The ICANN Board made a couple of important decisions regarding accountability and transparency at its 8 December meeting. Specifically, it approved compensating Directors and also enhanced ICANN's conflicts of interest rules. These are positive developments for the organization, and come at a critical juncture as the Internet governance debate heats up in 2012. more
Sandvine gathers data from the 160 largest fixed and wireless ISPs on the planet to understand Internet usage trends. The statistics discussed below come from the Sandvine January 2022 Global Internet Phenomena Report. Sandvine identifies several current industry trends... more
The IETF's DMARC working group is thinking about a maintenance update to the DMARC spec, fixing bits that are unclear and perhaps changing it where what mail servers do doesn't exactly agree with what it says. Someone noted that a lot of mailers claim to have "deployed DMARC," and it's not at all clear what that really means. ... I've suggested that we could write a DMARC deployment guide that describes the parts of DMARC, the ways they interact and in what sequence it's useful to deploy them. If you'd find that useful, leave a comment. more
Who would think that so much could go wrong with something as seemingly innocent as a domain name? As cybercrime continues to evolve, causing devastating reputational and financial losses to businesses and organizations, web addresses are used as a weapon -- and it's not always easy to notice their many faces. In this article, let's take a look at the domain name crime landscape, discuss the current challenges investigators and legitimate registrants face, and talk about some useful techniques. more
For those people tracking the evolution and deployment of DNSSEC or who are just interested in "DNS security" in general there is a great amount of activity happening next week at IETF 90 in Toronto. I dove into this activity in great detail in a recent post, "Rough Guide to IETF 90: DNSSEC, DANE and DNS Security", and summarized the activity in a Deploy360 post... more
Amongst all of the media pieces in the run up to WCIT-12 next week, few have been as counterfactual as that appearing on the website of the National Journal. The editor, Jean-Christophe Nothias clearly has very little knowledge of how Internet economics or governance works, making such uninformed statements such as "Critically, the connections between the approximately 40,000 autonomous servers at a global level are ruled by contractual agreements between operating agencies." more
Announcement of the Verizon Wireless (VZW) iPhone and last week's announcements of Androids for AT&T mean that we're going to have better mobile data networks at lower prices. That's the most important consequence of being able to choose your phone and your network separately. We in North America have a long way to go to have the mix and match choices of phones and service that most of the world has... more
The boom and bust cycle of submarine cable deployment can be traced back to the 19th century. However it doesn't look as though we have learned a lot in those 150 years. One of the problems is that it generally takes two years to plan these international projects and two years to deploy the system. And even before the process commences there are often an initial two years when the potential builders are contemplating their plans. This means that new cables need to be planned at times when there is little demand for new capacity. more
President Obama began working on Cuban rapprochement during his 2009 presidential campaign. After over five years of thought and negotiation, the Whitehouse announced a major shift in Cuba policy, which included allowing telecommunications providers "to establish the necessary mechanisms, including infrastructure, in Cuba to provide commercial telecommunications and Internet services, which will improve telecommunications between the United States and Cuba." more
Do you have ideas about DNSSEC or DANE that you would like to share with the wider community? Have you created a new tool or service? Have you found a way to use DNSSEC to secure some other service? Do you have new statistics about the growth or usage of DNSSEC, DANE or other related technology? If so, and if you will be in Johannesburg, South Africa, for ICANN 59 in June 2017 (or can get there), please consider submitting a proposal to speak at the ICANN 59 DNSSEC Workshop! more
Sometimes I hear people or read writers that say things about spam that are incorrect. I thought I would clear those up in this blog post... When the holidays roll around, people start warning other people to watch their inboxes - December is spam season! By that, they mean that more spam than normal flows around the Internet. People say this because December is the holiday season. Since spam is another form of advertising, and advertisers pepper us with ads during this time, then spammers must do the same. It makes sense except it's not true. more
The impact of new generic Top-Level Domains on the price of existing gTLDs and ccTLDs is likely to be limited, Tim Schumacher, CEO of leading domain name marketplace Sedo, told the the Domain Pulse conference in Vienna, held on 17 and 18 February. "I don't think the new gTLDs will have a major impact on pricing of existing TLDs. If you start a company or a product, you will always need to have your 'dotcom' or respective ccTLD in the market you operate in," said Schumacher in an interview following the conference. more
Google on Friday announced a new private subsea cable, called "Equiano," to connect Africa with Europe. This will be Google's third fully funded private undersea cable in addition to fourteen other cable investments globally. more
Should Google's provision of information services be regulated? Yes, if the decision is based on Google's own standards for determining whether to regulate tele-information companies. In recent comments to the FCC, Google described "broadband openness" rules, aka net neutrality, as a "fundamental necessity." Without such rules, the search engine giant, aka Big Search, fears that broadband providers would "promote only their own pecuniary interests over the far broader interests of Internet users..." As the Wall Street Journal noted last year, however, Google engages in the same type of discriminatory service practices they want the federal government to prohibit... more
One of the most embarrassing and pernicious realities in the world of cybersecurity is the stark reality that some industry cybersecurity standards practices are themselves cyber threats. How so? Most industry and intergovernmental standards bodies serve as means for assembling the constantly evolving collective knowledge of participant experts and package the resulting specifications and best practices as freely available online documents to a vast, diverse universe of users. more