Package: chrony
Version: 4.5-1
Severity: wishlist

Dear Maintainer,

I saw this change in the 4.4 release notes:
* Refresh address of NTP sources periodically

That made me think it could also be useful to support some "pre-seeding"
and/or caching of DNS results.  I usually configure a few sources via IP
addresses, just in case DNS is slow or unavailable at boot time (perhaps
DNSSEC is failing due to a terribly inaccurate clock).  But IP addresses
could change without me noticing, and some server operators request that
DNS be used whenever possible.

Maybe it should be possible to specify fallback addresses, to be used in
the case of a temporary lookup failure; for example,
  server ntp.example.net ip=2001:db8::7b ip=192.0.2.123

And I've already got .nts files in /var/lib/chrony for serveral sources,
which makes me think there could also be files caching the last-known IP
addresses for each server (possibly with expiry times and enabled via an
option such as "cacheaddr").  For servers with NTS, that data appears to
already be available.

- Michael


-- System Information:
Debian Release: trixie/sid
  APT prefers unstable-debug
  APT policy: (500, 'unstable-debug'), (500, 'unstable'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 6.5.0-5-amd64 (SMP w/32 CPU threads; PREEMPT)
Locale: LANG=en_CA.UTF-8, LC_CTYPE=en_CA.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_CA:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages chrony depends on:
ii  adduser              3.137
ii  init-system-helpers  1.66
ii  iproute2             6.6.0-1
ii  libc6                2.37-13
ii  libcap2              1:2.66-4
ii  libedit2             3.1-20230828-1
ii  libgnutls30          3.8.2-1
ii  libnettle8           3.9.1-2
ii  libseccomp2          2.5.4-2+b1
ii  tzdata-legacy        2023c-11
ii  ucf                  3.0043+nmu1

chrony recommends no packages.

Versions of packages chrony suggests:
ii  bind9-dnsutils [dnsutils]  1:9.19.17-1
pn  networkd-dispatcher        <none>

-- no debconf information

Attachment: signature.asc
Description: PGP signature

Reply via email to