The number of subscribers to the IETF SYN-ACK Newspack keeps expanding, so for those that have come onboard since July, just a recap. The goal of the IETF SYN-ACK Newspack is to help track where, when, and how IETF-related issues are presented in a variety of news outlets and other online publications around the world from a variety of freely available news outlets and other online publications on a weekly basis, every Monday. They do not represent the views of the IETF and are not checked for factual accuracy.


A few of the earlier subscribers have given feedback on this news service and it’s really valuable. So whether you’re a newcomer or one of the originals, please keep the feedback coming. In the first instance please send it to Greg Wood and if you wish, cc me in. We’ve made a number of changes, mostly to appearance and layout. But whether it’s layout, appearance, content and/or sources, if you’ve got comments, please let us know.


For now, happy reading and I hope you find it useful.


Kind regards,






Internet Society and IETF agreement ensures the continuity of critical work in creating open standards

The Internet Society and the IETF announced a new long term strategic agreement that will ensure the continuity of the IETF’s critical work in creating open standards that make the Internet work better.

< <https://www.helpnetsecurity.com/2020/12/01/internet-society-ietf/> https://www.helpnetsecurity.com/2020/12/01/internet-society-ietf/>


Internet Society Extends Its Significant Financial Support Commitment to the IETF

According to an announcement on Monday, the Internet Society has agreed to extend its existing financial commitment to the IETF for an additional term of six years. 

< <http://www.circleid.com/posts/20201201-isoc-extends-its-significant-financial-support-commitment-to-ietf/> http://www.circleid.com/posts/20201201-isoc-extends-its-significant-financial-support-commitment-to-ietf/>


IETF recommends E+H’s Internet security protocol

The cryptography working group in the IETF standards organization reported Oct. 27 that it picked CPace protocol from Endress+Hauser as a recommended method for use in Internet standards. After undergoing security analyses, CPace won a competition among submissions from several companies.

< <https://www.controlglobal.com/industrynews/2020/ietf-recommends-e-hs-internet-security-protocol/> https://www.controlglobal.com/industrynews/2020/ietf-recommends-e-hs-internet-security-protocol/>


Endress+Hauser establishes internet security standards

The cryptography working group within the IETF standards organization has chosen the CPace protocol — developed by Endress + Hauser AG — as a recommended method for use in internet security standards. After undergoing extensive security analyses, the CPace protocol emerged as the winner in a competition among submissions from developers at several well-known companies.

< <https://www.chemengonline.com/endresshauser-establishes-internet-security-standards/> https://www.chemengonline.com/endresshauser-establishes-internet-security-standards/>


NASA interns extending internetworking off-world

... DTN has been developed collaboratively by NASA, academic institutions, and commercial industry. The SCaN program is creating NASA's DTN networks to Consultative Committee for Space Data Systems (CCSDS) and the IETF standards.

< <https://www.eurekalert.org/pub_releases/2020-12/nsfc-nie120220.php> https://www.eurekalert.org/pub_releases/2020-12/nsfc-nie120220.php>


Huawei’s Global Advancement of Alternative Internet Protocols

... The IETF, a nonprofit based in California and formed in 1986, is the primary open standards organization that develops voluntary internet protocols of this kind. IETF’s standards development process is principally guided by five goals: technical excellence; prior implementation and testing; clear, concise, and easily understood documentation; openness and fairness; and timeliness (IETF, undated). Members participating in IETF processes review proposals that, once ultimately agreed upon, can be voluntarily put into place by internet companies around the world. In addition to members from academic, research, and nonprofit communities, internet companies are themselves often heavily involved in IETF standards development processes.

< <https://jamestown.org/program/huaweis-global-advancement-of-alternative-internet-protocols/> https://jamestown.org/program/huaweis-global-advancement-of-alternative-internet-protocols/>


JavaScript Turns 25

... JavaScript was always free, and Netscape revealed in its announcement post that it would propose JavaScript to the W3 Consortium (W3C) and the IETF as an open Internet scripting language standard. Today, the standardized version of JavaScript is called ECMAScript, after ECMA International (formerly called the European Computer Manufacturers Association).

< <https://www.thurrott.com/dev/244723/javascript-turns-25> https://www.thurrott.com/dev/244723/javascript-turns-25>

< <https://bestgamingpro.com/javascript-turns-25-thurrott-com/> https://bestgamingpro.com/javascript-turns-25-thurrott-com/>


Five Years of Lets Encrypt

... The success of Let's Encrypt was in only provisioning certificates with a limited lifetime – 90 days, to be precise. Before Let's Encrypt, certificates were generally created for an expiry of a year or two. This generally led to people forgetting about renewing the certificates, causing problems when the certificate subsequently expired, such as the Certificate Expiration problem on Azure in 2013. By enforcing a short certificate lifespan, it encouraged the development of automated solutions to acquire and renew certificates periodically. The ACMEv1 protocol was defined and created, and open-source utilities such as Certbot provided an easy means for an operating system to acquire and renew such certificates. The ACMEv1 protocol is now deprecated and the ACMEv2 protocol is now standardised as IETF RFC 8555 and now many ACMEv2 clients are available.

< <https://www.infoq.com/news/2020/12/five-years-lets-encrypt/> https://www.infoq.com/news/2020/12/five-years-lets-encrypt/>


Expert discusses keeping it green as a top priority for 2021

... As political and commercial drivers focus more on sustainability, this suggests an interesting road ahead, with government-backed commercial incentives likely to help drive this. For example, The Industrial Energy Transformation Fund (IETF) will support the development of technologies that enable businesses with high energy use to transition to a low-carbon future. The fund provides £315 million of funding up to 2024 for projects starting before April 2022, with minimum grants of £250,000 to support technologies such as more efficient cooling (Heat Exchange) systems.

< <https://www.intelligentcio.com/eu/2020/12/04/expert-discusses-keeping-it-green-as-a-top-priority-for-2021/> https://www.intelligentcio.com/eu/2020/12/04/expert-discusses-keeping-it-green-as-a-top-priority-for-2021/>


Internet Society investiert deutlich mehr Geld in die IETF-Standardisierung [Internet Society invests significantly more money in IETF standardization]

Die Standardisierer der IETF bekommen künftig deutlich mehr Geld von der Internet Society. Das soll auch für mehr Unabhängigkeit sorgen.

< <https://www.heise.de/news/Internet-Society-investiert-deutlich-mehr-Geld-in-die-IETF-Standardisierung-4977266.html> https://www.heise.de/news/Internet-Society-investiert-deutlich-mehr-Geld-in-die-IETF-Standardisierung-4977266.html>


Internet-Filter: Endlich klare Fehlermeldungen [Internet-Filter: Finally clear error messages]

Von der politischen Agenda, etwa in der EU, sind Filterideen für allerlei Inhalte nicht mehr wegzudenken. Für DNS-Filter zieht die Technik nun nach. Die IETF will versuchen, den Grund für gescheiterte DNS-Anfragen transparenter zu machen. Dafür hat die Organisation eine neue RFC-Spezifikation aufgelegt (Request For Comment). Im nächsten Schritt will eine kleine Gruppe noch einen Schritt weitergehen und die Möglichkeit vorsehen, die filternde Institution mittels einer eigenen URI anzuzeigen.

< <https://www.heise.de/news/Internet-Filter-Endlich-klare-Fehlermeldungen-4981320.html> https://www.heise.de/news/Internet-Filter-Endlich-klare-Fehlermeldungen-4981320.html>


Isoc.nl nam MMGA van eigen bestuurslid over [Isoc.nl took over MMGA from its own board member]

... De Internet Society is sinds 1992 een mondiale organisatie die zich vooral bezighoudt met de technologie van het internet ten behoeve van een ‘open, neutraal, gedecentraliseerd en voor iedereen toegankelijk en betrouwbaar internet’. Ook internationaal richten de activiteiten zich op infrastructuur en technologie. Zo is er deze week een belangrijke overeenkomst gesloten tussen Isoc en standaardisatieclub IETF voor nauwe samenwerking.

< <https://www.netkwesties.nl/1470/isoc-nl-nam-mmga-van-eigen-bestuurslid.htm> https://www.netkwesties.nl/1470/isoc-nl-nam-mmga-van-eigen-bestuurslid.htm>


IETF får ökade bidrag från Internet Society [IETF receives increased funding from internet society]

Förra veckan antog Internet Society (ISOC) en ny långtidsbudget och en av nyheterna är att man kommer bidra med 41,4 miljoner dollar (motsvarande 352 miljoner kronor till IETF under de kommande sex åren.

< <https://computersweden.idg.se/2.2683/1.744016/ietf-bidrag-isoc> https://computersweden.idg.se/2.2683/1.744016/ietf-bidrag-isoc>


Os participantes do Fórum de Peering do MSK-IX observaram que a indústria enfrentou novos desafios em meio à pandemia [Participants in the MSK-IX Peering Forum noted that the industry faced new challenges amid the pandemic]

... Em 12 de novembro, o MSK-IX Peering Forum continuou com uma mesa redonda sobre o tópico “Tecnologias avançadas como ameaças à segurança da informação”. Foi moderado por Mikhail Kader, Consultor Líder de Segurança da Informação na Rússia e no CIS, Cisco Systems. Mike Geller, arquiteto-chefe de segurança cibernética da Radware, Andrey Ivanov, chefe de desenvolvimento de serviços de segurança (Yandex.Cloud) e Eric Winke, diretor de assistência à Internet do IETF e engenheiro-chefe da Cisco, também participaram da discussão. Mikhail Kader concluiu a discussão concluindo que o impacto das plataformas de hardware na vulnerabilidade de novos protocolos está incluído nos padrões de expectativas do usuário. E são as soluções de hardware que são a base da confiança do usuário em novas implementações.

< <https://avalanchenoticias.com.br/eventos-e-eventos-da-industria-de-ti-exposicoes-foruns/os-participantes-do-forum-de-peering-do-msk-ix-observaram-que-a-industria-enfrentou-novos-desafios-em-meio-a-pandemia/> https://avalanchenoticias.com.br/eventos-e-eventos-da-industria-de-ti-exposicoes-foruns/os-participantes-do-forum-de-peering-do-msk-ix-observaram-que-a-industria-enfrentou-novos-desafios-em-meio-a-pandemia/>


「IIJ Technical WEEK 2020」オンライン開催、12月14日から4日間 [IIJ Technical WEEK 2020 online, 4 days from December 14]

... その後5分間の「今抑えておきたいQUIC」で、Googleで開発された新しいトランスポートプロトコルであるQUICに関して、IETF QUICの位置付けや現状を説明する。最後に、5分間で全体の質疑応答も行う。 

< <https://internet.watch.impress.co.jp/docs/news/1293205.html> https://internet.watch.impress.co.jp/docs/news/1293205.html>


「レッツノート」2020年秋冬モデルの<<テレワーク推奨モデル>>って何!? [What is the << Telework recommended model >> of the "Let's Note" Fall / Winter 2020 model !?]

最近、JSON(ジェーソン)を用いたデータ交換が増えてきた。JSONとは13日の金曜日に来るヤツでもなければ、スーパーマーケットの名前でもない。「JavaScript Object Notation」の略で、当初はJavaScriptでオブジェクトデータをファイルに保存したり、通信で送信するなどの前に「シリアライズ」するための仕様だったが、現在ではECMAやIETFで標準化されており、さまざまな言語から利用が可能だ。

< <https://ascii.jp/elem/000/004/036/4036376/> https://ascii.jp/elem/000/004/036/4036376/>


IPv6技术与应用论坛在深圳开讲,为高校IPv6部署提供经验 [The IPv6 Technology and Application Forum was held in Shenzhen to provide experience for the deployment of IPv6 in universities]

... 本场论坛特设SAVA专场,来自清华大学的三位专家分别进行分享。据介绍,SAVA是清华大学在国际上首次提出的真实源地址验证体系结构,研究了接入网内、域内和域间三个层次的源地址验证关键技术和基于真实地址的用户标识与管理技术,现已形成系列化IETF国际标准。

< <https://www.edu.cn/xxh/zt/27cernet/dt/202012/t20201203_2051783.shtml> https://www.edu.cn/xxh/zt/27cernet/dt/202012/t20201203_2051783.shtml>


IPv6进行时,别被这些因素绊住脚 [When IPv6 is underway, don’t get caught up in these factors]

... “IPv6是IETF(互联网工程任务组)设计的用于替代现行版本IP协议(IPv4)的下一代互联网IP协议,是扩展版的统一语言。”中国工程院院士吴建平在接受科技日报记者采访时表示。

< <http://it.people.com.cn/n1/2020/1202/c1009-31951935.html> http://it.people.com.cn/n1/2020/1202/c1009-31951935.html>


李星:抓住历史机遇,推进IPv6发展 [Li Xing: Seize the historical opportunity to promote the development of IPv6]

... 李星最后表示,建设网络强国是当前我国发展的重要使命,如何突破核心技术建设网络强国?应全面落实以下三点:一是国际标准的制定权,如参与互联网RFC标准制定,参与IPv6核心技术标准制定;二是国际组织的话语权,如参与IETF、竞选IAB等组织;三是基础设施的掌控权,如对IPv6互联网、路由、域名等基础设施的掌控。

< <http://www.edu.cn/xxh/zt/27cernet/dt/202012/t20201203_2052229.shtml> http://www.edu.cn/xxh/zt/27cernet/dt/202012/t20201203_2052229.shtml>


Участники Пирингового форума MSK-IX отметили, что отрасль достойно справилась с новыми вызовами на фоне пандемии [MSK-IX Peering Forum participants noted that the industry coped with new challenges amid the pandemic]

... 12 ноября Пиринговый форум MSK-IX продолжился круглым столом по теме «Перспективные технологии как угрозы информационной безопасности». Его вёл Михаил Кадер, ведущий консультант по информационной безопасности в России и СНГ, Cisco Systems. В обсуждении также принимали участие Майк Геллер, ведущий архитектор кибербезопасности в Radware, Андрей Иванов, руководитель направления развития сервисов безопасности («Яндекс.Облако») и Эрик Винке, директор по интернет-содействию в IETF и ведущий инженер в Cisco. Михаил Кадер подытожил дискуссию выводом о том, что влияние аппаратных платформ на уязвимость новых протоколов входит в стандарты ожиданий пользователей. И именно аппаратные решения — это основы доверия пользователей к новым внедрениям.

< <https://3dnews.ru/1027067/uchastniki-piringovogo-foruma-mskix-otmetili-chto-otrasl-dostoyno-spravilas-s-novimi-vizovami-na-fone-pandemii> https://3dnews.ru/1027067/uchastniki-piringovogo-foruma-mskix-otmetili-chto-otrasl-dostoyno-spravilas-s-novimi-vizovami-na-fone-pandemii>


网络5.0联盟:推动国内外协同 打造全球领先网络生态

... 据张新生介绍,2020年网络5.0联盟不断发展壮大,目前会员单位增加到了34家,而且取得了丰富的研究成果,包括高精度工业互联网、网络5.0需求和参考架构等重要白皮书,一系列标准文稿。网络5.0联盟还在CCSA完成了5项行业标准、立项了6个团体标准,并推动了多项IETF、IETU、ETSI、BDF等组织标准文稿研究。“网络5.0联盟不仅推动了国内标准的发展,也对国际标准的研究做出了贡献。”张新生表示。

< <http://news.ctocio.com.cn/yejie/2020/1204/44294.html> http://news.ctocio.com.cn/yejie/2020/1204/44294.html>





.NET 5 Runtime Improvements: from Functional to Performant Implementations

Software architects from the .NET runtime team recently presented several .NET 5 runtime improvements and how they achieved them. At .NET Conf 2020, Rich Lander, principal program manager on the .NET team, and Stephan Toub and Jan Kotas, software architects on the .NET team, conducted an online session entitled ".NET 5 Runtime Deep Dive with Rich Lander and the Architects". During this no-slides session, they covered various .NET 5 runtime improvements, including ARM64 support, HTTP/3, and support for single-file applications.

< <https://www.infoq.com/news/2020/12/net-5-runtime-improvements/> https://www.infoq.com/news/2020/12/net-5-runtime-improvements/>


Microsoft zeigt erste Pläne für .NET 6.0 [Microsoft is showing initial plans for .NET 6.0]

Rund einen halben Monat nach dem Erscheinen von .NET 5.0 am 10. November 2020 hat Microsoft erste Pläne für die Version 6.0 veröffentlicht, die im November nächsten Jahres erscheinen soll. Die Planung ist auf GitHub aufgeteilt in zahlreiche Themes, Epics und User Stories verfügbar. Zur einfacheren Übersicht bietet Microsoft die Website themesof.net mit einer hierarchischen Darstellung an. ... Auch an der Integration von Google RPC will Microsoft weiterarbeiten. So sollen sich fehlgeschlagene API-Aufrufe automatisch wiederholen lassen (Client Retry Support), und man will allgemein die Performance von gRPC und ASP.NET Core weiter steigern. Zudem soll .NET 6.0 auch HTTP/3 auf Basis von Quick UDP Internet Connections (QUIC) anstelle von TCP anbieten.

< <https://www.heise.de/news/Microsoft-zeigt-erste-Plaene-fuer-NET-6-0-4974521.html> https://www.heise.de/news/Microsoft-zeigt-erste-Plaene-fuer-NET-6-0-4974521.html>


DNS-over-TLS (DoT) vs. DNS-over-HTTPS (DoH) a šifrování DNS v Knot Resolveru [DNS-over-TLS (DoT) vs. DNS-over-HTTPS (DoH) and DNS encryption in Knot Resolver]

Než se pustíme do podrobností, koukněme na následující diagram, který stručně ilustruje klíčové rozdíly mezi DoT a DoH. První věc, které si můžete všimnout, je to, že DoH je uveden hned dvakrát: jako DoH s protokolem HTTP/2 a DoH s protokolem HTTP/1.1. Kromě podobného názvu nemají tyto protokoly nic společného – zatímco HTTP/2 je protokol binární, HTTP/1.1 je textově orientovaný. ... TCP také trpí problémem head-of-line blokování na úrovni transportního protokolu. Zdá se, že konečným řešením by mohlo být upuštění od TCP ve prospěch jiného protokolu, jako je QUIC. Možná, že se v budoucnu DNS-over-QUIC ukáže být lepší než DoT nebo DoH.

< <https://www.root.cz/clanky/dns-over-tls-dot-vs-dns-over-https-doh-a-sifrovani-dns-v-knot-resolveru/> https://www.root.cz/clanky/dns-over-tls-dot-vs-dns-over-https-doh-a-sifrovani-dns-v-knot-resolveru/>


Qué es el Hosting LiteSpeed y cómo mejora la velocidad de tu web [What is LiteSpeed Hosting and how it improves the speed of your website]

LiteSpeed es un servidor web como Apache o Nginx, pero con un rendimiento muy superior a sus competidores, sobre todo si lo comparamos con Apache, por lo que la velocidad de carga de las páginas web que utilizan este servidor web es realmente rápido. Este nuevo servidor web que es realmente rápido, incorpora las últimas tecnologías web por defecto, como la utilización de los protocolos HTTP/3 y QUIC para mejorar enormemente la velocidad de carga de las webs- ¿Quieres conocer todo sobre este nuevo servidor web de alto rendimiento y qué hostings utilizan esta tecnología actualmente?

< <https://www.redeszone.net/tutoriales/servidores/hosting-litespeed-mejorar-velocidad-web/> https://www.redeszone.net/tutoriales/servidores/hosting-litespeed-mejorar-velocidad-web/>





Expanding our commitment to secure Internet routing

As we’ve all seen firsthand this year, our universal dependence on a secure and reliable internet has never been greater. The global response to the pandemic highlights all of the ways we rely on the internet to ensure that families stay connected with one another, patients receive care, students continue to learn, and businesses continue to operate.

< <https://cloud.google.com/blog/products/networking/how-google-is-working-to-improve-internet-routing-security> https://cloud.google.com/blog/products/networking/how-google-is-working-to-improve-internet-routing-security>


Cybersecurity Predictions for 2021: Robot Overlords No, Connected Car Hacks Yes

Predicting the future is always an iffy proposition. There’s the Nostradamus route, making predictions so cryptic and vague they could mean just about anything. Or you can go the TV psychic route and throw a handful of darts at the wall, highlighting the ones that stick and hope everyone ignores the many misses.

< <https://threatpost.com/cybersecurity-predictions-2021-robot-overlords-connected-car/161594/> https://threatpost.com/cybersecurity-predictions-2021-robot-overlords-connected-car/161594/>


2021 Healthcare Cybersecurity Priorities: Experts Weigh In

Hackers are putting a bullseye on healthcare. Experts explore why hospitals are being singled out and what any company can do to better protect themselves.

< <https://threatpost.com/2021-healthcare-cybersecurity-priorities/161596/> https://threatpost.com/2021-healthcare-cybersecurity-priorities/161596/>


The Future of Cybersecurity: How to Prepare for a Crisis in 2020 and Beyond

When it comes to the future of cybersecurity, an ounce of prevention is worth far more than a pound of cure. According to the Ponemon Institute and IBM Security’s 2020 Cost of a Data Breach Report, enterprises that designated an incident response (IR) team, developed a cybersecurity incident response plan (CSIRP) and tested their plan using tabletop exercises or simulations, saved an average of $2 million in data breach costs. These savings were compared to companies that didn’t take these preparatory steps.

< <https://securityintelligence.com/articles/future-of-cybersecurity-how-to-prepare-for-crisis-2020-and-beyond/> https://securityintelligence.com/articles/future-of-cybersecurity-how-to-prepare-for-crisis-2020-and-beyond/>





uk: How the internet of things can help create a better new normal

On March 16, prime minister Boris Johnson told everyone in the UK who could do so to work from home. Across the country, office buildings emptied almost overnight. Couriers were summoned to ferry monitors and computers from offices to homes and the streets were packed with people making one final commute. Back then, few would have imagined they would not set foot in their office again this year. And, when they next do, much will have changed.

< <https://www.wired.co.uk/article/vodafone-iot> https://www.wired.co.uk/article/vodafone-iot>





A Broken Piece of Internet Backbone Might Finally Get Fixed

This spring, services from heavy hitters like Google and Facebook seemed glitchy or inaccessible for people worldwide for more than an hour. But it wasn't a hack, or even a glitch at any one organization. It was the latest mishap to stem from design weaknesses in the "Border Gateway Protocol," the internet's foundational, universal routing system. Now, after years of slow progress implementing improvements and safeguards, a coalition of internet infrastructure partners is finally turning a corner in its fight to make BGP more secure.

< <https://www.wired.com/story/bgp-routing-manrs-google-fix/> https://www.wired.com/story/bgp-routing-manrs-google-fix/>


Change everything: 32 innovators who are building a better future

Some of today's smartest minds, from Alphabet CEO Sundar Pichai to human rights lawyer Amal Clooney, nominate the changemakers of tomorrow ... [including] Vint Cerf, vice president and chief internet evangelist at Google selects Ginny Travers, builder of the ARPANET gateway software: Virginia “Ginny” Strazisar (now Travers) was the first person to program a gateway, working with collaborators at Bolt, Beranek and Newman. Her gateway initially linked the ARPANET to the ARPA Packet Radio Network – the first two networks of what would become the internet.

< <https://www.wired.co.uk/article/change-everything-smart-list-2021> https://www.wired.co.uk/article/change-everything-smart-list-2021>


New White Paper: Considerations for Mandating Open Interfaces

People all around the world depend on the Internet to live their lives and do their jobs. Behind the surface of applications, online services depend on “interoperability” – the ability of software to work together.

< <https://www.internetsociety.org/blog/2020/12/new-white-paper-considerations-for-mandating-open-interfaces/> https://www.internetsociety.org/blog/2020/12/new-white-paper-considerations-for-mandating-open-interfaces/>


The new internet era: more speed, more devices, but infrastructure lags behind

Although many complex tech solutions are leading the internet to a new era, the current network architecture is failing to progress at the same speed, raising the question of whether the fallback will force current developments to hit the brakes until it can catch up.

< <https://www.rapidtvnews.com/2020120359509/the-new-internet-era-more-speed-more-devices-but-infrastructure-lags-behind.html> https://www.rapidtvnews.com/2020120359509/the-new-internet-era-more-speed-more-devices-but-infrastructure-lags-behind.html>


eu: Web Summit: Stricter rules for technology companies

A radical overhaul of how big technology companies are regulated has been announced by the president of the European Commission at Web Summit, which this year is a virtual event.

< <https://www.bbc.com/news/technology-55146576> https://www.bbc.com/news/technology-55146576>


David Goldstein

email:  <mailto:david@goldsteinreport.com> david@goldsteinreport.com

web:  <http://goldsteinreport.com/> http://goldsteinreport.com/

Twitter:  <https://twitter.com/goldsteinreport> https://twitter.com/goldsteinreport

phone: +61 418 228 605 - mobile; +61 2 9663 3430 - office/home