[Newsclips] IETF SYN-ACK Newspack 2024-02-26

David Goldstein <david@goldsteinreport.com> Mon, 26 February 2024 05:15 UTC

Return-Path: <david@goldsteinreport.com>
X-Original-To: newsclips@ietfa.amsl.com
Delivered-To: newsclips@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0D1B9C14F60A for <newsclips@ietfa.amsl.com>; Sun, 25 Feb 2024 21:15:01 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.094
X-Spam-Level:
X-Spam-Status: No, score=-2.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_KAM_HTML_FONT_INVALID=0.01, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=goldsteinreport.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pOaF95K-usk9 for <newsclips@ietfa.amsl.com>; Sun, 25 Feb 2024 21:14:56 -0800 (PST)
Received: from mars.atomiclayer.com (mars.atomiclayer.com [66.85.142.50]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 34248C14F60B for <newsclips@ietf.org>; Sun, 25 Feb 2024 21:14:56 -0800 (PST)
Received: from David2019Desktop (unknown [101.190.18.154]) by mars.atomiclayer.com (Postfix) with ESMTPSA id B60141CED1F for <newsclips@ietf.org>; Mon, 26 Feb 2024 00:14:54 -0500 (EST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=goldsteinreport.com; s=default; t=1708924495; bh=fK8TtFLl6RDhfIdredNRZDZrXfZUEMEE4U4B20JxJf4=; h=From:To:Subject; b=lN6pr5MH8Fv612HSItsiGdmPb/NguIIjZdpYOA/wpIkBNnA9Lm99/xaFKw5yXkRB7 k5c4w7TDnjuJuonnM++3z8r3myujNtMuSMs5FO20kyeJmBn/nHlSNNdzW0jtqrFk0v yktKi1OM0HtT9As67lUizqm0qXqG+r6xRtPD1PjY=
Authentication-Results: mars.atomiclayer.com; spf=pass (sender IP is 101.190.18.154) smtp.mailfrom=david@goldsteinreport.com smtp.helo=David2019Desktop
Received-SPF: pass (mars.atomiclayer.com: connection is authenticated)
From: David Goldstein <david@goldsteinreport.com>
To: newsclips@ietf.org
Date: Mon, 26 Feb 2024 16:14:54 +1100
Message-ID: <000001da6872$bd1855a0$374900e0$@goldsteinreport.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_NextPart_000_0001_01DA68CE.F08A7B50"
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdpocrR9YI6TdKc6SsqsnPNdbdEjDw==
Content-Language: en-au
X-PPP-Message-ID: <170892449550.164902.17681440259582184911@mars.atomiclayer.com>
X-PPP-Vhost: goldsteinreport.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/newsclips/k81uOsmXFG5HYv80ElEuSpZXH_E>
Subject: [Newsclips] IETF SYN-ACK Newspack 2024-02-26
X-BeenThere: newsclips@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF News Clips <newsclips.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/newsclips>, <mailto:newsclips-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/newsclips/>
List-Post: <mailto:newsclips@ietf.org>
List-Help: <mailto:newsclips-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/newsclips>, <mailto:newsclips-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 26 Feb 2024 05:15:01 -0000

The IETF SYN-ACK Newspack collects IETF-related items from a variety of news outlets and other online publications. They do not represent the views of the IETF and are not checked for factual accuracy.

 

**********************

IETF IN THE NEWS

**********************

What’s the deal with Media Over QUIC?

In 2022, the IETF formed a working group for Media over QUIC (MoQ) — a media delivery solution that has the potential to transform how media during live streaming, real-time collaboration, gaming, and more, is sent and received.

< <https://blog.apnic.net/2024/02/20/whats-the-deal-with-media-over-quic/> https://blog.apnic.net/2024/02/20/whats-the-deal-with-media-over-quic/>

 

KeyTrap algorithmic complexity attacks exploit fundamental design flaw in DNSSEC

My fellow researchers and I from the National Research Center for Applied Cybersecurity ATHENE have uncovered a critical flaw in the design of DNSSEC, which introduced a vulnerability in all DNSSEC-validating DNS resolver implementations. We developed a new class of algorithmic complexity attacks, dubbed ‘KeyTrap’. ... The DNS has evolved into a critical infrastructure of the Internet; it underlies a wide range of applications and facilitates new and emerging technologies. The central role of the DNS has also made it a common target of attacks. To prevent attacks against the DNS, the IETF standardized security extensions for DNS in DNSSEC. To gain security benefits, domains should be digitally signed, and the DNS resolvers should use digital signatures to validate the authenticity of the DNS records in responses.

< <https://blog.apnic.net/2024/02/19/keytrap-algorithmic-complexity-attacks-exploit-fundamental-design-flaw-in-dnssec/> https://blog.apnic.net/2024/02/19/keytrap-algorithmic-complexity-attacks-exploit-fundamental-design-flaw-in-dnssec/>

 

Cisco and DISH Wireless Test 5G Hybrid Cloud Network Slicing Solution, Speeding Launch of New Enterprise Services [news release]

Cisco and DISH Wireless announced today a proof-of-concept test for a first-of-its kind network slicing solution in a hybrid cloud environment based on Cisco hardware and software. ... Cisco is a leading contributor to the IETF, helping to define the key dimensions of slicing. Together, Cisco and DISH Wireless are working to enable new capabilities in routing and network automation, while providing service assurance and driving simplicity, monetization and sustainability. 

< <https://newsroom.cisco.com/c/r/newsroom/en/us/a/y2024/m02/cisco-and-dish-wireless-test-5g-hybrid-cloud-network-slicing-solution-speeding-launch-of-new-enterprise-services.html> https://newsroom.cisco.com/c/r/newsroom/en/us/a/y2024/m02/cisco-and-dish-wireless-test-5g-hybrid-cloud-network-slicing-solution-speeding-launch-of-new-enterprise-services.html>

 

Nokia unveils industry’s first Multi-Access Edge Slicing innovation with e& UAE at Mobile World Congress

... It also supports slice service continuity between 4G, 5G, FWA/Wi-Fi and FA/Wi-Fi. This enables e& UAE to provide the same subscriber experience across all access network technologies. Nokia’s solution is based on industry standards including 3GPP and IETF and works seamlessly in multi-vendor networks.

< <https://www.nokia.com/about-us/news/releases/2024/02/19/nokia-unveils-industrys-first-multi-access-edge-slicing-innovation-with-e-uae-at-mobile-world-congress/> https://www.nokia.com/about-us/news/releases/2024/02/19/nokia-unveils-industrys-first-multi-access-edge-slicing-innovation-with-e-uae-at-mobile-world-congress/>

 

Bluesky starts letting users host their own servers

... All told, today’s Bluesky will still look very different from the Bluesky of the future. Independent moderation is also expected to arrive at Bluesky sometime soon. The platform is gradually taking more steps to give third-party developers and users more control over their experiences online. And Bluesky may no longer retain ownership of its AT protocol. CEO Jay Graber told The Verge that the plan is to hand over control of the AT protocol to a web standards body like the IETF.

< <https://www.theverge.com/2024/2/22/24080334/bluesky-self-hosting-servers-data-federated> https://www.theverge.com/2024/2/22/24080334/bluesky-self-hosting-servers-data-federated>

< <https://www.msn.com/en-us/news/technology/bluesky-will-finally-let-users-host-their-own-servers/ar-BB1iJCP5> https://www.msn.com/en-us/news/technology/bluesky-will-finally-let-users-host-their-own-servers/ar-BB1iJCP5>

 

Bluesky ya permite a los usuarios gestionar sus propios servidores [Bluesky already allows users to manage their own servers]

... En un futuro cercano, Bluesky anticipa la implementación de moderación independiente, lo que añadirá otra capa de personalización y control sobre el contenido. Además, existe el plan de traspasar la gestión del Protocolo AT a un organismo de estándares web, como el IETF, marcando otro hito en su compromiso con una internet descentralizada y abierta.

< <https://wwwhatsnew.com/2024/02/24/bluesky-ya-permite-a-los-usuarios-gestionar-sus-propios-servidores/> https://wwwhatsnew.com/2024/02/24/bluesky-ya-permite-a-los-usuarios-gestionar-sus-propios-servidores/>

 

Bluesky: gli utenti ora possono ospitare i propri server [Bluesky: Users can now host their servers]

... Bluesky ha in programma di introdurre presto anche la moderazione indipendente, che darà agli utenti e agli sviluppatori di terze parti più potere sulle regole e le norme della rete. Bluesky potrebbe anche rinunciare alla proprietà del suo protocollo AT, e cederlo a un’organizzazione di standardizzazione del web come l’IETF. Questo è quanto ha dichiarato il CEO di Bluesky, Jay Graber, a The Verge.

< <https://www.punto-informatico.it/bluesky-utenti-possono-ospitare-propri-server/> https://www.punto-informatico.it/bluesky-utenti-possono-ospitare-propri-server/>

< <https://www.msn.com/it-it/notizie/tecnologiaescienza/bluesky-gli-utenti-ora-possono-ospitare-i-propri-server/ar-BB1iKCoa> https://www.msn.com/it-it/notizie/tecnologiaescienza/bluesky-gli-utenti-ora-possono-ospitare-i-propri-server/ar-BB1iKCoa>

 

**********************

IETF COMMUNITY NOTES

**********************

Google and consortium of local organizations to host first Australian IETF meeting in over 20 years

More than 1000 leading technologists from around the world are expected to gather in-person and online for the 119th IETF meeting in Brisbane, Queensland, Australia on 16-22 March 2024.

< <https://www.ietf.org/blog/google-and-consortium-of-local-organizations-to-host-first-australian-ietf-meeting-in-over-20-years/> https://www.ietf.org/blog/google-and-consortium-of-local-organizations-to-host-first-australian-ietf-meeting-in-over-20-years/>

 

JSONPath: from blog post to RFC in 17 years

Today the JSONPath RFC (RFC 9535) proposed standard was published, precisely 17 years after Stefan Gössner wrote his influential blog post JSONPath – XPath for JSON that resulted in some 50 implementations in various languages.

< <https://www.ietf.org/blog/jsonpath-rfc/> https://www.ietf.org/blog/jsonpath-rfc/>

 

**********************

SECURITY & PRIVACY

**********************

Internet can easily be disrupted due to an old design flaw

A design flaw in security extensions on the network protocol allows hackers to cut off large parts of the world from the internet. Researchers clarified the danger with the development of a KeyTrap attack that requires only a single DNS packet.

< <https://www.techzine.eu/blogs/security/116698/internet-can-easily-be-disrupted-due-to-an-old-design-flaw/> https://www.techzine.eu/blogs/security/116698/internet-can-easily-be-disrupted-due-to-an-old-design-flaw/>

 

KeyTrap algorithmic complexity attacks exploit fundamental design flaw in DNSSEC

My fellow researchers and I from the National Research Center for Applied Cybersecurity ATHENE have uncovered a critical flaw in the design of DNSSEC, which introduced a vulnerability in all DNSSEC-validating DNS resolver implementations. We developed a new class of algorithmic complexity attacks, dubbed ‘KeyTrap’.

< <https://blog.apnic.net/2024/02/19/keytrap-algorithmic-complexity-attacks-exploit-fundamental-design-flaw-in-dnssec/> https://blog.apnic.net/2024/02/19/keytrap-algorithmic-complexity-attacks-exploit-fundamental-design-flaw-in-dnssec/>

 

KeyTrap ‘the most devastating vulnerability ever found in DNSSEC’

A security vulnerability in the DNSSEC standard that could crash DNS resolution in software such as BIND and services such as Cloudflare and Google Public DNS has been called “the most devastating vulnerability ever found in DNSSEC”.

< <https://domainincite.com/29528-keytrap-the-most-devastating-vulnerability-ever-found-in-dnssec> https://domainincite.com/29528-keytrap-the-most-devastating-vulnerability-ever-found-in-dnssec>

 

**********************

QUANTUM NETWORKING

**********************

EU quantum internet experts, industry actors discuss ways to lead next digital connectivity revolution

Policy leaders, scientists and executives from the European Parliament, European Commission, world-leading European universities, start-ups and industry giants gathered recently to chart next steps in advancing Europe’s technological leadership in quantum internet technology.

< <https://quantuminternetalliance.org/2024/02/19/eu-quantum-internet-experts-industry-actors-discuss-ways-to-lead-next-digital-connectivity-revolution/> https://quantuminternetalliance.org/2024/02/19/eu-quantum-internet-experts-industry-actors-discuss-ways-to-lead-next-digital-connectivity-revolution/>

 

**********************

NEW TRANSPORT PROTOCOLS

**********************

6G heads toward the light

In a couple of years, the chief standardisation body behind these networks, 3GPP, expects to start work on defining what goes into 6G.

< <https://www.newelectronics.co.uk/content/features/6g-heads-toward-the-light> https://www.newelectronics.co.uk/content/features/6g-heads-toward-the-light>

 

Seamless Air Alliance fosters integration of 3GPP 5G non-terrestrial networks

The Seamless Air Alliance (SAA), an entity comprised of airlines, technology leaders and suppliers that aims to develop global standards for Inflight Connectivity (IFC), has announced it will foster the development and integration of 3GPP specified 5G NTN (Non-Terrestrial Networks) into the aviation sector. The aim is to enable future seamless connectivity between terrestrial and non-terrestrial satellite networks.

< <https://www.aircraftinteriorsinternational.com/news/inflight-connectivity/seamless-air-alliance-fosters-integration-of-3gpp-5g-non-terrestrial-networks.html> https://www.aircraftinteriorsinternational.com/news/inflight-connectivity/seamless-air-alliance-fosters-integration-of-3gpp-5g-non-terrestrial-networks.html>

 

Seamless Air Alliance To Foster Integration Of 3GPP 5G Non-Terrestrial Networks (NTN) Into The Aviation Sector [news release]

Seamless Air Alliance (SAA), the leading developer of global standards for Inflight Connectivity (IFC), today announced it will foster the development and integration of 3GPP specified 5G NTN into the aviation sector to enable future seamless connectivity between terrestrial and non-terrestrial satellite networks.

< <https://www.seamlessalliance.com/wp-content/uploads/SAA_Announcement_February-22.pdf> https://www.seamlessalliance.com/wp-content/uploads/SAA_Announcement_February-22.pdf>

 

**********************

OTHERWISE NOTEWORTHY

**********************

Microsoft catches the Wi-Fi 7 wave with Windows 11

More than a month after the Wi-Fi alliance introduced certification for Wi-Fi 7 devices, Microsoft has added support for the technology to Windows 11.

< <https://www.theregister.com/2024/02/24/microsoft_adds_wifi_7_to_windows_11/> https://www.theregister.com/2024/02/24/microsoft_adds_wifi_7_to_windows_11/>
< <https://www.msn.com/en-us/lifestyle/shopping/microsoft-catches-the-wi-fi-7-wave-with-windows-11/ar-BB1iNhSV> https://www.msn.com/en-us/lifestyle/shopping/microsoft-catches-the-wi-fi-7-wave-with-windows-11/ar-BB1iNhSV>

------

David Goldstein

email:  <mailto:david@goldsteinreport.com> david@goldsteinreport.com

web:  <http://goldsteinreport.com/> http://goldsteinreport.com/

Twitter:  <https://twitter.com/goldsteinreport> https://twitter.com/goldsteinreport

phone: +61 418 228 605 - mobile; +61 2 9663 3430 - office/home