In Part I of this article I set the stage for our discussion and overviewed the October 21st DDoS attacks on the Internet's 13 root name servers. In particular, I highlighted that the attacks were different this time, both in size and scope, because the root servers were attacked at the same time. I also highlighted some of the problems associated with the Domain Name System and the vulnerabilities inherent in BIND. Part II of this article takes our discussion to another level by critically looking at alternatives and best practices that can help solve the security problems we've raised. more
Three years ago, my team and I launched .xyz with the mission of bringing competition, choice, and innovation on the internet. .xyz was probably the only domain extension that had no built-in meaning, included very few domains priced at a premium, and relied on low margins and high volume. We brought with it the message that .xyz was for every website, everywhere. And instead of targeting one vertical, we connected with the next generation of internet users... more
I'm sure we have all heard a techie or standards body tell legislatures, courts, and business groups to keep their mits off of the internet; that such groups are "clueless" and that they will damage some noumenon or other indistinct, but critical, principle of the internet. Consider, for example, the condemnation of competing DNS roots by ICANN and the IAB. What makes today so interesting is that two well respected techies have stepped forth and made strong social/economic/business policy statements. more
Good taste has never been a criterion in ICANN's new domains program, and domains including .fail and the remarkably vulgar .wtf have become part of the DNS with little comment. Now we have .sucks, which is intended to empower consumers, but does so in a way so clumsy that ICANN is asking regulators in the U.S. and Canada for an excuse to shut it down. more
Recently, I entered my domain name in a "WHOIS" database query to test the results of the database by using WHOIS on a number of domain name registrar websites. WHOIS is a database service that allows Internet users to look up a number of matters associated with domain names, including the full name of the owner of a domain name, the name of the domain name hosting service, the Internet Protocol or I.P. number(s) corresponding to the domain name, as well as personally identifying information on those who have registered domain names. I was astonished to find... more
This is a new development in the VoIP market. This is how one of my colleagues, Cullen Jennings explained it to me. Today we have two widely deployed global identifiers for reaching people. One is delegated address out of DNS and the other is phone numbers. So I consider an address like email: [email protected] or xmpp:[email protected] to roughly be out of the DNS namespace and phone number to be out of the E.164 name space. Phone numbers have lots of parts that are not cool, but they also have some cool parts... more
In a report released today, the World Intellectual Property Organization (WIPO) has announced a 20% increase in the number of cybersquatting (abusive registration of trademarks as domain names) cases filed in 2005 as compared to 2004. The report further indicates that "in 2005, a total of 1,456 cybersquatting cases were filed with WIPO's Arbitration and Mediation Center. This increase represents the highest number of cybersquatting cases handled by the WIPO Center since 2001." more
In the tenth month of the revolutionary expansion of generic top-level Internet domains, global registrations in new gTLDs reached more than three million addresses, providing the clearest illustration yet of the strong international appetite for new, relevant addressing options. As we near the first full year of new gTLD availability, focus now shifts to another critical metric -- renewals -- which we expect to show similar strength based on history and data analysis. more
A decade has passed since Jon Postel left our midst. It seems timely to look back beyond that decade and to look forward beyond a decade hence. It seems ironic that a man who took special joy in natural surroundings, who hiked the Muir Trail and spent precious time in the high Sierras was also deeply involved in that most artificial of enterprises, the Internet. more
I've been following the efforts of SpaceX and OneWeb to become global Internet service providers using constellations of low-Earth orbit (LEO) satellites for some time. Launch times are getting close, so I'm posting a status update on SpaceX's project... The Senate Committee on Commerce, Science, and Transportation held a hearing titled "Investing in America's Broadband Infrastructure: Exploring Ways to Reduce Barriers to Deployment" on May 3, 2017, and one of the expert witnesses was Patricia Cooper, SpaceX Vice President, Satellite Government Affairs. more
As the world becomes more and more reliant on electronics, it's worth a periodic reminder that a large solar flare could knock out much of the electronics on earth. Such an event would be devastating to the Internet, satellite broadband, and the many electronics we use in daily life. A solar flare is the result of periodic ejections of matter from the sun into space. Scientists still aren't entirely sure what causes solar flares, but they know that it's somehow related to shifts in the sun's magnetic field. more
On April 16 ICANN issued a breach notice to Turkish Registrar Alantron for not consistently providing access to its WHOIS database via Port 43, a command-line query location that all Registrars are required to supply under conditions of their contract with ICANN under section 3.3.1. Four days later they issued a breach to Internet Group do Brazil for the same problem. ... The WHOIS record, as we all know, is a massive fraud with illicit parties filling records with bogus information and hiding behind anonymity. more
I have a Google Blog Search Alert looking for posts over IPv6 in my RSS reader. What strikes me is the number of posts explaining how to disable IPv6 in Windows Vista, MacOSX, Ubuntu and other flavours of Linux. It looks like disabling IPv6 makes web browsing faster for a lot of people, independently of which operating system is being used. more
Amidst the fascinating news from the SCO saga, preparing for SANS London and contributing to the Unix timeline project at Grokline my eyes caught a piece of rather distressing news on the BBC. It appears that BT (British Telecom) intends to move its current phone network to an IP-based network by 2009 thereby sending the circuit-switched technology off to the attic. The real question is: can we guarantee the same level of reliability on VoIP as we had on circuit-switched telephony when the stated aim is to carry both voice and data traffic down the same cables (or fibres more likely)? more
The debate surrounding digital sovereignty has gained momentum in recent years, particularly within BRICS nations, where governments seek to assert greater control over their digital ecosystems. Proponents of digital sovereignty often frame it as a necessary countermeasure against foreign technological dominance, positioning it as either a "positive" force- fostering local innovation and self-reliance- or a "negative" one- fueling authoritarian control and economic isolation. more