erik C. RyeNDSS 2026 · 被引用 1 次
- Understanding Precision Time Protocol in Today's Wi-Fi Networks: A Measurement StudyPaizhuo Chen, Zhice YangUSENIX ATC 2021 · 被引用 21 次
- Just How Secure is SRP, Really?Jiayu Xu, Zhiyuan ZhaoCRYPTO 2026
- PTPsec: Securing the Precision Time Protocol Against Time Delay Attacks Using Cyclic Path Asymmetry AnalysisAndreas Finkenzeller, Oliver Butowski, Emanuel Regnath, Mohammad Hamad 等INFOCOM 2024 · 被引用 15 次
- PASTA: PASsword-based Threshold AuthenticationShashank Agrawal, Peihan Miao, Payman Mohassel, Pratyay MukherjeeCCS 2018 · 被引用 84 次
