<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE rss [<!ENTITY % HTMLlat1 PUBLIC "-//W3C//ENTITIES Latin 1 for XHTML//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml-lat1.ent">]>
<rss version="0.92" xml:base="http://blogs.globalcrossing.com">
<channel>
 <title>IP Convergence: Beyond VoIP, Beyond Cost Savings - Security</title>
 <link>http://blogs.globalcrossing.com/taxonomy/term/43/0</link>
 <description>security</description>
 <language>en</language>
<item>
 <title>and from the "No taps for you" department...</title>
 <link>http://blogs.globalcrossing.com/no_tap</link>
 <description>&lt;p&gt;This one is a beauty - on Jan. 10th of this month, the &lt;a href="http://www.aclu.org/safefree/general/33624prs20080110.html" title="reference on ACLU" target="_blank"&gt;ACLU&lt;/a&gt; issued a statement that reported that a FBI wiretap was &amp;quot;unplugged&amp;quot; due to a lack of payment.&amp;nbsp; The ACLU is quick to point out that this action was taken from the same telecoms that permitted the tap without the proper approvals...&lt;br &gt;&lt;br &gt;From Michael German, ACLU National Security  Policy Counsel: &amp;quot;It seems the telecoms, who are claiming they were just  being &amp;quot;good patriots&amp;quot; when they allowed the government to spy on us without  warrants, are more than willing to pull the plug on national security  investigations when the government falls behind on its bills.&amp;quot;&lt;br &gt;&lt;img width="520" height="437" border="0" src="http://voiploser.com/misc/wiretap.jpg"&gt;&lt;br &gt;Adam &amp;quot;voiploser&amp;quot; Uzelac&lt;br &gt;DISCLAIMER: The comments here are mine only. They don't necessarily reflect intelligence, refined thoughts, or anything that the reader should take too seriously. Should the reader expect a polished thought process in the content addressed here, then a strong dose of medication should be prescribed to address that misconception.&lt;br &gt;&lt;br &gt;&lt;/p&gt;
</description>
 <pubDate>Tue, 15 Jan 2008 15:06:53 +0000</pubDate>
</item>
<item>
 <title>Ready for a scary thing?  Deep Packet Inspection!</title>
 <link>http://blogs.globalcrossing.com/DPI</link>
 <description>&lt;p&gt;According to Wikipedia &lt;a href="http://en.wikipedia.org/wiki/Deep_Packet_Inspection" title="reference on  Deep Packet Inspection" target="_blank"&gt; Deep Packet Inspection&lt;/a&gt; is &amp;ldquo;a form of computer network packet filtering that examines the data part of a through-passing packet, searching for non-protocol compliance or predefined criteria to decide if the packet can pass. This is in contrast to shallow packet inspection (usually called just packet inspection) which just checks the header portion of a packet.&amp;rdquo;&lt;/p&gt;
&lt;p&gt;First off, this is a very real technology.&amp;nbsp; A quick search via google brought the company Bivio Networks to my attention. (* Disclaimer: I have no interest, financial or otherwise with this company.)&amp;nbsp; Bivio&amp;rsquo;s&amp;nbsp; 7000 series claims that &lt;br /&gt;&amp;ldquo;when fully configured, the 7000's application processing subsystem offers 45,000 MIPS -- enough to run &amp;quot;any IP network service&amp;quot; at wire speeds up to 10Gbps -- including IDS/IDP, firewalling, VPN, network surveillance, lawful interception, and application traffic management. Developers can use any of the standard Linux components (such as iptables) as part of their deep packet processing applications.&lt;/p&gt;
&lt;p&gt;Now let&amp;rsquo;s look at some of the implications of DPI.&amp;nbsp; A very interesting article on &lt;a href="http://arstechnica.com/articles/culture/Deep-packet-inspection-meets-net-neutrality.ars?bub" title="reference on here" target="_blank"&gt;here&lt;/a&gt; from ars technica puts things in an interesting light:&lt;/p&gt;
&lt;p&gt;&amp;ldquo;Imagine a device that sits inline in a major ISP's network and can throttle P2P traffic at differing levels depending on the time of day. Imagine a device that allows one user access only to e-mail and the Web while allowing a higher-paying user to use VoIP and BitTorrent. Imagine a device that protects against distributed denial of service (DDoS) attacks, scans for viruses passing across the network, and siphons off requested traffic for law enforcement analysis. Imagine all of this being done in real time, for 900,000 simultaneous users, and you get a sense of the power of deep packet inspection (DPI) network appliances. &lt;br /&gt;Although the technology isn't yet common knowledge among consumers, DPI already gives network neutrality backers nightmares and enables American ISPs to comply with CALEA (government-ordered Internet wiretaps) reporting requirements. It also just might save the Internet (depending on who you believe). &amp;ldquo;&lt;br /&gt;The power of this technology is simply awesome, and the impacts it can have are serious.&amp;nbsp; The current state of government mandated network monitoring forces some network operators to consider implementing this.&amp;nbsp; One word jumps to my mind, and that&amp;rsquo;s SCARY &amp;ndash; and I am not referring to my driver&amp;rsquo;s license picture either!&lt;/p&gt;
&lt;p&gt;By the way, did I mention that the above Bivio 7000 is listed at $10,000!&lt;/p&gt;
</description>
 <pubDate>Thu, 02 Aug 2007 18:57:49 +0000</pubDate>
</item>
</channel>
</rss>
