Threat Level: green Handler on Duty: Rob VandenBrink

SANS ISC: Leap second: when time stands still SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms:

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Leap second: when time stands still
Just after we in the US changed our clocks back an hour from daylight saving time to standard time I ran across an interesting tid-bit regarding time. This may have impacts across many information systems.
                      UTC TIME STEP
on the 1st of January 2006

A positive leap second will be introduced at the end of December 2005.
The sequence of dates of the UTC second markers will be:

2005 December 31, 23h 59m 59s
2005 December 31, 23h 59m 60s
2006 January 1, 0h 0m 0s


This is being done to keep time in sync with the slowing earth's rotation and the standard time measures in use in atomic clocks. There have been several leap seconds introduced since 1972.

My original source for this information is the November 2005 Scientific American article by Wendy Grossman.  The impacts on information systems can come from GPS clocks not recognizing the leap second and sending out flawed or inaccurate data with can affect many time based functions including security features.  According to the article there is talk within the INTERNATIONAL EARTH ROTATION AND REFERENCE SYSTEMS SERVICE (IERS) (a United Nations organization) of decoupling standard time measurement from the earth's rotation and adhering strictly to atomic decay.

NTP systems appear to be able to handle leap seconds:

Scientific American article here.

Happy travels through time ...
Dan Goldberg
Dan at madjic dot net


42 Posts
Oct 31st 2005

Sign Up for Free or Log In to start participating in the conversation!