Dan York

Just a guy in Vermont trying to connect all the dots...

Author's posts

TDYR #177 – Watching Spacecraft Dock – The Amazing Power of The Internet

This morning I was reminded of the awesome power of the Internet to enable us to see and experience events from far away. For a few moments I watched the Russian Progress 57 spacecraft dock with the International Space Station... all live and in HD video... and all from the comfort of my home... https://blogs.nasa.gov/spacestation/2014/10/29/new-progress-resupply-craft-arrives-at-station/ It was a time when I was just reminded of the amazing power of the Internet to connect us all!

Please Take This DNSSEC Survey To Help Understanding of Value, Obstacles, Priorities

DNSSEC badgeDo you have a few minutes to answer a 12 question survey about your views on DNSSEC?  Tim Rooney over at BT Diamond IP has launched a survey to try to gather data around viewpoints on DNSSEC deployment. As Tim says in his blog post announcing the survey:

BT Diamond IP is sponsoring a DNSSEC survey to gather input from DNS and network administrators regarding their opinions about the value of DNSSEC, potential obstacles to implementation, and relative priority of deployment. And you are hereby invited to participate! The survey consists of twelve questions plus a thirteenth if you’d like to enter your contact information to be entered for a drawing for a $100 VISA gift card. The survey will remain open through November 3, 2014, after which we will compile the results and publish a free survey report.

I’ve taken the survey myself and agree that it would be useful to have data around the different questions asked.  Obviously this is a “self-selected” survey in the sense that only people who learn about it will fill out the survey… and odds are that they will probably learn about it through channels like this one (our blog) where they might already be interested in DNSSEC.

Still, I think the results will be helpful in gaining some understanding of what people are thinking about with regard to DNSSEC deployment.

If you have a few minutes, please take the survey.

And yes, obviously BT Diamond IP is not doing this entirely altruistically… they do hope to gain some leads for their own business… but if you don’t want to give them your contact information simply do not fill out the 13th optional question (and I didn’t).  The overall statistics could be quite helpful!

And if you want to get started deploying DNSSEC today, please visit our Start Here page to find resources targeted at your type of organization or role.

Watch LIVE Today: ION Santiago – IPv6, DNSSEC, BGP, TLS, BCOP and more…

ION SANTIAGOStarting in just about five hours at 2:00pm CLST (15:00 UTC) our ION Santiago event will be streaming live out of Chile.  We’ll be sharing the very latest news about IPv6, DANE, BGP security, Anti-spoofing, TLS, Best Current Operational Practice (BCOP) efforts, and standards within the IETF.

You can watch the event using the LACNIC 22 webcasting page. Here is the full ION Santiago agenda:

2:00 PM

Opening Remarks

Chris Grundemann (Internet Society)

2:10 PM

What’s Happening at the IETF? Internet Standards and How to Get Involved

Alvaro Retano (Cisco)

What’s happening at the Internet Engineering Task Force (IETF)? What RFCs and Internet-Drafts are in progress related to IPv6, DNSSEC, Routing Security/Resiliency, and other key topics? We’ll give an overview of the ongoing discussions in several working groups and discuss the outcomes of recent Birds-of-a-Feather (BoF) sessions, and provide a preview of what to expect in future discussions, including bringing the IETF to Latin America in 2016.

2:40 PM

Operators & the IETF

Chris Grundemann (Internet Society)

The Internet Society is seeking to foster a larger and more engaged network operator community around the IETF and protocol development work. We conducted a widespread survey of network operators from January to July 2014 and are now analyzing and synthesizing the results. In this session, we’ll discuss the initial survey results and our next steps to create a report and IETF Internet-Draft that outlines the challenges to greater operator engagement in the IETF and a summary of potential solutions.

2:55 PM

Beyond the Tipping Point: Global Connectivity Two Years After World IPv6 Launch

Arturo L. Servin Niembro (Google) and Carlos Martinez Cagnazzo (LACNIC)

6 June 2014 marked the 2nd anniversary of World IPv6 Launch, when thousands of Internet Service Providers, home networking equipment manufacturers, and web companies around the world came together to permanently enable IPv6 on their products and services. Where are we now on the path to full global IPv6 adoption? We’ll provide a global update and then focus on the current state of IPv6 adoption in South America, including a brief tour of the resources available from the Internet Society to help networks of all sizes get IPv6 up and running for good. We will also explore how those who have already deployed IPv6 can help the larger community by adding even more content to the repository.

3:25 PM

Best Current Operational Practices Update

Jan Zorz (Internet Society)

The Internet Engineering Task Force (IETF) standardizes the protocols and services that vendors implement and network operators are supposed to deploy and use. We believe there is an opportunity to better identify, capture, and promote best current operational practices emerging from various regional network operators’ groups. We believe sharing these documents across the globe would benefit the wider Internet community and help more operators deploy new technologies like IPv6 and DNSSEC faster and easier. Deploy360’s Jan Zorz will give an update on this progress, discuss the status of BCOP efforts across the world, and give an overview of some of the documents in the process so far.

3:35 PM

BREAK

4:00 PM

Panel: Routing Around Catastrophe – Securing BGP, Anti-spoofing, and More

Moderator: Christian O’Flaherty. Panelists: Rodrigo Arenas (NIC CL); Wes Hardaker (PARSONS); Max Larson Henry (Transversal); Gerardo Rada (LACNIC).

How do we improve the resilience and security of the Internet’s underlying routing infrastructure? While Internet routing has worked well over the years, there have been instances where errors and misconfigurations have caused stability issues. Malicious attackers have also created denial of service attacks and other issues by spoofing IP addresses and manipulating routing tables. What are the best practices we can use to help mitigate these kind of attacks?

In this session, our panel of experts will address technologies such as BCP 38, anti-spoofing, and BGP security efforts that can help secure the routing infrastructure. They will also consider the Internet Society’s new Routing Manifesto, which aims to introduce a minimum set of security measures which, if deployed on a wide scale, could result in visible improvements to the security and resilience of the global routing system.

5:00 PM

Lock it Up: TLS for Network Operators

Chris Grundemann (Internet Society)

Transport Layer Security (TLS), the successor to Secure Sockets Layer (SSL), can be used in many applications other than Web browsers. In order to make the Internet more secure, TLS needs to be widely deployed by all kinds of applications across the Internet. In this session, we will help network operators understand how best to support the use of TLS-encrypted applications across their networks and address how operators can best support their networks and users once everything is encrypted.

5:30 PM

DANE: The Future of Transport Layer Security (TLS)

Wes Hardaker (PARSONS)

If you connect to a “secure” server using TLS/SSL (such as a web server, email server or xmpp server), how do you know you are using the correct certificate? With DNSSEC now being deployed, a new protocol has emerged called “DANE” (“DNS-Based Authentication of Named Entities“), which allows you to securely specify exactly which TLS/SSL certificate an application should use to connect to your site. DANE has great potential to make the Internet much more secure by marrying the strong integrity protection of DNSSEC with the confidentiality of SSL/TLS certificates. In this session, Wes will explain how DANE works and how you can use it to secure your websites, email, XMPP, VoIP, and other web services.

6:00 PM

Closing Remarks

Chris Grundemann (Internet Society)

Join us TODAY for what should be an excellent set of sessions!

And if you want to get started now with deploying these technologies, please visit our “Start Here” page to find resources targeted at your type of organization or role.

The post Watch LIVE Today: ION Santiago – IPv6, DNSSEC, BGP, TLS, BCOP and more… appeared first on Internet Society.

Watch LIVE Today: ION Santiago – IPv6, DNSSEC, BGP, TLS, BCOP and more…

ION SANTIAGOStarting in just about five hours at 2:00pm CLST (15:00 UTC) our ION Santiago event will be streaming live out of Chile.  We’ll be sharing the very latest news about IPv6, DANE, BGP security, Anti-spoofing, TLS, Best Current Operational Practice (BCOP) efforts, and standards within the IETF.

You can watch the event using the LACNIC 22 webcasting page. Here is the full ION Santiago agenda:

2:00 PM

Opening Remarks

Chris Grundemann (Internet Society)

2:10 PM

What’s Happening at the IETF? Internet Standards and How to Get Involved

Alvaro Retano (Cisco)

What’s happening at the Internet Engineering Task Force (IETF)? What RFCs and Internet-Drafts are in progress related to IPv6, DNSSEC, Routing Security/Resiliency, and other key topics? We’ll give an overview of the ongoing discussions in several working groups and discuss the outcomes of recent Birds-of-a-Feather (BoF) sessions, and provide a preview of what to expect in future discussions, including bringing the IETF to Latin America in 2016.

2:40 PM

Operators & the IETF

Chris Grundemann (Internet Society)

The Internet Society is seeking to foster a larger and more engaged network operator community around the IETF and protocol development work. We conducted a widespread survey of network operators from January to July 2014 and are now analyzing and synthesizing the results. In this session, we’ll discuss the initial survey results and our next steps to create a report and IETF Internet-Draft that outlines the challenges to greater operator engagement in the IETF and a summary of potential solutions.

2:55 PM

Beyond the Tipping Point: Global Connectivity Two Years After World IPv6 Launch

Arturo L. Servin Niembro (Google) and Carlos Martinez Cagnazzo (LACNIC)

6 June 2014 marked the 2nd anniversary of World IPv6 Launch, when thousands of Internet Service Providers, home networking equipment manufacturers, and web companies around the world came together to permanently enable IPv6 on their products and services. Where are we now on the path to full global IPv6 adoption? We’ll provide a global update and then focus on the current state of IPv6 adoption in South America, including a brief tour of the resources available from the Internet Society to help networks of all sizes get IPv6 up and running for good. We will also explore how those who have already deployed IPv6 can help the larger community by adding even more content to the repository.

3:25 PM

Best Current Operational Practices Update

Jan Zorz (Internet Society)

The Internet Engineering Task Force (IETF) standardizes the protocols and services that vendors implement and network operators are supposed to deploy and use. We believe there is an opportunity to better identify, capture, and promote best current operational practices emerging from various regional network operators’ groups. We believe sharing these documents across the globe would benefit the wider Internet community and help more operators deploy new technologies like IPv6 and DNSSEC faster and easier. Deploy360’s Jan Zorz will give an update on this progress, discuss the status of BCOP efforts across the world, and give an overview of some of the documents in the process so far.

3:35 PM

BREAK

4:00 PM

Panel: Routing Around Catastrophe – Securing BGP, Anti-spoofing, and More

Moderator: Christian O’Flaherty. Panelists: Rodrigo Arenas (NIC CL); Wes Hardaker (PARSONS); Max Larson Henry (Transversal); Gerardo Rada (LACNIC).

How do we improve the resilience and security of the Internet’s underlying routing infrastructure? While Internet routing has worked well over the years, there have been instances where errors and misconfigurations have caused stability issues. Malicious attackers have also created denial of service attacks and other issues by spoofing IP addresses and manipulating routing tables. What are the best practices we can use to help mitigate these kind of attacks?

In this session, our panel of experts will address technologies such as BCP 38, anti-spoofing, and BGP security efforts that can help secure the routing infrastructure. They will also consider the Internet Society’s new Routing Manifesto, which aims to introduce a minimum set of security measures which, if deployed on a wide scale, could result in visible improvements to the security and resilience of the global routing system.

5:00 PM

Lock it Up: TLS for Network Operators

Chris Grundemann (Internet Society)

Transport Layer Security (TLS), the successor to Secure Sockets Layer (SSL), can be used in many applications other than Web browsers. In order to make the Internet more secure, TLS needs to be widely deployed by all kinds of applications across the Internet. In this session, we will help network operators understand how best to support the use of TLS-encrypted applications across their networks and address how operators can best support their networks and users once everything is encrypted.

5:30 PM

DANE: The Future of Transport Layer Security (TLS)

Wes Hardaker (PARSONS)

If you connect to a “secure” server using TLS/SSL (such as a web server, email server or xmpp server), how do you know you are using the correct certificate? With DNSSEC now being deployed, a new protocol has emerged called “DANE” (“DNS-Based Authentication of Named Entities“), which allows you to securely specify exactly which TLS/SSL certificate an application should use to connect to your site. DANE has great potential to make the Internet much more secure by marrying the strong integrity protection of DNSSEC with the confidentiality of SSL/TLS certificates. In this session, Wes will explain how DANE works and how you can use it to secure your websites, email, XMPP, VoIP, and other web services.

6:00 PM

Closing Remarks

Chris Grundemann (Internet Society)

Join us TODAY for what should be an excellent set of sessions!

And if you want to get started now with deploying these technologies, please visit our “Start Here” page to find resources targeted at your type of organization or role.

 

Help ARIN Shape Their New IPv6 Campaign – Today at 4:00pm EST

ARIN Get IPv6 campaignWould you like to help ARIN shape their new “Get IPv6″ campaign?  If so, please join the ARIN team on a conference call TODAY (Oct 28, 2014) at 4:00pm US EDT!  They are gearing up to launch a new promotional campaign around IPv6 called “Get6″.  As they say on their page about the campaign:

IPv6-ready mobile platforms and web content presents a new opportunity to convince your CEO, CMO and CCO of the importance of IPv6 adoption.

They are asking:

We want to know the challenges you have faced in communicating the value of IPv6 to non-technical audiences at your company.  Would a focus on web content resonate?

ARIN would like your feedback (more info in their blog post)… to join in the call simply send them a message to get6@arin.net to get the call-in information.  I’m hoping to join in for a bit myself (I’ll also be listening to ION Santiago) and will be very interested to hear the feedback they get and what they do with the campaign!

FIR #779 – 10/27/14 – For Immediate Release

Shel and Neville recording face-to-face in London; Intro: Neville recognized in UK Social Media Awards, Shel named Platinum Fellow of Mayo Clinic Center for Social Media; Quick News: Fake news sites spreading Ebola fears, Nokia name will live on, employees on internal social networks less likely to get laid off; Ragan promo; News That Fits: Experiences during a day of touring in London: Babylon at the Roof Gardens; Dan York's Tech Report, the Media Monitoring Minute with CustomScoop, listener comments, the past week on the FIR Podcast Network, Igloo Software promo, Michael Netzley's Asia Report, experiences during a day of touring in London: the London Underground, the London Eye (and the London Dungeon), The Tea Room at Harrod's, Samsung Gear 2 Neo smartwatch.

ION Santiago Streaming Live From Chile Tomorrow

ION SANTIAGOWant to learn the latest news about IPv6, DANE, BGP security, Anti-spoofing, TLS, Best Current Operational Practice (BCOP) efforts, and standards within the IETF?

For all of this information, please join us tomorrow, Tuesday, October 28, 2014, at 2:00pm CLST (15:00 UTC), when our ION Santiago event will be streaming live out of Chile.

You can watch the event using the LACNIC 22 webcasting page. The ION Santiago agenda is packed with great sessions:

  • What’s Happening at the IETF? Internet Standards and How To Get Involved
  • Operators & the IETF
  • Beyond the Tipping Point: Global Connectivity Two Years After World IPv6 Launch
  • Best Current Operational Practices Update
  • Panel: Routing Around Catastrophe: Securing BGP, Anti-spoofing and More
  • Lock It Up: TLS for Network Operators
  • DANE: The Future of Transport Layer Security (TLS)

Join us tomorrow for what should be an excellent set of sessions!

And if you want to get started now with deploying these technologies, please visit our “Start Here” page to find resources targeted at your type of organization or role.

The post ION Santiago Streaming Live From Chile Tomorrow appeared first on Internet Society.

ION Santiago Streaming Live From Chile Tomorrow

ION SANTIAGOWant to learn the latest news about IPv6, DANE, BGP security, Anti-spoofing, TLS, Best Current Operational Practice (BCOP) efforts, and standards within the IETF?

For all of this information, please join us tomorrow, Tuesday, October 28, 2014, at 2:00pm CLST (15:00 UTC), when our ION Santiago event will be streaming live out of Chile.

You can watch the event using the LACNIC 22 webcasting page. The ION Santiago agenda is packed with great sessions:

  • What’s Happening at the IETF? Internet Standards and How To Get Involved
  • Operators & the IETF
  • Beyond the Tipping Point: Global Connectivity Two Years After World IPv6 Launch
  • Best Current Operational Practices Update
  • Panel: Routing Around Catastrophe: Securing BGP, Anti-spoofing and More
  • Lock It Up: TLS for Network Operators
  • DANE: The Future of Transport Layer Security (TLS)

Join us tomorrow for what should be an excellent set of sessions!

And if you want to get started now with deploying these technologies, please visit our “Start Here” page to find resources targeted at your type of organization or role.

 

Somehow Friday seems to have snuck up on me…

Somehow Friday seems to have snuck up on me...

Internet Society Posting Updates from ITU Plenipot 2014 in Busan (Featured Blog)

If you are, like me, not in Busan, South Korea, for the 2014 ITU Plenipotentiary Conference but are curious about what is going on there, my Internet Society colleagues on our public policy team have been posting regular updates to the Internet Society's blog and to the @ISOCPolicy Twitter account... Given that I work in the technology side of Internet Society's work and don't have the cycles to keep up-to-date with everything going on there in Busan, I've found these updates very helpful in understanding some of the major events happening at the ITU Plenipot 2014. More...