[Newsclips] IETF SYN-ACK Newspack 2021-06-14

David Goldstein <david@goldsteinreport.com> Mon, 14 June 2021 13:04 UTC

The IETF SYN-ACK Newspack collects IETF-related items from a variety of news outlets and other online publications. They do not represent the views of the IETF and are not checked for factual accuracy.





Opinion: Is big necessarily bad? by Geoff Huston

The IRTF is a research-oriented part of the larger IETF structure. It has several research groups. One of which, DINRG, is looking at decentralized Internet infrastructure.

< <https://www.potaroo.net/ispcol/2021-06/centrality.html> https://www.potaroo.net/ispcol/2021-06/centrality.html>

< <https://blog.apnic.net/2021/06/07/opinion-is-big-necessarily-bad/> https://blog.apnic.net/2021/06/07/opinion-is-big-necessarily-bad/>


How was Huawei named Gartner Peer Insights Customers' Choice Eight Times in Three Consecutive Years? [news release]

... These efforts are paying off. For example, by the end of 2019, Huawei had obtained more than 8600 patents in the data communication field. At the IETF, Huawei serves in more working group chairs and high-end positions than any other vendor. Huawei has also been actively engaged in developing 60% of the standards for Segment Routing over IPv6 (SRv6) — the next-generation mainstream network protocol — as well as driving its commercial deployments worldwide.

< <https://e.huawei.com/en/eblog/enterprise-networking/2021/huawei-wins-gartners-customer-choice-networking> https://e.huawei.com/en/eblog/enterprise-networking/2021/huawei-wins-gartners-customer-choice-networking>


How Can We Alleviate IPv4 Address Exhaustion [IPXO Sponsored Post]

Back in the 1980s, no one would have foreseen that the Internet would grow the way it did and that IPv4 addresses would become a scarce asset. Today, we face a shortage of available IPs and the emergence of a secondary IP address market, proving that IPv4 addresses are sought after and are a valuable commodity. The current market climate presents an opportunity for IP owners to monetize their unused IPv4 resources and an opportunity for internet-facing businesses to acquire said resources to scale their operations. ... In November 1991, IETF created the Routing and Addressing Group (ROAD) to tackle the scalability problem caused by the classful network allocation system.

< <https://www.circleid.com/posts/20210610-how-can-we-alleviate-ipv4-address-exhaustion/> https://www.circleid.com/posts/20210610-how-can-we-alleviate-ipv4-address-exhaustion/>


Commentary: What if another widespread Internet outage happens?

... We also have Singaporeans volunteering their expertise on the IETF which oversees the technical developments of the engineering running the Internet. Others spend attending the Internet Governance Forum in which issues on the governance of the Internet are discussed and debated.

< <https://www.channelnewsasia.com/news/commentary/internet-outage-fastly-cnd-server-how-did-it-happen-websites-14993846> https://www.channelnewsasia.com/news/commentary/internet-outage-fastly-cnd-server-how-did-it-happen-websites-14993846>


Is the new decentralized Internet or Web 3.0 possible?

... A small number of companies in the Internet’s key service areas (search engines, e-mail, etc.), infrastructure (global transmission, content distribution networks, cloud computing services, etc.), and even to some extent, have a virtual monopoly standardization (IETF , ICANN/IANA, W3C, etc.). This equation is unprecedented, and their status has become almost insurmountable.

< <https://quebecnewstribune.com/blockchain/is-the-new-decentralized-internet-or-web-3-0-possible-15871/> https://quebecnewstribune.com/blockchain/is-the-new-decentralized-internet-or-web-3-0-possible-15871/>


Is a new decentralized internet, or Web 3.0, possible?

... A handful of companies hold a virtual monopoly within the internet in critical areas of services (search engines, email, etc.), infrastructures (global transit, content distribution networks, cloud computing services, etc.) and even, to some extent, internet standardization (IETF, ICANN/IANA, W3C, etc.). The equation is unprecedented, and their position has become virtually impenetrable.

< <https://cointelegraph.com/news/is-a-new-decentralized-internet-or-web-3-0-possible> https://cointelegraph.com/news/is-a-new-decentralized-internet-or-web-3-0-possible>


Five things we learned from Tearsheet’s second DataDay Conference

... The FDX governance model, which Cardinal said balances input from data recipients and data providers, follows the IETF model. Some practitioners emphasized that the adoption of common, interoperable standards through the FDX API is a work in progress.

< <https://tearsheet.co/data/five-things-we-learned-from-tearsheets-second-dataday-conference/> https://tearsheet.co/data/five-things-we-learned-from-tearsheets-second-dataday-conference/>


HID Global’s PKI-as-a-Service Platform supports certificate automation with ACME Protocol

... HID Global was an early supporter of the ACME IETF standard and, as the original cross signature for the protocol’s first digital certificates, helped fuel its adoption, along with the hypertext transfer protocol secure (HTTPS) websites that ACME enables.

< <https://www.sourcesecurity.com/news/hid-global-pki-as-a-service-platform-certificate-automation-acme-protocol-co-823-ga-npr.1623402706.html> https://www.sourcesecurity.com/news/hid-global-pki-as-a-service-platform-certificate-automation-acme-protocol-co-823-ga-npr.1623402706.html>


The IP Address

... Its IP tends have been held for private organizations by the IETF, an open guidelines’ association that creates and advances willful Internet norms, and the Internet Assigned Numbers Authority (IANA), a not-for-profit private American enterprise that manages worldwide IP address distribution.

< <https://sflcn.com/the-192-168-1-254-ip-address/> https://sflcn.com/the-192-168-1-254-ip-address/>


IPv6 vs IPv4: Was ist der Unterschied? IPv6 wird in Deutschland von rund 52 Prozent der Google-Nutzer verwendet. [IPv6 vs IPv4: What's the difference? IPv6 is used by around 52 percent of Google users in Germany.]

... In den 1990er-Jahren wurde klar, dass dieses Limit bei der Geschwindigkeit, mit der neue Geräte und Websites ans Netz gingen, irgendwann erreicht sein würde. Entsprechend erdachte die IETF, die sich mit der technischen Weiterentwicklung des Internets befasst, den neuen Standard IPv6. Seit 1998 ist dieser offiziell.

< <https://www.turn-on.de/tech/ratgeber/ipv6-vs-ipv4-was-ist-der-unterschied-631426> https://www.turn-on.de/tech/ratgeber/ipv6-vs-ipv4-was-ist-der-unterschied-631426>


¿Es posible una nueva Internet descentralizada o Web 3.0? [Is a new decentralized Internet or Web 3.0 possible?]

... Un puñado de empresas tiene un monopolio virtual dentro de Internet en áreas críticas de servicios (motores de búsqueda, correo electrónico, etc.), infraestructuras (tránsito global, redes de distribución de contenido, servicios de computación en la nube, etc.) e incluso, hasta cierto punto, Internet. estandarización (IETF, ICANN / IANA, W3C, etc.). La ecuación no tiene precedentes y su posición se ha vuelto prácticamente impenetrable.

< <https://www.ezanime.net/es-posible-una-nueva-internet-descentralizada-o-web-3-0/> https://www.ezanime.net/es-posible-una-nueva-internet-descentralizada-o-web-3-0/>


Leis nacionais não garantem segurança a uma rede transnacional como a internet [National laws do not guarantee security to a transnational network such as the Internet]

... Tem grupos no IETF que tratam de protocolos mais seguros, de criptografia inerente ao protocolo, de situações fim a fim. Em correio eletrônico, por exemplo, hoje é possível checar a origem do email para ver se ele sai de onde deveria sair, ou não. Tem filtragens. São adições que estão sendo feitas em voo.”

< <https://www.convergenciadigital.com.br/cgi/cgilua.exe/sys/start.htm?UserActiveTemplate=site&infoid=57226&sid=18> https://www.convergenciadigital.com.br/cgi/cgilua.exe/sys/start.htm?UserActiveTemplate=site&infoid=57226&sid=18>


La plate-forme PKI-as-a-Service de HID Global permet l’automatisation des certificats avec le protocole ACME [HID Global's PKI-as-a-Service platform enables certificate automation with ACME protocol]

... HID a été l’un des premiers partisans de la norme ACME IETF et, en tant que signature croisée d’origine pour les premiers certificats numériques du protocole, a contribué à alimenter son adoption ainsi que les sites Web sécurisés par protocole de transfert hypertexte (HTTPS) activés par ACME.

< <https://www.globalsecuritymag.fr/La-plate-forme-PKI-as-a-Service-de,20210610,112706.html> https://www.globalsecuritymag.fr/La-plate-forme-PKI-as-a-Service-de,20210610,112706.html>


「徹底解説v6プラス」ってどんな本? 著者のあきみちさんに聞いてみた [What kind of book is "Thorough Commentary v6 Plus"? I asked the author, Aki meach.]

... あきみち:SFC(慶應義塾大学 湘南藤沢キャンパス)では徳田・村井・中村・楠本合同研究室に所属していました。研究室ではWIDEの活動をしていて、そこでInteropのSTMやったり、IETFで発表したり、RFCのオーサー(執筆者)の一人になったりと、いろんな経験をしました。そのころ、研究室でのログイン名が「あきみち」だったので、今もネット上ではあきみちというハンドルネームを名乗っていたりします。

< <https://ascii.jp/elem/000/004/057/4057425/> https://ascii.jp/elem/000/004/057/4057425/>


達到 M2M 與 IoT 功能的應用層通訊協定選項 [Application layer communication protocol options to achieve M2M and IoT functions]

... 網際網路工程工作小組(IETF)制訂的受限型應用通訊協定(CoAP),可讓僅有最少記憶體與處理能力的裝置,彼此在低功率網路中進行通訊。可在超低額外負荷與要求下操作,且回應最小僅有四位元組。CoAP會避免使用複雜的傳輸堆疊,而改為使用UDP。

< <https://www.ctimes.com.tw/DispArt/tw/通訊協定/IIoT/應用層/Digi-Key/21060910561I.shtml> https://www.ctimes.com.tw/DispArt/tw/通訊協定/IIoT/應用層/Digi-Key/21060910561I.shtml>





Hackers can mess with HTTPS connections by sending data to your email server

When you visit an HTTPS-protected website, your browser doesn't exchange data with the webserver until it has ensured that the site's digital certificate is valid. That prevents hackers with the ability to monitor or modify data passing between you and the site from obtaining authentication cookies or executing malicious code on the visiting device.

< <https://arstechnica.com/gadgets/2021/06/hackers-can-mess-with-https-connections-by-sending-data-to-your-email-server/> https://arstechnica.com/gadgets/2021/06/hackers-can-mess-with-https-connections-by-sending-data-to-your-email-server/>


us: NIST Releases Tips & Tactics for Control System Cybersecurity

The impact of cybersecurity breaches on infrastructure control system owners/operators is more visible than ever before. Whether you work for an infrastructure owner/operator or are a consumer of an infrastructure service, the events of the past few months have made it clear that cybersecurity is an important factor in ensuring the safe and reliable delivery of goods and services. For infrastructure control system owners/operators, it can be challenging to address the range of cybersecurity threats, vulnerabilities and risks that can negatively impact their operations, especially with limited resources.

< <https://www.nist.gov/blogs/cybersecurity-insights/nist-releases-tips-tactics-control-system-cybersecurity> https://www.nist.gov/blogs/cybersecurity-insights/nist-releases-tips-tactics-control-system-cybersecurity>


nl: Tangled: A Cooperative Anycast Testbed

The research paper “Tangled: A Cooperative Anycast Testbed” has received the Best Experience Paper Award at the 2021 IFIP/IEEE International Symposium on Integrated Network Management. The paper was the product of research led by the University of Twente in collaboration with Tesorion, the University of Passo Fundo, the University of Rio Grande do Sul, and us at SIDN Labs.

< <https://www.sidnlabs.nl/en/news-and-blogs/tangled-a-cooperative-anycast-testbed> https://www.sidnlabs.nl/en/news-and-blogs/tangled-a-cooperative-anycast-testbed>


New TLS Attack Lets Attackers Launch Cross-Protocol Attacks Against Secure Sites

Researchers have disclosed a new type of attack that exploits misconfigurations in transport layer security (TLS) servers to redirect HTTPS traffic from a victim's web browser to a different TLS service endpoint located on another IP address to steal sensitive information.

< <https://thehackernews.com/2021/06/new-tls-attack-lets-attackers-launch.html> https://thehackernews.com/2021/06/new-tls-attack-lets-attackers-launch.html>


The race is on for quantum-safe cryptography

With her team of mathematicians at the US National Institute of Standards and Technology, Chen reached out to academic and industry cryptographers around the world to find algorithms that could resist new threats posed by quantum computers. Five years later, the project is almost complete. After three rounds of elimination, Chen and her team have now narrowed the 69 submissions down to a final seven algorithms, with several winners to be named at the end of the year. If things go according to plan, the result will be a new set of NIST-certified algorithms — and a new measure of protection against the chaos of a fully operational quantum computer.

< <https://www.theverge.com/22523067/nist-challenge-quantum-safe-cryptography-computer-lattice> https://www.theverge.com/22523067/nist-challenge-quantum-safe-cryptography-computer-lattice>

< <https://www.msn.com/en-us/money/other/the-race-is-on-for-quantum-safe-cryptography/ar-AAKWKug> https://www.msn.com/en-us/money/other/the-race-is-on-for-quantum-safe-cryptography/ar-AAKWKug>


Global Advisory Board on digital threats during conflict

A high-level advisory board is supporting the ICRC on the legal and policy challenges to protect civilians from cyber threats and other digital risks during armed conflict

< <https://www.icrc.org/en/document/global-advisory-board-digital-threats> https://www.icrc.org/en/document/global-advisory-board-digital-threats>


Toshiba sees global quantum internet after Cambridge breakthrough

Toshiba’s UK laboratory in Cambridge has pushed the distance for secure quantum communications to 600km. The company, which hails this as a significant advance towards building a global quantum internet, says previous commercial quantum key distribution systems were limited to 100-200km of fibre.

< <https://www.capacitymedia.com/articles/3828827/toshiba-sees-global-quantum-internet-after-cambridge-breakthrough> https://www.capacitymedia.com/articles/3828827/toshiba-sees-global-quantum-internet-after-cambridge-breakthrough>





eu: Antitrust: Commission publishes initial findings of consumer Internet of Things sector inquiry

The European Commission has published today the preliminary results of its competition sector inquiry into markets for consumer Internet of Things (IoT) related products and services in the European Union. The Preliminary Report confirms the rapid growth of these markets, but also identifies potential concerns put forward by the respondents to the sector inquiry.

< <https://ec.europa.eu/commission/presscorner/detail/en/ip_21_2884> https://ec.europa.eu/commission/presscorner/detail/en/ip_21_2884>


eu: Statement by Executive Vice-President Margrethe Vestager on the initial findings of the Consumer Internet of Things Sector Inquiry

Sector inquiries help us identify potential competition concerns in markets where early intervention may be needed. This is all the more important in markets with strong network and scale effects that are growing and developing.

< <https://ec.europa.eu/commission/presscorner/detail/en/speech_21_2926> https://ec.europa.eu/commission/presscorner/detail/en/speech_21_2926>


eu: Questions & Answers - Antitrust: Commission publishes preliminary report on consumer Internet of Things sector inquiry

The European Commission has published today the preliminary report on the initial findings of its ongoing competition sector inquiry into the consumer Internet of Things (IoT) which was launched in July 2020.

< <https://ec.europa.eu/commission/presscorner/detail/en/qanda_21_2908> https://ec.europa.eu/commission/presscorner/detail/en/qanda_21_2908>


Swiss startup collects environmental data from street to street

Urban residents everywhere complain about worsening noise and traffic. But how much is too much, how can you know the actual trends, and how can cities safeguard their ecological integrity and living quality through effective, evidence-based decision making? A Swiss-based startup is equipping taxis and other public transport with microsensors to capture data on air quality, temperature and humidity, as well as road quality and noise pollution.

< <https://www.itu.int/en/myitu/News/2021/06/08/12/17/Swiss-startup-collects-environmental-data-from-street-to-street> https://www.itu.int/en/myitu/News/2021/06/08/12/17/Swiss-startup-collects-environmental-data-from-street-to-street>


Here’s What 6G Will Be, According to the Creator of Massive MIMO: Tom Marzetta, the director of NYU Wireless, explains how it will be the next level of human-to-human communication

Tom Marzetta is the director of NYU Wireless, New York University’s research center for cutting-edge wireless technologies. Prior to joining NYU Wireless, Marzetta was at Nokia Bell Labs, where he developed massive MIMO. Massive MIMO (short for “multiple-input multiple-output”) allows engineers to pack dozens of small antennas into a single array. The high number of antennas means more signals can be sent and received at once, dramatically boosting a single cell tower’s efficiency.

< <https://spectrum.ieee.org/tech-talk/telecom/wireless/heres-what-6g-will-be-according-to-the-creator-of-massive-mimo> https://spectrum.ieee.org/tech-talk/telecom/wireless/heres-what-6g-will-be-according-to-the-creator-of-massive-mimo>


New ITU standards to boost Fibre to the Home from 10G to 50G

Millions of homes and businesses access global networks through the cost-efficient Passive Optical Network (PON) technologies standardized by ITU. The next generation, known as “Higher Speed PON”, will provide for speeds of 50 Gbit/s per wavelength, up from the 10 Gbit/s of its predecessors.

< <https://www.itu.int/en/myitu/News/2021/06/10/12/10/New-ITU-standards-to-boost-Fibre-to-the-Home-from-10G-to-50G> https://www.itu.int/en/myitu/News/2021/06/10/12/10/New-ITU-standards-to-boost-Fibre-to-the-Home-from-10G-to-50G>





A new protocol to transfer data over the Internet

Fastly, an internet infrastructure company, says the new internet protocol QUIC improves speed and security of data transfer, and has a faster recovery mechanism.

< <https://www.thehindu.com/sci-tech/technology/a-new-protocol-to-transfer-data-over-the-internet/article34780167.ece> https://www.thehindu.com/sci-tech/technology/a-new-protocol-to-transfer-data-over-the-internet/article34780167.ece>


QUIC.cloud With NameHero Is Production Ready! Pricing Changes

On the 2nd of June 2021, QUIC.cloud finally exited beta and entered production status. With this, they’ve finalized their pricing, introduced new regional pricing, and are having a 50% discount on data transfer till the end of the year. Also, it becomes the first CDN to support HTTP/3 both for connections to the origin server, as well as the CDN POP itself.

< <https://www.namehero.com/startup/quic-cloud-with-namehero-is-production-ready-pricing-changes/> https://www.namehero.com/startup/quic-cloud-with-namehero-is-production-ready-pricing-changes/>


No, Apple's Private Relay is not a VPN

When Apple announced a trio of new privacy perks for its iCloud Plus subscription service Monday at Apple's WWDC event, the headliner was Private Relay -- a browser-based encryption boost, aimed at the growing number of people who are turning to virtual private networks for better online privacy.

< <https://www.cnet.com/news/no-apples-private-relay-is-not-a-vpn/> https://www.cnet.com/news/no-apples-private-relay-is-not-a-vpn/>


Digging into Apple’s iCloud Private Relay

... On the speed front, Private Relay uses QUIC (HTTP/3) connections, which happen over UDP port 443, which are engineered to be quite speedy.

< <https://www.macobserver.com/tips/deep-dive/digging-into-apples-icloud-private-relay/> https://www.macobserver.com/tips/deep-dive/digging-into-apples-icloud-private-relay/>


QUIC, el estándar que busca una internet más rápida, estable y segura [QUIC, the standard that seeks a faster, more stable and safer internet]

Seguridad, estabilidad y velocidad. Estos son los requisitos primarios que todos los usuarios de internet demandan. Especialmente los dos últimos, porque el primero todavía tiene muchos agujeros en cuanto al uso de la red de redes.

< <http://www.juventudrebelde.cu/suplementos/informatica/2021-06-09/quic-el-estandar-que-busca-una-internet-mas-rapida-estable-y-segura> http://www.juventudrebelde.cu/suplementos/informatica/2021-06-09/quic-el-estandar-que-busca-una-internet-mas-rapida-estable-y-segura>


Pomocou týchto nastavení mobilnej verzie prehliadača Chrome môžete zvýšiť rýchlosť načítania stránok [Use these chrome mobile settings to increase the speed at which pages load]

... Teraz by sme vám chceli dať do pozornosti ešte experimentálne funkcie prehliadača, ku ktorým sa dostanete pomocou otvorenia adresy chrome://flags. Odporúčame vám v rámci ponuky vyhľadať nasledujúce nastavenia: „Parallel downloading“, „Smooth Scrolling“ a „Experimental QUIC protocol“. Pri všetkých týchto nastavenia zvoľte možnosť Enabled, teda zapnuté. Následne reštartujte prehliadač.

< <https://vosveteit.sk/pomocou-tychto-nastaveni-mobilnej-verzie-prehliadaca-chrome-mozete-zvysit-rychlost-nacitania-stranok/> https://vosveteit.sk/pomocou-tychto-nastaveni-mobilnej-verzie-prehliadaca-chrome-mozete-zvysit-rychlost-nacitania-stranok/>


Cara Mempercepat Download di Chrome [How to Speed Up Downloads in Chrome]

... Aktifkan QUIC Protocol: QUIC Protocol pula salah satu fitur yang bisa mempercepat koneksi internet Kamu. Nyatanya, Kamu pula bisa mempercepat aktivitas download dengan mengaktifkan fitur ini. Ini yakni fitur dimana Google Chrome akan menjauhi beberapa perjalanan server yang dianggap tidak penting.

< <https://www.harapanrakyat.com/2021/06/cara-mempercepat-download-di-chrome/> https://www.harapanrakyat.com/2021/06/cara-mempercepat-download-di-chrome/>


Что такое iCloud Private Relay от Apple. Чем он отличается от VPN? [What is Apple's iCloud Private Relay? How is it different from a VPN?]

... Вообще нет. Технически Private Relay использует протоколы подключения QUIC (HTTP / 3), которые происходят через UDP-порт 443. Звучит страшно, но вам из всего этого нужно знать только одно: все эти протоколы не съедают скорость.

< <https://1k.com.ua/chto-takoe-icloud-private-relay-ot-apple-chem-on-otlichaetsya-ot-vpn.html> https://1k.com.ua/chto-takoe-icloud-private-relay-ot-apple-chem-on-otlichaetsya-ot-vpn.html>





Major internet outage ‘shows infrastructure needs urgent fixing’

One of the world’s biggest web outages should act as a “wake-up call” that internet infrastructure has become dangerously over-centralised and lacks resilience, security experts have warned.

< <https://www.theguardian.com/technology/2021/jun/08/security-warning-error-cloud-websites-offline-outage> https://www.theguardian.com/technology/2021/jun/08/security-warning-error-cloud-websites-offline-outage>


ETSI publishes new Work Programme

“Innovation never stands still. At ETSI our #1 priority is supporting our members’ standardization needs as they embrace the opportunities and challenges of a fast-evolving digital ecosystem. Now in our fourth decade as a European Standards Organization, we are keener than ever to explore new working methods while broadening the scope of our own activities to reflect our members’ interests” says Luis Jorge Romero introducing this Work Programme.

< <https://www.etsi.org/newsroom/news/1931-etsi-publishes-new-work-programme> https://www.etsi.org/newsroom/news/1931-etsi-publishes-new-work-programme>


What really went down when the internet went down

Some people noticed the problem when they couldn’t access The Guardian. Others struggled with the New York Times or the UK government’s websites. Others couldn’t buy things Amazon. People started to panic as another global outage struck internet users. The latest outage, which began just before 11am UK time, appears to have hit Fastly, a content distribution network, or CDN, and knocked out every company that used its services to support their websites. Across the internet, “Error 503 service unavailable” appeared on people’s screens.

< <https://www.wired.co.uk/article/fastly-internet-outage> https://www.wired.co.uk/article/fastly-internet-outage>


MIT study compares the four largest internet meganetworks

In recent months, people have reported seeing a parade of star-like points passing across the night sky. The formation is not extraterrestrial, or even astrophysical in origin, but is in fact a line of satellites, recently launched by SpaceX, that will eventually be joined by many more to form Starlink, a “megaconstellation” that will wrap around the Earth as a global network designed to beam high-speed internet to users anywhere in the world.

< <https://news.mit.edu/2021/study-compares-internet-meganetworks-0610> https://news.mit.edu/2021/study-compares-internet-meganetworks-0610>


