Spam and Antispam
Home > Ask the Security Experts > Platform Security Questions & Answers > What security issues can arise from unsynchronized system clocks?
Ask The Security Expert: Questions & Answers
EMAIL THIS

What security issues can arise from unsynchronized system clocks?

Michael Cobb EXPERT RESPONSE FROM: Michael Cobb

Pose a Question
Other Security Categories
Meet all Security Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 02 October 2007
What security issues can arise from a corrupted system clock? Will my email messages be treated as spam, for example?

>
EXPERT RESPONSE
I often feel that many network and system administrators don't pay enough attention to the issues of system clock accuracy and time synchronization. Computer clocks can run faster or slower over time, batteries and power sources die, or daylight-saving time changes are forgotten. Sure, there are lots of more pressing security issues to deal with, but not ensuring that the time on network devices is synchronized can cause problems. And these problems often only come to light after a security incident.

If you suspect a hacker is accessing your network, for example, you will want to analyze your log files to look for any suspicious activity. If your network's security devices do not have synchronized times, the inaccuracy of the time stamps makes it impossible to correlate log files from different sources. Not only will you have difficulty in tracking events, but you will also find it difficult to use such evidence in court; you won't be able to illustrate a smooth progression of events as they occurred throughout your network.

Unsynchronized clocks can also affect automated tasks. If certain processes run out of sequence, such as transaction processing and backups, then the results of these processes may cause discrepancies, due to the transaction times failing to tally. Mismatched timestamps often cause financial and database program errors.

Even on home computers, an incorrect clock can cause problems. Your email messages are time-stamped using your computer's local system clock. If the time is wildly inaccurate, then some email servers may classify your messages as spam, particularly if the date is in the past or future. Also, many Web sites use cookies to store your logon status. These cookies have an expiry time based on your system clock. If your computer clock is inaccurate, the cookies will be set with the wrong expiry time, and you might find that you are unable to log in.

Fortunately, it is quite easy to synchronize a computer's clock. The Network Time Protocol project maintains a list of public time sources, which provide a consistent time to your computer or network devices. On Windows PCs, you can set your computer to automatically synchronize with an Internet time server: open the Date and Time applet located in your control panel and select the Internet Time tab. Windows also comes with a Time Service Tool, W32tm.exe. It can be used to configure Windows Time service settings and diagnose problems with the time service.

There are also various available programs on the Internet that ensure the accuracy of computer or network time. Network Time System, for example, allows users to synchronize their clock with an enterprise network time server. The server syncs up with external sources, such as Internet time servers or local trusted ones, including GPS or clock cards. Every PC, therefore, does not require an Internet connection to obtain an accurate time. If your firewall is set to block certain types of traffic, you may want to look at Admin Http Time Sync, which uses HTTP instead of the NTP or SNTP protocols. For stand-alone PCs, Atomic Clock Sync is another free program. To set your PC clock once a day, Atomic Clock Sync connects to a server at the National Institute of Standards and Technology (NIST).

More information:

  • Check out the latest Messaging Security School lesson -- Spam 2.0: New threats and new strategies.
  • Mike Rothman talks about cookie encryption as a PCI DSS requirement.


  • Sound Off! -   Be the first to post a message to Sound Off!


    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


    RELATED CONTENT
    Platform Security
    Is attack code valuable for vulnerabilities or just a publicity stunt?
    Will the features of Windows Vista SP1 encourage wider adoption of the OS?
    Is a Master Boot Record (MBR) rootkit completely invisible to the OS?
    Are open recursive DNS servers inherently insecure?
    Should whole disk encryption products be used with data backup software?
    Which operating system can best secure an FTP site?
    Is desktop virtualization a realistic enterprise option?
    Does FTPS encrypt data packets at the hardware or software level?
    Should disks be encrypted at the hardware level?
    Is Triple DES a more secure encryption scheme than DUKPT?

    Spam and Antispam
    Spam Blockers Losing Ground on Sophisticated Attackers
    Companies still monitoring email manually, survey finds
    Google Docs used in latest spam run
    New phishing, Zeus Trojan technique spreads crimeware
    Kraken botnet balloons to dangerous levels
    New Storm attack exploits April Fool's Day
    Gmail CAPTCHA cracking leads to spam surge
    Clinton, Obama campaigns used in spam blasts
    Google-Postini email services deliver security market message
    Product review: Webroot's Webroot Antispyware Corporate Edition with AntiVirus
    Spam and Antispam Research

    Monitoring Network Traffic and Network Forensics
    Windows registry forensics guide: Investigating hacker activities
    More built-in Windows commands for system analysis
    Is security improved when the number of Internet gateways is reduced?
    Screencast: Using Nessus to scan for vulnerabilities
    What are the pros and cons of shaping P2P packets?
    Built-in Windows commands to determine if a system has been hacked
    How will the centralized logging of network flow data benefit an enterprise?
    The forensics mindset: Making life easier for investigators
    Data Loss Prevention Tools Offer Insight into Where Data Lives
    vPro: Making the case for network security on a chip

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    CAPTCHA  (SearchSecurity.com)
    challenge-response system  (SearchSecurity.com)
    content filtering  (SearchSecurity.com)
    DomainKeys  (SearchSecurity.com)
    Joe job  (SearchSecurity.com)
    munging  (SearchSecurity.com)
    Register of Known Spam Operations  (SearchSecurity.com)
    Sender Policy Framework  (SearchSecurity.com)
    spam cocktail  (SearchSecurity.com)
    spam filter  (SearchSecurity.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary



    Search and Browse the Expert Answer Center
    Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
    Browse our Expert Advice

    TechTarget Security Media
    Information Security View this month\\'s issue and subscribe today.
    Information Security Decisions Apply online for free conference admission.
    SearchSecurity.com
    HomeNewsMagazineWebcastsWhite PapersLearningAdviceTopicsEventsAbout Us

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




    All Rights Reserved, Copyright 2003 - 2008, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts