Ubuntu Instances on AWS Should Use AWS NTP Servers by Default

They’re not, or they got changed somehow on my instance if they are

Teri Radichel
Bugs That Bite

--

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

⚙️ Check out my series on Automating Cybersecurity Metrics | Code.

🔒 Related Stories: Bugs | AWS Security | Secure Code

💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

I had some issues recently with some AWS instances. Not sure exactly what is going on but on restart I see that the instance is not using the AWS NTP servers.

That results in a data leak if you have those ports open. Those other NTP servers can tell every time you start and stop your instance.

Not sure if something changed but those instance should default to the AWS NTP service.

Also it would be great if you could get a warning in the console and upon logging in via SSH that your system is not using the AWS time servers.

Follow for updates.

--

--

Teri Radichel
Bugs That Bite

CEO 2nd Sight Lab | Penetration Testing & Assessments | AWS Hero | Masters of Infosec & Software Engineering | GSE 240 etc | IANS | SANS Difference Makers Award