Hello Florian,

Florian Weimer wrote:
> And if Valid-Until is only checked against the real-time clock, the
> attacker can still feed bad data over NTP, so it's not even a complete
> defense. 8-(

However, it seems there is no better solution, or is there?

-- 
Eugene V. Lyubimkin aka JackYF, JID: jackyf.devel(maildog)gmail.com
Ukrainian C++ developer, Debian Maintainer, APT contributor

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to