RFC 5906: Network Time Protocol Version 4: Autokey Specification
In plain English — editorial summary, not part of the RFC
This memo describes the Autokey security model for authenticating servers to clients using the Network Time Protocol (NTP) and public key cryptography. Its design is based on the premise that IPsec schemes cannot be adopted intact, since that would preclude stateless servers and severely compromise timekeeping accuracy. In addition, Public Key Infrastructure (PKI) schemes presume authenticated time values are always available to enforce certificate lifetimes; however, cryptographically verified timestamps require interaction between the timekeeping and authentication functions. This memo includes the Autokey requirements analysis, design principles, and protocol specification. A detailed description of the protocol states, events, and transition functions is included. A prototype of the Autokey design based on this memo has been implemented, tested, and documented in the NTP version 4 (NTPv4) software distribution for the Unix, Windows, and Virtual Memory System (VMS) operating systems at http://www.ntp.org. This document is not an Internet Standards Track specification; it is published for informational purposes.
Document record
- Document ID
- RFC5906
- Published
- June 2010
- Authors
- B. Haberman; D. Mills
- Status
- INFORMATIONAL
- Stream
- IETF
- Area
- int
- Pages
- 58
- Also known as
- —
- Updated by:
- RFC 9748
Topics
Referenced by
One later RFC formally updates or obsoletes part of this document.
Related documents
Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.
- RFC 9249A YANG Data Model for NTPCurrent
July 2022
- RFC 9523A Secure Selection and Filtering Mechanism for the Network Time Protocol with KhronosCurrent
February 2024
- RFC 5905Network Time Protocol Version 4: Protocol and Algorithms SpecificationUpdated
June 2010
- RFC 7384Security Requirements of Time Protocols in Packet Switched NetworksCurrent
October 2014
- RFC 7821UDP Checksum Complement in the Network Time Protocol (NTP)Updated
March 2016
- RFC 7822Network Time Protocol Version 4 (NTPv4) Extension FieldsUpdated
March 2016
- RFC 8039Multipath Time SynchronizationCurrent
December 2016
- RFC 8573Message Authentication Code for the Network Time ProtocolUpdated
June 2019
Also filed under
About this page
The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.
Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.
Data sources · Editorial policy · Report a correction · What is an RFC?