|
|
privacy |
||
|
Hangout for experimental confirmation and demonstration of software, computing, and networking. The exercises don't always work out. The professor is a bumbler and the laboratory assistant is a skanky dufus.
Blog Feed Recent Items The nfoCentrale Blog Conclave nfoCentrale Associated Sites |
2005-03-22Certification of Network-Attached Components?ACM News Service: Protecting the Internet: Certified Attachments and Reverse Firewalls?. In his 2005-03-16 CircleID article, Karl Auerbach suggests that the Internet be protected at the edges by requiring certification of edge-attached components. Karl adopts "the converse point of view that the net is being endangered by the masses of ill-protected machines operated by users." This would prevent many PCs from engaging in zombie activity through the simple device of having routers and broadband gateways filter outgoing as well as incoming traffic. What I find interesting is that there are easier ways than waiting for household firewall-router technology to be forced into certification and upgrading over time. The service provider could be doing the same thing at the other end of the broadband pipe and the true border onto the internet. Protecting the network from subverted edges can be done much more readily there, with detailing in the terms-of-service offered to end nodes.This fits well with David Eisenberg's ideas regarding the stupid network. Keep the intelligence, and presumably, the authentication, verification, etc., at the edges, where the people are. Of course, we need a similar kind of authentication, and certification of TROST-worthiness, for the software itself, some of which resides in the interior. But this software also needs to get inside the system through the edges. A interesting thread, indeed.
|
||
|
|
You are navigating Orcmid's Lair. |
template
created 2004-06-17-20:01 -0700 (pdt)
by orcmid |