Re: [saag] Ubiquitous Encryption: content filtering

Natasha Rooney <nrooney@gsma.com> Mon, 06 July 2015 10:21 UTC

Return-Path: <nrooney@gsma.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 902421ACD56 for <saag@ietfa.amsl.com>; Mon, 6 Jul 2015 03:21:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.002
X-Spam-Level:
X-Spam-Status: No, score=-0.002 tagged_above=-999 required=5 tests=[BAYES_20=-0.001, HTML_MESSAGE=0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ree1Iuf4jPyG for <saag@ietfa.amsl.com>; Mon, 6 Jul 2015 03:21:17 -0700 (PDT)
Received: from emea01-am1-obe.outbound.protection.outlook.com (mail-am1on0609.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe00::609]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 951461ACD44 for <saag@ietf.org>; Mon, 6 Jul 2015 03:21:16 -0700 (PDT)
Received: from HE1PR04MB1033.eurprd04.prod.outlook.com (10.162.26.142) by HE1PR04MB0970.eurprd04.prod.outlook.com (10.162.26.17) with Microsoft SMTP Server (TLS) id 15.1.207.19; Mon, 6 Jul 2015 10:20:57 +0000
Received: from HE1PR04MB1033.eurprd04.prod.outlook.com (10.162.26.142) by HE1PR04MB1033.eurprd04.prod.outlook.com (10.162.26.142) with Microsoft SMTP Server (TLS) id 15.1.207.19; Mon, 6 Jul 2015 10:20:56 +0000
Received: from HE1PR04MB1033.eurprd04.prod.outlook.com ([10.162.26.142]) by HE1PR04MB1033.eurprd04.prod.outlook.com ([10.162.26.142]) with mapi id 15.01.0207.004; Mon, 6 Jul 2015 10:20:56 +0000
From: Natasha Rooney <nrooney@gsma.com>
To: "saag@ietf.org" <saag@ietf.org>
Thread-Topic: [saag] Ubiquitous Encryption: content filtering
Thread-Index: AQHQqZyD4d9shmwZoUiA42dbZLPz/J2zz0uAgAAQJoCAACwngIAE9FYAgAANCgCAAWnsAIAACAUAgAAEcICAE9RRAA==
Date: Mon, 06 Jul 2015 10:20:56 +0000
Message-ID: <43454D75-916E-4174-A7C3-700E83CCD5DE@gsma.com>
References: <99DC814A-2B7D-4802-A1C7-399E77F37BD7@gsma.com> <CABtrr-U9kLfq4GQbWSgPN=wCD=Cdi0uQ+bQqXj35j+PFtuE8Pg@mail.gmail.com> <A4BAAB326B17CE40B45830B745F70F108E070156@VOEXM17W.internal.vodafone.com> <55844743.4030300@cs.tcd.ie> <55886F38.4030906@bbn.com> <20150622211207.GM6117@localhost> <5589A9C2.40802@bbn.com> <20150623191610.GW6117@localhost> <CAMm+Lwi7BeJL+ngbMNx3PB92bHKZNawCs96sPM+d7u-JuWtFKg@mail.gmail.com>
In-Reply-To: <CAMm+Lwi7BeJL+ngbMNx3PB92bHKZNawCs96sPM+d7u-JuWtFKg@mail.gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.2098)
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [118.109.41.221]
x-microsoft-exchange-diagnostics: 1; HE1PR04MB1033; 5:dyF7vbue161YW4paAVpuYuPRMSiduSEA1vSlJluMLWArOr/I7OfgyGw49e/qgAPZj/7BVfc+pSR5ZjPoC2wta+TDmlyo4/9UmC0N9345OpHHmAn5uyhU7W3ROTm6SH54SucMr6CyRor2b6jj7JR1ig==; 24:btZPtQCAN+dQAAQbsHXOJLoO5jqFkBWxJDOFKqWt7xGoqT4i1e9e/RmrwuXEpyHlrRQbisBhJnWueE+YGNXL0zQprDiofKPfx/sVMCtqW9k=; 20:2hVaLR/ljtSC/OuMpU1Y73shCWC5Jnbd4FQUjD5QmXNoL9TKqRtvPBXrJOh/54ERZwNn/SX9khqnEyLhj80Lpg==
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:; SRVR:HE1PR04MB1033; UriScan:; BCL:0; PCL:0; RULEID:; SRVR:HE1PR04MB0970;
x-microsoft-antispam-prvs: <HE1PR04MB10337319EFFCFC058308C65EC3930@HE1PR04MB1033.eurprd04.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(5005006)(3002001); SRVR:HE1PR04MB1033; BCL:0; PCL:0; RULEID:; SRVR:HE1PR04MB1033;
x-forefront-prvs: 06290ECA9D
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(377454003)(24454002)(50226001)(2900100001)(77156002)(50986999)(33656002)(2656002)(82746002)(83716003)(122556002)(16236675004)(62966003)(106116001)(110136002)(450100001)(5890100001)(40100003)(5001960100002)(86362001)(2950100001)(76176999)(5001920100001)(102836002)(87936001)(36756003)(77096005)(46102003)(66066001)(189998001)(57306001)(93886004)(19580395003)(92566002)(15975445007)(107886002)(2351001)(19580405001)(5002640100001)(2501003)(104396002); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR04MB1033; H:HE1PR04MB1033.eurprd04.prod.outlook.com; FPR:; SPF:None; MLV:sfv; LANG:en;
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_43454D75916E4174A7C3700E83CCD5DEgsmacom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Jul 2015 10:20:56.6012 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72a4ff82-fec3-469d-aafb-ac8276216699
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR04MB1033
X-MS-Exchange-CrossPremises-AuthAs: Internal
X-MS-Exchange-CrossPremises-AuthMechanism: 04
X-MS-Exchange-CrossPremises-AuthSource: HE1PR04MB1033.eurprd04.prod.outlook.com
X-MS-Exchange-CrossPremises-SCL: 1
X-MS-Exchange-CrossPremises-messagesource: StoreDriver
X-MS-Exchange-CrossPremises-BCC:
X-MS-Exchange-CrossPremises-originalclientipaddress: 118.109.41.221
X-MS-Exchange-CrossPremises-avstamp-service: 1.0
X-MS-Exchange-CrossPremises-disclaimer-hash: 78ca8040c6722e32c2f5b0a45bf37e74b9409d645a53be96aa19958e0cee0f00
X-MS-Exchange-CrossPremises-antispam-scancontext: DIR:Originating; SFV:NSPM; SKIP:0;
X-MS-Exchange-CrossPremises-processed-by-journaling: Journal Agent
X-OrganizationHeadersPreserved: HE1PR04MB1033.eurprd04.prod.outlook.com
X-Microsoft-Exchange-Diagnostics: 1; HE1PR04MB0970; 2:eCZYxRmlc6XF63ruDOAgORldeUoeApe2nBttJN+Ohu6YyO/18NJunJWWZJBPSWo9; 3:xlFXGKgwgN0TaWzqmdxlPjeBXIh/M6/ftY2NIVPn5ovM0EIf8QdmDJP52WYTrHu8uQw0uRQgTO/UC11Kbmu0DANqfU8w3M6PBsHkC5IRts/IKf8jHCLDui4CsykmgaZK1sJTsXG7bFaizezPrr06eg==; 25:N60U1Pm7YFkqbzTQsTjf9NwPx87eCzf2jR3oacR4BllllSae498gnn8QiMV+MH/aibhrfau1+a2d9GvIHy4/KkRmpB4JiAqMb65vfrs9zCZvdbzdEEtt00x2KSe4MmypoCvnhYRJ+DveIOXH2JCD0reTgu1WBYy+1qnIsxaY/Po8QIAAwrsLXm2jQMlWrXNin9tJF6cD6lqBYzcYmKjdUD1f/GntuX2EbBgeTW9HD1kN5T+uwMNB7a3ZLpqBrsZpX5EJzueV9c62xxarUVkU1w==; 23:BNHt5vGQ/44/Xt0BgDfw6j+tjW+W/stWaY9AXGCqQyxwqkt2FsfHz4j0Q13m28ffZ2FRJZ43sieY++ErQ+GwzIOBxzwKQgmrMNspxjGe5cqhmRzZdJoAkCmGHnox2WR6veWi+p5hCzl8jxwvW5/Qnifp6/l8MMJX9DXPyEBuRf2eDfZzP9c2/fuvAKouSY07MtPR+MS7nkOjZulHRUhseijoewuY8VB37R6yLYQ9J2y60D8lbliLN3yBzrQFmisT
X-OriginatorOrg: gsma.com
Archived-At: <http://mailarchive.ietf.org/arch/msg/saag/LaE9EwiQWlNfpvH0pJv5AW71E6w>
Subject: Re: [saag] Ubiquitous Encryption: content filtering
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 06 Jul 2015 10:21:19 -0000

Apologies for the late response, I was away for a week. I have an amendment to the Content Filtering suggestion:

I had a comment to remove the "mobile" from "mobile networks" in the submission; which I am fine to do but am not sure if content filtering is done in the same way on all networks. If so, then the mobile can be removed! I just ran through the other emails and I don’t think anyone else asked a question, if this is incorrect please let me know!


Natasha


Natasha Rooney | Web Technologist | GSMA | nrooney@gsma.com<mailto:nrooney@gsma.com> | +44 (0) 7730 219 765 | @thisNatasha | Skype: nrooney@gsm.org<mailto:nrooney@gsm.org>
Tokyo, Japan


On Jun 24, 2015, at 4:32 AM, Phillip Hallam-Baker <phill@hallambaker.com<mailto:phill@hallambaker.com>> wrote:

Responding to various parts of the thread:

Q: What is the difference between filtering and censorship?
A: The person who decides to impose it.

Filtering is actually an essential tool for use of the modern Internet. Without filtering there is no mechanism to control abuse.

Today I received five junk calls. The time is rapidly approaching when I get rid of the telephone line completely. There is simply too much spam.

The fact that the Russian Business Network has put a machine on the net does not mean that any machine I own need be able to connect to it. I don't want their IP address to be reachable, I don't want their DNS names to resolve.

So the ability to perform filtering is an essential part of every end-to-end encryption mechanism. But giving control over that filtering to the government is not. When I was at university there was a club for thugs who went round smashing up restaurants for fun. One of the members of that club is now the UK Prime Minister. I am damned if I am going to let the likes of him decide what anyone can access.

The question is who has control and who is empowered.

I am firmly of the opinion that ubiquitous end-to-end encryption is only viable if it is accompanied by a robust and easy to use mechanism that allows for a gap in the stack. If I publish a key for phill@hallambaker.com<mailto:phill@hallambaker.com> it will be the key of a service in the cloud that performs anti-malware filtering. Use of the end-to-end key will be reserved to people who are expressly authorized to use it.


_______________________________________________
saag mailing list
saag@ietf.org<mailto:saag@ietf.org>
https://www.ietf.org/mailman/listinfo/saag


This email and its attachments are intended for the above named only and may be confidential. If they have come to you in error you must take no action based on them, nor must you copy or show them to anyone; please reply to this email or call +44 207 356 0600 and highlight the error.