RFC8573: Message authentication code for the network time protocol
Files
Published version
Date
2019-06-01
DOI
Authors
Goldberg, Sharon
Malhotra, Aanchal
Version
OA Version
Published version
Citation
Sharon Goldberg, Aanchal Malhotra. 2019. "RFC8573: Message Authentication Code for the Network Time Protocol." https://www.rfc-editor.org/rfc/rfc8573.html
Abstract
The Network Time Protocol (NTP), as described in RFC 5905, states that NTP packets should be authenticated by appending NTP data to a 128-bit key and hashing the result with MD5 to obtain a 128-bit tag. This document deprecates MD5-based authentication, which is considered too weak, and recommends the use of AES-CMAC as described in RFC 4493 as a replacement.
Description
License
Copyright (c) 2019 IETF Trust and the persons identified as the document authors. All rights reserved. This document is subject to BCP 78 and the IETF Trust's Legal Provisions Relating to IETF Documents (https://trustee.ietf.org/license-info) in effect on the date of publication of this document. Please review these documents carefully, as they describe your rights and restrictions with respect to this document. Code Components extracted from this document must include Simplified BSD License text as described in Section 4.e of the Trust Legal Provisions and are provided without warranty as described in the Simplified BSD License.