| Click any tab below to preview additional
features. |
|
Domain Time II offers exclusive security features to ensure that
your network's time is correct and resistant to both intentional
and inadvertent interference from other sources.
Denial of Service (Flooding) Protection
A way that your time service can be affected are by Denial of Service
(DoS) attacks. DoS attacks are attempts to disable your system's
operation by flooding the system with bogus and/or malformed messages.
Domain Time II protects against these kinds of attacks by not allowing
any system to monopolize its resources. Any system that exceeds
the DoS traffic thresholds you specify has its access automatically
blocked for a period of time. Both Domain Time Clients and Servers
have this protection.
Access Permissions
Time service can be degraded by responding to time requests from
clients or servers on other network subnets over which you have
little control. For example, this can happen if your Domain Time
server is accessible from a public network and many other users
discover and start to use your server as a time source.
To prevent this kind of problem, you may specify whether Domain
Time should accept or reject time protocol traffic from certain
IP addresses. You can specify whether to permit or deny traffic
from multiple ranges of addresses. This allows you to easily restrict
your time traffic to the intended destinations.
|