Archive for security category:

DNSSEC and SSL certificates


Published on November 5th, 2009
Leave a Comment

Dr. Jörg Schweiger of the German domain name registry DENIC posed an interesting question at this morning’s first DENOG meeting, in Frankfurt.
Would domain name users who are concerned about the accuracy of data served pay extra for the ability to sign their DNS zone ?  A handful of people in the room raised their hand [...]

Extreme Switch / OpenSSH bug


Published on July 17th, 2009
2 Comments

I have been trying to get a patch applied to Debian’s openssh-client packages since February which would fix a bug that prevents me from logging into Extreme switches via ssh:
trials:/usr/src/openssh-5.1p1# ssh hextreeme -l netadmin
Keyboard-interactive authentication
Enter password for netadmin:
channel 0: open failed: resource shortage: Channel open failed
The bug is described in Debian bug 495917, and it [...]

Openness and telecoms


Published on January 1st, 2009
2 Comments

This is a response to Lee Dryburgh’s article on Skype.  We had a debate on Twitter, but I have not yet mastered the art of debate in 140 characters!
Lee’s premise is that “Certainly Skype is not a walled garden. All things being relative, it’s certainly not overly closed either.”  Lee claims that the accusations of [...]

Internet broken for ASN32 speakers today.


Published on December 10th, 2008
4 Comments

Not trying to point fingers or name-and-shame, just to raise the profile of a nasty little bug handling breaches of RFC4893.  This post is basically shaped from a message I posted to nanog earlier.
AS196629 (3.21 in asdot) announce 91.207.218.0/23.  Experienced eyes will notice that this is quite a large as number.  It’s a ‘new’ 4-byte [...]

VoIP For Network Operators Tutorial


Published on October 13th, 2008
Leave a Comment

These are the slides that I presented at NANOG44 in Los Angeles on Sunday, “VoIP For Network Operators“.
This talk was for network operators looking to build voice segments of their network, and the slides cover

Voice Basics for SPs
Why Operators should care
Voice Peering
Metrics
VoIP Security

Youtube pushed off the air


Published on February 24th, 2008
Leave a Comment

In between browsing Facebook and Youtube, the UK economy generates $1,930,000,000 of output a year. Thats $550,000 every two and a half hours. Well if today had been a work day, there’d have been one two and a half hour period where that was much higher. That’s because in a pique of [...]

Vodafone’s legal challenge to fast porting.


Published on February 4th, 2008
Leave a Comment

I tried to open some dialogue with colleague members of the ITSPA about Vodafone’s legal challenge to Ofcom’s two-hour number port ruling.  Instead I got a number of offlist replies suggesting Vodafone’s challenge is still news to many in the industry.
Today, if you want to port your number from one service provider to another, it [...]

UK Government Data Loss


Published on December 28th, 2007
Leave a Comment

There are not many silver linings on the cloud sitting over Information Security experts who work for the UK Government this Christmas.  Following the loss of personal information on welfare recipients by HMRC (twice), learner driver information by the DVLA, personal information on policemen binned in an unencrypted and intact form by Devon police, and [...]

more articles »