[hrpc] Fwd: [] New paper from IGP on Standards and Human Rights

avri doria <avri@acm.org> Tue, 01 December 2020 19:37 UTC

Return-Path: <avri@acm.org>
X-Original-To: hrpc@ietfa.amsl.com
Delivered-To: hrpc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 662213A1414 for <hrpc@ietfa.amsl.com>; Tue, 1 Dec 2020 11:37:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.253
X-Spam-Level:
X-Spam-Status: No, score=-1.253 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_NONE=0.001, SPF_SOFTFAIL=0.665, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1IKqUXm7F9Hq for <hrpc@ietfa.amsl.com>; Tue, 1 Dec 2020 11:37:21 -0800 (PST)
Received: from smtprelay.hostedemail.com (smtprelay0096.hostedemail.com [216.40.44.96]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D927E3A1458 for <hrpc@irtf.org>; Tue, 1 Dec 2020 11:37:21 -0800 (PST)
Received: from filter.hostedemail.com (clb03-v110.bra.tucows.net [216.40.38.60]) by smtprelay05.hostedemail.com (Postfix) with ESMTP id CAB3D18029587 for <hrpc@irtf.org>; Tue, 1 Dec 2020 19:37:20 +0000 (UTC)
X-Session-Marker: 6176726940646F7269612E6F7267
X-Spam-Summary: 50, 0, 0, , d41d8cd98f00b204, avri@acm.org, , RULES_HIT:41:355:379:602:854:960:967:973:988:989:1260:1261:1277:1311:1313:1314:1345:1359:1381:1437:1515:1516:1518:1534:1542:1593:1594:1683:1711:1730:1747:1777:1792:1960:1963:2393:2525:2561:2564:2682:2685:2741:2859:2891:2894:2910:2933:2937:2939:2942:2945:2947:2951:2954:3022:3138:3139:3140:3141:3142:3354:3865:3866:3867:3868:3870:3872:3874:3934:3936:3938:3941:3944:3947:3950:3953:3956:3959:4184:4250:5007:6119:7652:7802:7875:7903:7904:8660:9025:10004:10400:10848:11026:11658:11914:12043:12438:12679:13019:13071:13095:13143:13148:13161:13229:13230:13845:13894:14180:14181:14196:14721:21060:21080:21324:21433:21450:21451:21627:21740:21790:21881:21939:21987:21990:30054:30070, 0, RBL:none, CacheIP:none, Bayesian:0.5, 0.5, 0.5, Netcheck:none, DomainCache:0, MSF:not bulk, SPF:, MSBL:0, DNSBL:none, Custom_rules:0:0:0, LFtime:1, LUA_SUMMARY:none
X-HE-Tag: smash90_28038ce273ad
X-Filterd-Recvd-Size: 3484
Received: from [10.5.0.2] (unknown [104.140.53.67]) (Authenticated sender: avri@doria.org) by omf13.hostedemail.com (Postfix) with ESMTPA for <hrpc@irtf.org>; Tue, 1 Dec 2020 19:37:20 +0000 (UTC)
References: <BN6PR07MB28654E467D074EAD7E5A154BA1FC0@BN6PR07MB2865.namprd07.prod.outlook.com>
To: hrpc@irtf.org
Reply-To: avri@acm.org
From: avri doria <avri@acm.org>
X-Forwarded-Message-Id: <BN6PR07MB28654E467D074EAD7E5A154BA1FC0@BN6PR07MB2865.namprd07.prod.outlook.com>
Message-ID: <dc94bc83-5e05-8ecb-696a-63799874f5db@acm.org>
Date: Tue, 01 Dec 2020 14:37:18 -0500
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.5.0
MIME-Version: 1.0
In-Reply-To: <BN6PR07MB28654E467D074EAD7E5A154BA1FC0@BN6PR07MB2865.namprd07.prod.outlook.com>
Content-Type: text/plain; charset="windows-1252"
Content-Transfer-Encoding: 8bit
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/hrpc/kRFg4Xu6ONfAJd_USAo9p8LIx-U>
Subject: [hrpc] Fwd: [] New paper from IGP on Standards and Human Rights
X-BeenThere: hrpc@irtf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: hrpc discussion list <hrpc.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/hrpc>, <mailto:hrpc-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/hrpc/>
List-Post: <mailto:hrpc@irtf.org>
List-Help: <mailto:hrpc-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/hrpc>, <mailto:hrpc-request@irtf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Dec 2020 19:37:23 -0000

Hi,

Possibly interesting to some.

avri



-------- Forwarded Message --------

IGP releases a new research paper on the politics of the new Transport
Layer Security standard: Standardizing Security: Surveillance, Human
Rights, and TLS 1.3.

 

Standardizing Security develops a conceptual framework for understanding
the relationship between technical standards and political/social
effects. We identify three distinct ways of understanding this
relationship: 1) by examining the interest groups who shaped the
standard, which we call the Political Economy of Standardization (PES);
2) by focusing on the Societal Effects of Standards (SES) which refers
to cumulative effects of adoption and implementation decisions over
time; and 3) the idea that politics and rights are embedded in the
standard; i.e., that Protocols Have Politics (PHP). We then perform a
detailed analysis of the controversies around the design, adoption and
implementation of TLS 1.3.

 

We find that the PHP approach had limited explanatory value compared to
the PES and SES approaches. TLS 1.3 does in fact strengthen privacy –
and technical efficiency – if adopted and implemented as intended. But
the design of TLS 1.3’s stronger confidentiality measures met with
resistance from corporate network operators who wanted more visibility
into their internal networks and some governmental interests, leading to
the development of an alternate standard by ETSI. There are also
technical measures that can be deployed to undermine perfect forward
secrecy. Additionally, authoritarian governments are now taking measures
to block use of the new protocol. TLS 1.3 was an improvement, but its
effects were limited.

 

By conveying the idea that political, economic and social effects can be
hard coded into protocol designs, the protocols-have-politics view
short-circuits careful analysis of the way standards contribute to
governance. It also drastically overstates the role of protocol design
in internet governance. Rights advocates and internet governance
participants need to have more realistic ideas about what measures
advance human rights on the internet.

 

Download the paper here:
https://www.internetgovernance.org/wp-content/uploads/StandardizingSecurity-TLS.pdf
<https://www.internetgovernance.org/wp-content/uploads/StandardizingSecurity-TLS.pdf>


 

Dr. Milton L Mueller

Georgia Institute of Technology

School of Public Policy

IGP_logo_gold block