Talk: Give me an hour

Open security
Sunday 11th of November, 2012
Room 4

by Jonatan Walck

The title for this talk was set when I couldn't decide and tried to stall the process of putting it online, but it is quite fitting! This is a talk and a demonstration about time, why time security and robustness is important, and how to get a time source one can trust. Either utilising Internet or by running your own infrastructure. Few people (read systems administrators and operators) consider time to be of big importance. At most they remember to install ntp and have ntpd running with the default configuration. But if time keeping breaks, either accidentally or by an attack some services are quite vulnerable and can break badly. As a main focus during this slot I want to demonstrate how one can ensure that the clock on a single computer or local are network can be kept stable as well as how one secures it against tampering. Give me an hour (really just 45 minutes, then we'll have lunch:) and I'll try to show you why you should keep time in mind and help with tips for best practices from my own experience.

