Hi everyone,
Potential new user here looking to harden my time synchronization stack. I’m evaluating IPFire as a perimeter firewall and want to know if Network Time Security (NTS) support is feasible on the current release.
Specifically:
- Does the standard chrony package in the official repositories include NTS support (i.e., is it version 4.2 or newer)?
- If not, is there a recommended workaround for cryptographically verifying upstream NTP servers on IPFire today?
My goal is to prevent time-based MITM attacks, so standard ntp.org authentication isn’t sufficient.
Thanks in advance for any insights!