Slashdot Mirror


Universities Tapped To Build Secure Net

Wes Felter writes "InfoWorld reports that the National Science Foundation (NSF) has enlisted five university computer science departments to develop a secure, decentralized Internet infrastructure. I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing. The article quotes Frans Kaashoek from MIT PDOS, which is working on decentralized software such as Chord."

155 comments

  1. wow, interesing by diablo6683 · · Score: 1

    hmm, i wonder what the commercial applicatoins of this are? 3 of 3.

    1. Re:wow, interesing by Anonymous Coward · · Score: 0

      The routes on the internet are decentralized. (Most are dynamically generated with RIP)Everything on top of those routes is not decentralized. The information is not decentralized. Servers are not decentralized. (Unless you're talking P2P, but even then, the lookup servers and login servers are not decentralized.) Of course, there's Gnutella, but that was just badly implemented. =P

  2. fix the spammers by SirSlud · · Score: 5, Funny

    > I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    The only thing that needs fixing is the spammers. You know, so they can't have kids who take up the family business. We could even have Bob Barker provide the PSA at the end of Price Is Right episodes. ("Remeber to have your spammers spayed or neutered.")

    --
    "Old man yells at systemd"
  3. Agents, Security by goombah99 · · Score: 3, Insightful

    If you want a decentralized secure system you have to create a system that does not need an omnisceint trusted party. In otherwords you need an agent based system where each agent's local utility function is such that by optimizing it, it approximates the global utility function. This does not enforce security, but by clever design of the local utility function could make for a bobust system even with "evil" agents.

    --
    Some drink at the fountain of knowledge. Others just gargle.
    1. Re:Agents, Security by WetCat · · Score: 1

      bobust system... bombust system.. it's really bombastic!
      Cool idea.

    2. Re:Agents, Security by goombah99 · · Score: 1

      robust.
      [though "bobust" is pretty cool isn't it. ought to be a word. maybe it means a Bozo-proof robust system. I better patent it now.]

      --
      Some drink at the fountain of knowledge. Others just gargle.
    3. Re:Agents, Security by Zeinfeld · · Score: 3, Insightful
      If you want a decentralized secure system you have to create a system that does not need an omnisceint trusted party.

      So goes the dogma. The problem is that if you stick to that dogma the systems tend to be full of technology that is there just to get rid of the posibility of a single master party.

      A much better approach in practice is to separate out the logical and infrastructure elements of the problem. For example the Internet currently depends on there being only one logical service set associated with a particular IP address (convoluted phraseology due to the existence of anycast). That is you do not want there to be two companies that claim to 'own' the same IP address.

      Some folk want it to be possible for two people to share a DNS name. That is not a good idea either.

      What is a good idea is for services like Google to be able to return multiple listings for the same query..

      In other words, there is a need for unique identifiers which for the sake of convenience we call names and addresses. There is also a need for keyword identifiers that can be shared by many parties.

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
    4. Re:Agents, Security by Anonymous Coward · · Score: 0

      so assign everyone a GUID, and assign keywords to them. ROFL.

  4. Obviously then... by Anonymous Coward · · Score: 2, Insightful
    I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.
    Clearly they're working on the "secure" aspect of it.
    1. Re:Obviously then... by pe1rxq · · Score: 3, Informative
      Or something really decentralized...
      Most of the internet indeed is decentralized, but take out the root servers and the internet is gone...

      Jeroen

      --
      Secure messaging: http://quickmsg.vreeken.net/
  5. How so? by YanceyAI · · Score: 5, Informative
    But what is really exciting is that if we succeed, we could change the world.

    If they do succeed, how exactly have the changed the world? Am I missing the point? Do I just not get it? Won't they just have changed the Internet...and in a way that would be seamless to most users? Isn't the general consensus that we are not all that vunerable.

    --
    Can I bum a sig?
    1. Re:How so? by silversurf · · Score: 1

      You know, change the world like Amazon.com and Microsoft ;-)

      -s

  6. What are they fixing by SlashdotMakesMeKool · · Score: 0

    Perhaps there fixing the anonymity (did you know that terrorists are able to browse the internet?), the ability to share programs, and all the other conveniences that have made the internet the world's medium of free speech.

    --

  7. The broken internet by Kickstart70 · · Score: 4, Insightful

    The internet is horribly vulnerable as it is. It's not so much a problem of pure decentralization as it is one of too many people/requests to handle through too tight a pipe if the other pipe goes down.

    As an example...if one day some serious news happened that caused everyone to get on the net at once (Kyoto Earthquake, OJ Simpson on the freeway, Iraq drops a nuclear bomb), and this coincided with a failure of some large piece of hardware along the western coast (under extreme load), the remaining paths for much of this area would be so bogged down as to be useless. Effectively the internet would break under the pressure.

    What needs to happen to avoid the problem here is have many more paths for the data to flow, which requires better hardware and further decentralization (would love to see everyone's cable modem be a small internet router for people's data to travel through). Barring that, with the increased worldwide participation on the net expect that some days you just won't be able to use it.

    Kickstart

    1. Re:The broken internet by McCart42 · · Score: 1

      If everyone's computer were a router, then password-sniffing would get a LOT easier. What the internet most desperately needed was the new fiberoptic backbones, which were put in a while ago.

      --
      "I may be quite wrong." - Socrates
    2. Re:The broken internet by shren · · Score: 3, Insightful

      would love to see everyone's cable modem be a small internet router for people's data to travel through

      Is it just me, or is that statement total technobabble? Say I put a router in my house. Where does the data go through it to?

      --
      Maybe the state's highest function is to grind out insoluble problems. (Zelazny, Hall of Mirrors)
    3. Re:The broken internet by Anonymous Coward · · Score: 0

      would love to see everyone's cable modem be a small internet router

      you have no idea what you are saying. the cable
      modems are right next to the individual homes.

      a router needs to be far upstream next to thousands
      of connections to do anything useful in a network
      outage situation.

    4. Re:The broken internet by grumpygrodyguy · · Score: 1

      What needs to happen to avoid the problem here is have many more paths for the data to flow, which requires better hardware and further decentralization

      Problem solved

      --
      The government has a defect: it's potentially democratic. Corporations have no defect: they're pure tyrannies. -Chomsky
    5. Re:The broken internet by d0ggi3 · · Score: 1

      the internet is not that vulnerable... except to a nonrandom hazard. for example, a whole lot of internet traffic would not bring the internet down. it would slow it quite a bit... but taking the internet down by flooding with traffic would be incredibly hard. however, by taking out specific nodes on the internet there would be a dramatic effect. the internet being an aristocratic complex network of sorts is bound by the small worlds theory. the health of a network can be defined by the largest degree of seperation between any two points on the network. if the degree of seperation is low, the network is considered healthy. a nuclear blast on the westcoast would drive up the degree of seperation up a bit, but i think that the network could handle the stress since the west coast is only one portion of the network.

      "Even with nearly half of all the nodes removed, those that remained were still sewn together into one integrated whole."
      (Nexus,Mark Buchanan,p131)

      -daniel

    6. Re:The broken internet by d0ggi3 · · Score: 1

      sorry... submitted before i finished my thoughts. there is alot to be learned in attempting to secure an aristocratic complex network because of its decentralized nature. it would be in no way an easy task. the research should quite interesting
      -daniel

    7. Re:The broken internet by Kickstart70 · · Score: 1

      By the current way of thinking, yes.

      But imagine this...instead of having one connection into your home, you have two (split the bandwidth on your cable line), which connects you in a mesh topology with other cable internet users. Do this on a grand scale, with the millions (billions?) of people who will one day be on the net. When you connect to somewhere, rather than absolutely HAVING to go through a central point to a bit pipe, you enter a cloud and get your data across it.

      Now I realize this pretty much requires last-mile fiber, but it would be a hell of a lot more decentralized and less prone to failure than the current internet.

      Kickstart

    8. Re:The broken internet by jonadab · · Score: 3, Insightful

      > Is it just me, or is that statement total technobabble? Say I put
      > a router in my house. Where does the data go through it to?

      The OP was probably confused about what cable modems do, but he
      brings up an interesting point...

      With a heirarchical routing system like what TCP/IP uses, it can
      pretty much only go upstream to the backbone. It is possible for
      a network to be designed so that there's no backbone, and the data
      can be routed wherever there are open connections -- so that if you
      have ethernet connections to the people in the houses nextdoor and
      a wireless connection to your relatives across town and another to
      your mobile phone (which connects to your phone service provider)
      and a DSL connection to an ISP, data could be routed in one of
      these connections and out the other.

      Such a system would have higher latency, because it would have
      more hops, but the bandwidth could be okay, if _everybody_ runs
      fiber to the house nextdoor. TCP/IP won't work, because it can't
      do routing in that kind of environment; some kind of routing
      protocol would have to be devised that understood the topology
      of such a network (perhaps by using latitude and longitude as
      metrics for the routing, along with other factors such as "how
      busy is the network in that direction"). The really major problem
      with such a system is, how much do you charge your neighbors to
      route their data, and what about the people whose data your
      neighbors are routing (through you), and so on? Unless everyone
      suddenly becomes a fair player (haha), the network protocols
      (or their implementation) would have to include some kind of
      reciprocal quota system or somesuch, which would add complexity
      and drive the latency up, possibly beyond usefulness.

      --
      Cut that out, or I will ship you to Norilsk in a box.
    9. Re:The broken internet by AvitarX · · Score: 1

      there would be no nead to connect me to my neignbors, you would nead to connect my cable block with the ajacent ones with a router (the cable within a cable block is shared media). This is of course done already, just at a centralized location (the cable company). There would be no benifit in routing my cable to my immediate neaghbors. As for DSL, again, if my DSL goes done, most likely other peoples in the general area have too, for a backup I would nead a secondary connection, not a split of my DSL.

      No matter how many connections I have to neighbors, if MY access is down I cannot hit them, if the Gateway goes down then everyone on my network sharing that gateway is also trapped. If the backbone goes done you and you nead to get accross the country you nead direct (non internet) connections for every hop alonge the way (that is a whole lot of we are connecting to neighbors, even in a broad sense).

      --
      Wow, sent an e-mail as suggested when clicking on "use classic" banner, and got a fast response that addressed my msg
    10. Re:The broken internet by pyite · · Score: 2, Informative

      TCP/IP has nothing to do with it. TCP/IP is a routed (routable) protocol. Routing protocols are what do the routing. TCP/IP is fine, and there are already routing protocols that do most of the things you specify. Latitude / Longitude is a horrible metric as it can't really measure anything useful. We already have protocols such as IGRP and EIGRP which use bandwidth, MTU, reliability, delay, and load to calculate a scalar metric. Once again, TCP/IP has nothing to do with it. PLEASE don't go saying it is the problem when it's not.

      --

      "Nature doesn't care how smart you are. You can still be wrong." - Richard Feynman

    11. Re:The broken internet by Sloppy · · Score: 2
      If you build excess capacity into the system, the use will expand to fill it. Warezd00dz will just download more stuff.

      Also, there's a tradeoff between efficiency and fault-tolerance. You want more connections, but are you willing to pay for it? Are you willing to pay twice the amount every month that you're currently paying, in order to be able to access Slashdot on the day Iraq lobs a nuke?

      If so, then hey, get cable and DSL and some satellite thingie and anything else you can get, and learn how to configured "gated" on your home firewall/router.

      --
      As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
    12. Re:The broken internet by Paul+Jakma · · Score: 2

      arg..

      why is this mod'ed as insightful? its absolute waffle. Poster hasnt a breeze about how inter domain routing works.

      "With a heirarchical routing system like what TCP/IP uses, it can pretty much only go upstream to the backbone."

      Eh? Since when is TCP/IP hierarchical? For that matter, wtf has TCP got to do it? (other than that some routing protocols use TCP). backbone? what backbone? Show me where the internet has a backbone. (hint: it doesnt).

      "It is possible for a network to be designed so that there's no backbone, and the data can be routed wherever there are open connections"

      no sh$t sherlock. What an amazing idea. I wonder if the guys that came up with BGP thought of it before you. And I wonder if anyone actually uses it. (hint: the entire internet).

      "Such a system would have higher latency, because it would have more hops"

      oooh.. ok.. why's that then?

      "but the bandwidth could be okay, if _everybody_ runs fiber to the house nextdoor."

      ah... so if everyone used fibre things'd go faster? Damn you should work for an ISP, mine are still trying to persevere with RFC2549 links to all their peers.

      "TCP/IP won't work, because it can't
      do routing in that kind of environment;some kind of routing protocol would have to be devised that understood the topology of such a network"


      gosh good point, and may i refer you the BGP link above again?

      "The really major problem with such a system is, how much do you charge your neighbors to
      route their data, and what about the people whose data your neighbors are routing (through you), and so on?"


      Hmm.. tricky one that. I believe some people are though trying their best to solve that one. (namely the lawyers who draw up contracts, and the accounts dept. of ISPs). Ie, yes, you pay the people you connect to depending on your comparitive standing (ie customers and traffic carried). If one is small and the other big, well why the small one generally pays the bigger one. Why one would almost call the smaller one a customer of the larger one. (there's a thought, you could run a business along these lines!). If the two are of equal comparitive standing, and can both agree they are, then they might peer with each other for free. For further discussion on this i really should direct you to the legal and accounting depts. of any decent sized (guess what?) ISP.

      In fairness, what you describe is actually generally how the internet works if you substitute your neighbours for ISPs / v. large organisations, its just i'm in a sarcastic mood, and you have a lot of reading up to do. sorry.

      --
      I use Friend/Foe + mod-point modifiers as a karma/reputation system.
    13. Re:The broken internet by irc(addict) · · Score: 1

      You mean like two planes crashing into the WTC, a plane crashing into the pentagon and a plane crashing in Pensylvannia?
      Heh.

  8. Security != secure hosts, encryption of traffic... by Anonymous Coward · · Score: 0

    Security here relates to BGP... it's a completely decentralized protocols, and the heart of our vulnerable network. It's only a matter of time before it's exploited with v.disastrous results.

  9. freenet? by McCart42 · · Score: 0, Offtopic

    Sounds exactly like freenet to me, except with larger university servers and less peers, which could mean either a more stable or less stable system, depending on how you look at it.

    --
    "I may be quite wrong." - Socrates
    1. Re:freenet? by McCart42 · · Score: 2

      Maybe I'm totally missing this, but _how_ was that offtopic? These universities want to create a system that stores redundant data on several servers, thus decentralizing that data and ensuring that if one server dies, the data is still available. Freenet (http://freenetproject.org/) is the exact same thing, on a larger scale.
      From the webpage: "Freenet is a large-scale peer-to-peer network which pools the power of member computers around the world to create a massive virtual information store open to anyone to freely publish or view information of all kinds."

      --
      "I may be quite wrong." - Socrates
  10. DNS and IP allocation not decentralized by Bookwyrm · · Score: 5, Informative

    Neither the DNS system (root servers), or the allocation/control of IP address(ing) is decentralized -- they may be heirarchial, but both still have a root.

    It will be interesting to see if IPv6 will use geographic hierarchies for routing, or even relaxes the hierarchial assignment-scheme at all. If your IPv6 suffix is static/fixed (based on your MAC address, say), and your IPv6 prefix is from the current network/area you are in, that will be an interesting tool to let people track devices as they move around/between networks.

    1. Re:DNS and IP allocation not decentralized by MerlynEmrys67 · · Score: 1
      I don't know how you can say DNS is centralized... There are many "Root" servers (ROOT-A through ROOT-'n') that are scattered around the globe... Each of these servers is capable of handling requests for any DNS query.

      Now the database load/creation is not decentralized, nor do I think it should be. The failure case for the database creation going down is that new domains do not go online till it is back up, not a horrible failure case (unless you just applied for a new domain name that is). The failure case for multiple people creating multiple databases is that as they go out of synch, getting VERY different answers for the same query depending on which root server you happen to hit. Same thing goes for IP address allocation... Oh well.

      By the way the last issue on IPv6 address allocation (tracking a device using the lower 64 bits of the IPv6 address) has been talked about for many years in the IPv6 development groups. There are solutions, the end result is most people don't care... Oh well...

      --
      I have mod points and I am not afraid to use them
    2. Re:DNS and IP allocation not decentralized by rabidcow · · Score: 2

      Neither the DNS system (root servers), or the allocation/control of IP address(ing) is decentralized -- they may be heirarchial, but both still have a root.

      This is a fundamental aspect of those systems. You want one domain name to map to one (set of) server, and similarly for IP addresses. If you don't have one authority dictating who gets what address, you'll have disagreements and things less reliable.

      MAC addresses also have one authority behind them, but typically only the manufacturer has to deal with them. MAC addresses actually could be decentralized, since they only need to be unique on the local network, where the others need to be globally unique.

      Anyway, I think the only way to avoid having one (or a small number of) central authority is to have these decisions part of the spec, ie decide on a scheme ahead of time that's unambiguous in nearly all cases.

    3. Re:DNS and IP allocation not decentralized by Zeinfeld · · Score: 2
      Neither the DNS system (root servers), or the allocation/control of IP address(ing) is decentralized -- they may be heirarchial, but both still have a root.

      Actually the logical registration is co-ordinated in a single logical database. However the implementation is very highly distributed.

      There are multiple DNS root servers and there are even multiple A root servers, but only one A root is active at any one time and they all use the same IP address.

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
  11. DNS Servers by cadillactux · · Score: 2, Interesting

    If you think about it, the DNS servers are a "centralized" systems. With the Root Servers, if I query my DNS server at home, and cannot find www.fubar.com, I query one of the DNS root servers to find which DNS server has the records I need.

    Now imagine, what if one of those root servers went down. The other servers have to take the load of the failed server. Now imagine two went down, however unlikely, but that puts loads of extra traffic on the remaing servers. After a while, this will add up. Now, I admit, it is probibly very unlikely, but with enough traffic, even a root server could be /.ed. Or, in a less extreme case, it could take quite a while for my query for www.fubar.com to pass through.

    --
    Is this thing on?
    1. Re:DNS Servers by squidinkcalligraphy · · Score: 1

      freenet can be used as a truly distributed DNS system. Only problem is that conflicts can arise. But then `democracy' wins out; whichever name has more submissions will get it's IP returned; in the end a content-based searching/index system will win out regardless.

      --
      "I think it would be a good idea" Gandhi, on Western Civilisation
  12. Why don't they just... by mypalmike · · Score: 1, Funny

    ... use Microsoft Passport!?

    --
    There are 0x40000000 types of people: those who understand 32-bit IEEE 754 floating point, and those who don't.
  13. Theory vs Implementation by CXI · · Score: 2, Insightful

    I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    The Internet is designed to be decentralized but it is built to maximize profit.

    1. Re:Theory vs Implementation by Anonymous Coward · · Score: 0

      BS. If the internet was built to maximize profit, then so many companies would not be trying so hard to mutate it into something that they can use to make money. What the internet is not, is secure.

    2. Re:Theory vs Implementation by CXI · · Score: 1

      BS. If the internet was built to maximize profit, then so many companies would not be trying so hard to mutate it into something that they can use to make money.

      That's a very short sited answer. Who cares what other companies are doing to make money online! They have nothing to do with the problem, which is that nearly all the traffic on the net goes through a select set of major pipes. Worldcom, for instance, has created a backbone network that nearly every ISP's traffic flows through. They even say so on their own site: "A significant amount of the traffic that flows between ISP networks passes through WorldCom MAE service facilities." If/when Worldcom goes under, where is all that traffic going to go? That is the price that we pay for letting profits dictate the design of critical infrastructure. Although, please note that I'm not claiming companies should do things for free either. We just need to pay the price for the way the world works.

  14. DNS comes to mind by Over_and_Done · · Score: 1
    I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    Wouldn't the DNS system count as a point of failure. That they would like fix. That would also be a good argument for developing a decentralized system.

  15. Decentralized by TheFlyingGoat · · Score: 1

    The might be referring to IP address assignments, DNS, and related protocols, which are all somewhat centralized right now. The secure part is obvious, but more important when specifically applied to the preceding list. Example: You want a secure system so the decentralized DNS information can be trusted.

    Then again, I could be WAY off. :)

    --
    You have enemies? Good. That means you've stood up for something, sometime in your life. --Winston Churchill
  16. Not like it would matter... by cicatrix1 · · Score: 0, Offtopic

    Once microsoft had products running on it. It'll go from Secure to Broken in... how long does it take to start up IIS?

    --

    I know more than you drink.
  17. How About. a lilly pad by buswolley · · Score: 1
    Wireless lilly pads.. Viral Wireless>

    Definitely decentralized.

    --

    A Good Troll is better than a Bad Human.

    1. Re:How About. a lilly pad by buswolley · · Score: 1

      sorry made link wrong. Being Viral Tellecommunication

      --

      A Good Troll is better than a Bad Human.

    2. Re:How About. a lilly pad by Anonymous Coward · · Score: 0

      Good Idea. But they will never go for it.

    3. Re:How About. a lilly pad by LordFlower · · Score: 1
      Lilly Pad wireless network is too grass root for anyone who is corporate or Governemnt. It makes them uncomfortable. They are finally reigning this internet into control, and then another one springs up? HA!! They're scared.

      It is decentralized though. But the frequency can too easily be disrupted. And thats not very secure..

  18. Decentralisation by Anonymous Coward · · Score: 1, Insightful

    One of the cool things in the future we'll be seeing is decentralised networking through quanta, i.e. quantum particles. Right now, for the most part, the Internet is point-to-point. Your modem connects to an internet provider, which connects to the backplane. If your link to the host provider is severed, you can't read any other machines, because you only have one link to the Interweb. A pair of quantum particles can be used to exchange information between to computing machines. So, if you had a nicely sized set of pairs of quantum particles, you could reach any machine on the Internet directly (point-to-point) as long as you and it had a matching set of quanta. This means you don't go through 19-30 hops.

    1. Re:Decentralisation by LordLucless · · Score: 1

      It also means that information is sent faster than the speed of lights. Beat my ping time now!

      --
      Just because you're paranoid doesn't mean there isn't an invisible demon about to eat your face
  19. The Chosen by chenzhen · · Score: 1

    Interesting pick of universities that are getting the cash. Compare that list to Usnews' 2003 ranking of CS grad schools: 1. Carnegie Mellon University (PA) Massachusetts Institute of Technology Stanford University (CA) University of California-Berkeley 5. University of Illinois-Urbana-Champaign See for yourself @ http://www.usnews.com/usnews/edu/grad/rankings/phd sci/brief/com_brief.php

    1. Re:The Chosen by GoBears · · Score: 2, Interesting

      This is interesting why? The "chosen" contains (1) MIT PDOS and two schools (NYU and UCB) where MIT PDOS alumni have recently been hired, (2) a network shop (ICSI/ACIRI) and (3) a security shop (Rice). Like many such "picks," it reflects human connections and a fit with someone's agenda more than some abstract notion of organizational merit.

    2. Re:The Chosen by chenzhen · · Score: 2, Insightful

      That is why it is interesting. I suspect it is not the best arrangement, and therefore exploring why it happened as it did can lead to a better understanding of what is right/wrong in the scientific community. Always room for improvement.

  20. Current Internet not *that* decentralized by Duderstadt · · Score: 3, Informative
    Quoth the poster:

    I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    Not quite. The primary vulnerability lies within the Root DNS servers, which contain all DNS information for the entire Internet*. IIRC, there are only eleven or twelve of them. And because each replicates its data set to all other Root servers, catastrophic failure of one would bring down all of the others.

    If that ever happens, you can pretty much say goodbye to the Net, at least temporarily.

    *Actually, I think they hold the addresses of all Local DNS servers, which is basically the same thing.

    1. Re:Current Internet not *that* decentralized by Anonymous Coward · · Score: 0

      Erm. It would be a severe blow to the net, but large portions of the net are cached on hundreds of thousands of DNS servers around the world.
      Hell, host files contain quite a bit too.
      Given the small circle of servers I tend to access on a regular basis, I doubt I'd even notice. They are probably all cached for me...

    2. Re:Current Internet not *that* decentralized by Wesley+Felter · · Score: 2

      The primary vulnerability lies within the Root DNS servers, which contain all DNS information for the entire Internet*. IIRC, there are only eleven or twelve of them. And because each replicates its data set to all other Root servers, catastrophic failure of one would bring down all of the others.

      That would be a stupid way to run the root servers. My understanding is that the root servers are updated from an offline master; the whole point is that if one fails the others still work and can pick up the load.

    3. Re:Current Internet not *that* decentralized by glwtta · · Score: 5, Interesting
      And because each replicates its data set to all other Root servers, catastrophic failure of one would bring down all of the others.

      Um, very untrue - the primary root server replicates the data to the rest. If a non-primary root server goes down, you don't notice it. If the primary one goes down, the function is moved to any one of the rest (and you still don't notice it). Basically something like 3 or 4 of them have to go out before Joe InternetUser will notice any effect, and even then it would be somewhat inconvinient, not "catastrohpic". (This is what I rember from some article on the topic awhile back - it's not like I know anything about these things.)

      --
      sic transit gloria mundi
    4. Re:Current Internet not *that* decentralized by Tuzanor · · Score: 2
      because each replicates its data set to all other Root servers, catastrophic failure of one would bring down all of the other

      Nonononono, that would be extremely stupid. If one of the root servers went down, the others would pick up the slack, that is part of the redundancy.

      If that ever happens, you can pretty much say goodbye to the Net, at least temporarily.

      Not exactly. Even if all the root DNS servers were wipped from the face of the earth, the caches of all the local DNS servers would still know the addresses for any sites that were recently visited by its clients. So as long as the IPs of the sites didn't change, it would be ok as the local DNS servers would still know where to look.
      Now if you made a request to a site that the DNS server has never been to before, it would look up to higher DNS servers. If none of them, all the way back to the root servers, knew the answer, you wouldn't be able to get at those sites.

    5. Re:Current Internet not *that* decentralized by Alien+Being · · Score: 3, Informative

      This is informative?

      The "root servers" contain the locations of the "top level domain (TLD) servers". They can answer queries such as "where is the DNS for .com?"

      The TLD servers contain locations of the "next-to-top level domain servers. They can answer queries such as "where is the DNS for IBM.com?"

      IBM's own DNS can answer the question "where is www.ibm.com?".

      The system is already decentralized to the point that an attacker would have to hit numerous targets to have any significant effect. The only "central point" is the "source files" that feed the upper-level DN servers. Decentralizing those sources would turn the Net into anarchy. "I'm the DNS for .com", "no, I'm the DNS for .com".

      I suppose you *could* decentralize the sources, but you would need to implement a system of trust which would have its own center.

    6. Re:Current Internet not *that* decentralized by gclef · · Score: 3, Informative

      13 actually. And the replication doesn't quite work the way you claim: the 13 are all actually secondaries to a "hidden" primary.

      The main problem with that system, though, is that one mistake on the hidden primary (which has happened) screws up the entire system. And, yes, many many zones were hosed for a while as Network Solutions tried to figure out what the hell they did. And, of course, there's only 13 machines to DoS before all DNS becomes totally useless.

    7. Re:Current Internet not *that* decentralized by Sloppy · · Score: 1
      And, of course, there's only 13 machines to DoS before all DNS becomes totally useless.
      Not even then. DNS is heavily cached. It would have to be a very long DoS.
      --
      As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
  21. Clarification by I_am_Rambi · · Score: 3, Insightful

    DHT is like having a file cabinet distributed over numerous servers

    Is this DHT going to be decentralized so different servers are throughout the country? If so, would yahoo hold files for google? If it is this way, it sounds like my credit card data would be insecure. (Say a p0rn site is holding data for ebay)

    Or is it more like a backup of the server that is in the same room? If it is this way, don't most organizations that host their own site have more than one server with the same data?

    Or am I just totally confused?

    1. Re:Clarification by Salamander · · Score: 2
      would yahoo hold files for google? If it is this way, it sounds like my credit card data would be insecure

      A large part of how a system like this is supposed to work is the observation that having someone hold an encrypted and signed piece of data might help you survive a failure or improve performance, but doesn't do the holder any good whatsoever in terms of inspecting or modifying your data. If you consider the encryption to be secure, then this type of system can be just as secure.

      --
      Slashdot - News for Herds. Stuff that Splatters.
  22. NIIIP by Gaggme · · Score: 3, Informative

    The infrastructure of the internet has evolved out of the past few decades yet many key parts are still integral to the existance of the Internet.

    After 9/11 several security consultants met in a Senate hearing and demonstrated in a simulation, how the removal of a few key segments could cripple internet traffic (granted some of the plan involved small amount of urban sabatoge).

    The internet if scaled down could be compareable to the P2P networks. 90% of content on the internet is provided by less than 10% of computers connected.

    The people at http://www.niiip.org/ have amazing documents with regard to security and how the infrastructure of the internet works. Well worth a read.

    Another good spot for information, though slightly tainted, is http://www.iisweb.com/. They offer a skewed view of security, as well as some examples of "Worse Case Senarios"

    --
    My ignorance is a perfect shield against your logic.
  23. What's new about it by Salamander · · Score: 2

    The InfoWorld article describes a secure distributed storage system, not just plain old messaging connectivity. There aren't too many such beasts around; usually it's more of a "distributed, secure, usable - pick two" kind of thing. Some of the projects that approach the goal of combining all three actually seem to sharing the IRIS award - i.e. OceanStore at Berkeley and various projects at NYU. I don't know off the top of the head how ICSI and Rice fit in, but I'm about to go check their sites because I'll bet it's interesting.

    --
    Slashdot - News for Herds. Stuff that Splatters.
    1. Re:What's new about it by Salamander · · Score: 5, Informative

      The Rice connection almost certainly has to do with Peter Druschel and Pastry (for which the other PI seems to be Antony Rowstron of Microsoft Research, interestingly enough). I'm not totally sure of the ICSI connection, but they seem to be closely affiliated with UCB and I know that Ion Stoica works in these areas. OceanStore, CFS/SFS, Pastry, Kademlia - it's definitely a pretty good collection. A lot of the top people in DHT/DOLR (Distributed Hash Table, Distributed Object Location and Routing) research are involved, and I'd love to know how they plan to converge their various efforts toward a common solution.

      --
      Slashdot - News for Herds. Stuff that Splatters.
  24. not decentralized by RussRoss · · Score: 2, Informative

    The design is meant to be decentralized (except for some databases like DNS) but in practice it isn't nearly as decentralized as it should be.

    I remember an anecdote about some company that installed multiple data feeds from multiple vendors to ensure reliability--redundancy is always good, right? Some construction worker was fixing a pipe and cut a fiber cable and sure enough, the company was offline. The different vendors all shared the same fiber so the redundancy wasn't real.

    Tons of traffic gets jammed through a few key distribution routes. I'll bet the typical internet user sends traffic through many routers with no backups--you could probably shut down my home cable modem service by pulling the plug on any of at least half-a-dozen routers before it gets out of the provider's internal network. Redundancy in the backbone is nice, but useless if the endpoints are vulnerable.

    - Russ

    1. Re:not decentralized by windex · · Score: 2

      This is because of tier 1 providers. We're a tier 2 that only has network within Wisconsin, but we have 4 peers that we only route inter-network traffic for, e.g. from us to Norlight, from Norlight to us, but not from us through Norlight to TDS or vice versa. They don't want to give us access as an "equal" peer, because they'd rather charge us for a connection, even though we can provide them with high capacity long distance (OC-3) cross-network routes. Since they won't help us, we certianly wont help them by establishing the cross-net routes on our end for free. If any one of our peers offered to take outbound traffic for us we would allow them traffic through our network to our other peers, no problem. Them not wanting to scratch our back is what causes the lack of a decentralized network.

  25. sorry bout the formatting by chenzhen · · Score: 1

    forgot to preview. here it is more legibly:

    Interesting pick of universities that are getting the cash. Compare that list to Usnews' 2003 ranking of CS grad schools:

    1. Carnegie Mellon University (PA)
    Massachusetts Institute of Technology
    Stanford University (CA)
    University of California-Berkeley
    5. University of Illinois-Urbana-Champaign


    See for yourself @
    http://www.usnews.com/usnews/edu/grad/rankings/phd sci/brief/com_brief.php

    1. Re:sorry bout the formatting by chenzhen · · Score: 1

      Ha. I did CS for a year, and decided that learning about the universe is slightly more useful than memorizing swap rules for red-black trees. No offense, Jason. I do dig Chicago.

  26. No longer decentralized. by Ashurbanipal · · Score: 3, Insightful
    > I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    Since every release of BIND ties us more thoroughly to ICANN-dominated centralised name control, I'd guess that DNS would be what they are fixing.

    It used to be easy to use alternative roots in conjunction with the "authoritative" (authoritarian?) roots... but now it's one or the other. Caveat - I haven't tried the BIND alternatives yet, there are only so many hours in the day.

    The namespace of the Internet is hosed, even USENET's namespace.namespace.namespace is more useful. And the geographic separation of the root nameservers doesn't matter much when all change authority is vested in a single entity.

    1. Re:No longer decentralized. by TechnoVooDooDaddy · · Score: 2
      root schmoot... if the roots went down, IP addressing still works, and BIND still supports the good old HOSTS file...

      IF all of the authoritative roots were nuked, I bet it would be a matter of hours before small networks bounced back up using HOSTS files, and soon had an alternative in place... and IF all the authoritative roots were targeted and taken out, it's going to be pretty obvious what's going on in the world, and thereby easily worked around.

      It doesn't have to be all automagic, we're still smart people behind these screens.

    2. Re:No longer decentralized. by Sir+Spank-o-tron · · Score: 1

      What are you talking about ?
      which part of BIND ties you to ICANN roots ?

      you just might be a cracker

      --
      -- Spankmeister General
    3. Re:No longer decentralized. by Ashurbanipal · · Score: 1

      I don't think I'm a cracker... I'm not from Georgia, Alabama, or Mississippi (Southerners note that was a weak attempt at a JOKE).

      Under BIND 4.x it was easy to have multiple DNS roots. Under BIND 8.x it was harder; I had to implement some fairly serious hacks that the average sysadmin might find daunting. Under BIND 9, I haven't figured out how to do it. If anyone else has, please post! I'll be eternally grateful, since I want the user-friendly TLDs back.

      I'm willing to go to DJBDNS or something, also, if that's a better route. I find Dr. B. a bit prickly and difficult, but so's Vixie (ISC hackers note here that I respect and appreciate their efforts, esp. Ted Lemon's marvelous work on the dhcpd).

      There's no technical reason not to allow multiple roots, really; even naming conflicts can be allowed as long as a configurable system of trust is supported. For example, trust verisign-rooted DNS first for the .com and .net domains, trust the AlterNIC first for the .med and .porn domains, and so forth. It's not the big deal single-root people are insisting it is, it's not like building a heavier-than-air aircraft (which is obviously impossible, right?).

  27. Replication has its own dangers by fleabag · · Score: 3, Informative

    The idea that just because storage is distributed, then it is secure, is only partially true.

    If your data is distributed, and one server gets taken out, then fine, you still have service, and the downed server can be re-synched.

    If your data is distributed, and someone updates it, then the update is faithfully replicated - even if it is wrong. I work for a company that has its Lotus Notes address database distributed across > 50 locations. One of these would probably survive World War III. Unfortunately, a few years ago, none of them survived a deletion, followed by automatic replication. Took us down for a day, becuase the tapes were only in 1 location.

    Of course, you could skip the replication. The you have the non-trivial problem of finding the latest version.

    1. Re:Replication has its own dangers by Salamander · · Score: 2
      If your data is distributed, and someone updates it, then the update is faithfully replicated - even if it is wrong.

      Depends on your definition of "wrong"; if your system supports true deletion and a properly authorized entity deleted something, it should be gone from all replicas. Largely for that reason, many of the systems being developed in this area tend toward an archival model where previous updates are supposed to remain available almost forever and deletion just means "mark it as not being part of the current data set".

      The you have the non-trivial problem of finding the latest version.

      Yep, it's non-trivial all right, but these are just the kinds of people who might be able to beat the problem into submission.

      --
      Slashdot - News for Herds. Stuff that Splatters.
    2. Re:Replication has its own dangers by The+Kow · · Score: 1

      I don't think anyone would make the claim that a distributed database would save you from accidently hitting the 'Delete' button. That's an interface problem, not a security one.

      If someone ELSE hit the Delete button, then its a security issue, but a different one. The data itself, though, is fairly safe.

      --
      Moo
  28. What is chord? by Anonymous Coward · · Score: 0

    Some sort of utility to change a file's ordination?

  29. Ironic by hendridm · · Score: 1

    The same institutions who are fighting that which will rely strongly on a decentralized infrastructure (P2P networks of today and tomorrow) are also researching ways to improve it.

    Ok, I know universities generally aren't against P2P technology, just what it is being used for.

  30. You dont know what you are talking about by goombah99 · · Score: 2, Insightful

    You dumb troll, the arpanet was designed exactly to be a self healing system to survive nuclear attack. Time after time, earthquakes and power failures have not killed the internet. And if everyone got on at the same time it might suck in thoughput and packet loss but it would function because it has done so.

    --
    Some drink at the fountain of knowledge. Others just gargle.
    1. Re:You dont know what you are talking about by greenhide · · Score: 2

      When arpanet was first designed, I don't think there was any thought that it would have as many users as it currently does. In fact, I'm betting that the absolute ceiling on the expected number of total (not concurrent) users would have been 1,000,000 or so.

      Arpanet's main concern, I think, was forming a network that could go through many pathways -- not a network that could handle an endlessly growing amount of bandwidth usage.

      I myself have experienced occasions in which the ISP's backbone provider had part of their network go down, and the access time became painfully slow...something on the order of 200 bytes per second over a DSL modem.

      I don't know all the details, but they have been able to show that excessive usage can slow down access times over the Net.

      --
      Karma: Chevy Kavalierma.
    2. Re:You dont know what you are talking about by Zeinfeld · · Score: 4, Interesting
      You dumb troll, the arpanet was designed exactly to be a self healing system to survive nuclear attack

      No, it was not, Vint Cerf has dispelled that myth a number of times.

      The Internet does not emply flood fill routing or any of the technologies that one would want to have available if you wanted to survive a nuclear attack.

      TCP/IP was actually designed with the idea that networks could be quickly assembled with minimal configuration issues and without the need for every node to have access to a central co-ordination point.

      The Internet does actually have one central coordination point, the A root of the DNS service. However that is decoupled from the minute by minute actions of the Internet hosts so that the A root could in theory go down and come back up without a calamity (but nobody wants to try to find out!).

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
    3. Re:You dont know what you are talking about by Yokaze · · Score: 2

      >the arpanet was designed exactly to be a self healing system to survive nuclear attack.

      Actually, you are makeing two statements.
      The first one is only partially true and only in context of the second statement.

      The Internet was designed to facilitate the communication between scientists and military even in the event of a major outage (a nuclear attack in mind).
      It was not designed to be "self healing", it was designed to degrade gracefully.

      You are surely aware of the differences between a nuclear attack and DoS (may it be voluntary or involuntary).
      Both may require redundancy, but the first one a redundancy of transmission paths, the second one a redundancy of sources.

      Not to mention, that the actual Internet and the theory have only the standards in common.
      There are central exchange points where most of the traffic is routed through, (London, New York, comes to mind), most Root-DNS servers are concentrated in the US, routing-tables are statically set (to accomodate economical/political decisions).

      >Time after time, earthquakes and power failures have not killed the internet.

      Not the Internet as whole. But the current requirements have changed. Best Effort is not good enough anymore. We are not happy anymore, just being able to communicate somehow, in the event of a nuclear attack.
      A degradation of data transfer from Tbit/s to some Mbit/s between two continents can be considered as a major breakdown.

      --
      "Between strong and weak, between rich and poor [...], it is freedom which oppresses and the law which sets free"
    4. Re:You dont know what you are talking about by kaladorn · · Score: 3, Interesting

      You suggest Vint Cerf dispelled the myth a number of times that the Internet was designed to withstand (in this case, gracefully degrade) under a nuclear attack. I'd be most interested to see a link to somewhere where this is quoted. Most textbooks relating to TCP/IP propagate this alleged myth and I'd be interested to see what exactly Vint said.

      I was always under the impression that the decentralized nature of the original network was a design criteria which arose from the desire to withstand (or degrade gracefully more correctly stated) in the event of significant damage to the overall infrastructure. Are you suggesting this is not the case? If so, I'd _really_ like to see the sources you have used to arrive at this conclusion.

      --
      -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
    5. Re:You dont know what you are talking about by leshert · · Score: 2
      *sigh* Three seconds with Google and the words "cerf myth nuclear" yields:
      1. http://www.usatoday.com/life/cyber/tech/ctg000.htm
        "I think that the old arguments that will come up at the (UCLA) conference and have come up over and over is everybody is claiming responsibility for everything at this point," says [Lawrence] Roberts, who was the designer and developer of ARPANET.

        But one thing all agree on is that the Internet was not conceived as a fail-safe communications tool in case of nuclear war, a much-promulgated myth over the years. The Rand Research Institute was developing a study shortly after ARPANET's birth that has been confused with the research-oriented ARPANET and subsequent developments.

        Nuclear war "wasn't the reason we did anything," Roberts says. "That story is just wrong."
      2. http://www2.aus.us.mids.org/mn/1002/myth.html[In 1999], Alex McKenzie (BBN 1967-1976) posted the following:

        While it is true that the design of the ARPANET was not at all influenced by concerns about surviving a nuclear attack, it is also true that the designers of the ARPANET and other ARPA-sponsored networks were always concerned about "robustness", which means the ability to keep operating in spite of failures in individual nodes or the circuits connecting them.
      3. http://www.ibiblio.org/pioneers/
        The architecture of the ARPANET relied heavily on the ideas of Paul Baran who co-invented a new system known as packet-switching.( A British computer scientist, Donald Davies, independently came up with his own theories of packet-switching). Baran also suggested that the network be designed as a distributed network. This design, which included a high level of redundancy, would make the network more robust in the case of a nuclear attack. This is probably where the myth that the Internet was created as a communications network for the event of a nuclear war comes from. As a distributed network the ARPANET definitely was robust, and possibly could have withstood a nuclear attack, but the chief goal of its creators was to facilitate normal communications between researchers.

      And that's just the first three hits. Why is it that people are all too willing to tell others to provide links, when it's now just as easy to find them yourself? While it's true that the "burden of proof" usually rests with the party proposing an opinion, when that burden becomes as light as it is with the modern Internet, it's irresponsible and unproductive to just lob "links, please" comments without engaging one's own brain.
    6. Re:You dont know what you are talking about by Zeinfeld · · Score: 2
      If so, I'd _really_ like to see the sources you have used to arrive at this conclusion.

      Sorry, I don't know where Vint is at the moment, I spoke with him directly. Also Tom Knight, David Clark, quite a few people.

      Try looking on google, cerf myth nuclear internet

      Hit #1 http://www.ibiblio.org/pioneers/

      However, you don't need to take my word for it, go look at the RFCs describing the design of the Internet, the first to contain the word 'nuclear' is 2731 and it is in a mention to where Homer Simpson works:

      Google- nuclear site:ietf.org

      --
      Looking for an Information Security student project suggestion?
      Try http://dotcrimeManifesto.com/
    7. Re:You dont know what you are talking about by kaladorn · · Score: 2

      Whereas I will admit to being lazy, I'd also like to point out that not one of the bits of text you reproduce above is attributable to Vint Cerf.

      --
      -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
    8. Re:You dont know what you are talking about by kaladorn · · Score: 2

      Slashdot being what it is and having the diverse population that it does, I'm not about to gainsay your claim. However, you must admit that making a claim about a particular authority having made a particular statement and not providing any sort of reference (nor have I yet seen one, nor found one) does call things into question. And unverifiable (in terms of their actual content) personal conversations certainly aren't very useful to the rest of us.

      But then, this is slashdot and just about anything said here could be entirely true, entirely made up, or anything in between. :)

      Thanks for the additional information.

      --
      -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
  31. insert RIAA joke here by Merik · · Score: 4, Insightful
    "The researchers hope that they can create a robust, distributed network that could essentially act as a secure storage system for the Internet. Governments, institutions and businesses worldwide could theoretically choose to place their data in the secure system, which would minimize the effects of outage or attack."

    This seems it would reduce an individual entity's loss to an attack with the idea of, everyone loses a little rather than one losing alot. But it also seems, even though the details in this article are lacking, that physical security of boxes would become more important.

    Should the british goverment, a university, and whoever else, trust a small buisness in san diego to house its part data.

    the only way this would work from a security stand point would be to make the information that is spread out over 50 or so computers not accessible from the machine its hosted in on. and it seems this would be pretty much impossible(er.. hackerd00ds) from a purely software approach....

    do you trust me with your data? um... i dont

    --

    --

    What is the sound of this sentence?

    1. Re:insert RIAA joke here by james_underscore · · Score: 1

      the only way this would work from a security stand point would be to make the information that is spread out over 50 or so computers not accessible from the machine its hosted in on

      Isn't this what freenet does by encrypting all the data that is stored on your machine but not telling you the key to unencrypt the data on your machine?

    2. Re:insert RIAA joke here by RedHat+Rocky · · Score: 1

      Freenet is a software-only system that already stores information with strong encryption. Any individual freenet node cannot be reasonably scanned for certain content, IIRC.

      http://freenetproject.org/

      So, as the tagline goes.....

      --
      Anything is possible given time and money.
    3. Re:insert RIAA joke here by cristofer8 · · Score: 2, Informative

      Actually, freenet does exactly that. When you use freenet, you store someone else's data on your computer. However, it's encrypted so you never have any idea what you're storing. And you also don't have the only copy of it, so if you delete all your partial encrypted data, it doesn't cease to exist.

    4. Re:insert RIAA joke here by Salamander · · Score: 2
      Should the british goverment, a university, and whoever else, trust a small buisness in san diego to house its part data.

      If the data is encrypted and signed, why not? They can't inspect it, they can't modify it, the worst they can do is drop it on the floor and that's exactly equivalent to the sort of failure that other parts of the system are designed to deal with. It gets more difficult when there might be a very large number of "rogue servers" that promise to store copies and then don't, but even that scenario need not be fatal and the basic idea is still sound.

      --
      Slashdot - News for Herds. Stuff that Splatters.
  32. tapped? by auroran · · Score: 1

    if these universities are being tapped how can they be secure??? :)

  33. Raid Array of Servers by malarkey · · Score: 1

    That's what it sounds like to me, redundant storage of DNS info and content

  34. the internet USED to be decentralized by Anonymous Coward · · Score: 1, Insightful

    Back in the days of bang paths. That was a while back. The system was peer-to-peer and designed to withstand the nuking of many but not all nodes.

    Now everything is centralized, with backbone pipes, etc.

  35. Sounds like by Uttles · · Score: 2

    Sounds like they mean they want to store related information in a redundant way so that if one part of the network goes down you can still access the info. Like a RAID array.

    --

    ~ now you know
  36. decentralized internet by Hyperkinetic · · Score: 0
    I thought the Internet was already decentralized, ...


    It was decentralized until it became commercial, then it became hierarchical. The net as it is now is screwed if a few points get wacked.

  37. Its the storage stupid! by DaoudaW · · Score: 4, Insightful

    C'mon guys did you even read the article. NSF is not proposing changing the structure of the web, rather they are hoping to utilize the structure to make data more secure by storing it in decentralized fashion. No one server will contain enough data to reconstruct the file, any server can crash and the file will still be available.

    1. Re:Its the storage stupid! by stak · · Score: 1

      .par files on the grandest scale.

    2. Re:Its the storage stupid! by mhesseltine · · Score: 2, Informative

      Doesn't this sound like the freenet project? An encrypted and decentralized system where everything is P2P, no-one can re-construct your data, and everyone trusts everyone else?

      --
      Overrated / Underrated : Moderation :: Anonymous Coward : Posting
  38. Botched DNS "Tape Load"? by reallocate · · Score: 2

    Memory fades, but -- reportedly -- someone at Network Solutions in Herndon loaded the wrong, or bad, DNS tape a few years ago. So, for the better part of a day, lots of helpless little packets went to the wrong place.

    Anyone know if there's some truth in this, or is it another myth of the Internet?

    --
    -- Slashdot: When Public Access TV Says "No"
  39. Freenet without the freedom? by Anonymous Coward · · Score: 0


    It sounds similar to Freenet, but with no mention of concerns like anonymity and censorship.

    The article is relatively sparse on details. Does anyone have a link to more information about the project?

    1. Re:Freenet without the freedom? by Anonymous Coward · · Score: 1, Interesting
      Posted too soon. It sounds like they're considering the issues.

      From the document at http://iris.lcs.mit.edu/proposal.html :
      4.3.3 Anonymity and Censor-Resistance

      Some applications may require that data can be retrieved anonymously, or that particular pieces of data cannot easily be deleted from the system. Though these are partially political issues, the technical fundamentals are worth exploring. A particularly useful question is the extent to which anonymity and censor-resistance must be integrated into the design of a system, as was done in Freenet [16]. We hope that layering will allow these concerns to be treated separately, for example by using general-purpose anonymity techniques such as Onion Routing [60] or Tarzan [23]. On the other hand, integration seems to be a good approach to censor-resistance, as explored by MaziÃres in Tangler [65].
  40. real decentralization is needed by TheSHAD0W · · Score: 4, Interesting

    The current internet was designed to be decentralized, with no specific backbone required; routers would figure out what paths to send what packets over. Scaling-wise, it's been pretty successful. Redundancy-wise, it is less than so. A bad route typically doesn't result in a smooth transfer to another link unless a lot of work has been done to assure it would happen; instead, packets are dropped and communications are badly disrupted.

    I had a perfect example of that happen to my current ISP; after getting terrible communications errors, I called them. Turns out one of three of their routes was out; they reset a router, and everything was copacetic. But the other two routes should have been able to handle the traffic. They didn't.

    With the advent of IP6, the structure of the net becomes even more convoluted, and errors may become even more difficult to handle. In order to have a nice, stable internet, a system of handling broken routes needs to be integrated into the new spec.

  41. Could have been clearer by Wesley+Felter · · Score: 2

    Thanks; the article was a little unclear about what this project is actually about. Part of it talked about the Internet in general, part of it was about DHTs, and buried in there was a mention of storage.

  42. What They Might Be Fixing by The+Raven · · Score: 2

    The Internet is decentralized. The services required to operate it are not. Central administration is required for domain name resolution and routing tables... I'm sure there are other things, but I'm not an Inet expert.

    Perhaps they are trying to make a self organizing network... automatic rerouting, dynamic topology creation, decentralized name resolution. Similar ideas have been discussed with P2P networks.

    Perhaps they are designing a network using P2P concepts.

    And perhaps I should just read the article. :-)

    --
    "I will trust Google to 'do no evil' until the founders no longer run it." Hello Alphabet.
  43. aren't universities ususally more insecure? by JeanBaptiste · · Score: 1

    as many U networks are run by students that may not have the knowledge/experience that you would find in the private sector? NOT A TROLL, this is an observation of mine...

  44. Have they heard of NFS, GFS, Coda, or ... by Anonymous Coward · · Score: 0

    any other network filesystem. I think that especially GFS would be exactly what they're looking for.

  45. Domain Decenralizaiton by Shwag · · Score: 1

    > I thought the Internet was already decentralized, so I'm curious about what exactly they're fixing.

    The DNS is what they are decentralizing, among other things. If someone takes out the root domain server, the internet would be pretty screwed right now. If we had an easy system for routing information that wasn't based on DNS, it would change a lot of systems. Web Sites, Email accounts, Instant Messaging, are all dependent on DNS. If this project works, we may be able to say goodbye to AOL's monopoly on IM.

    Who needs a tag line anyways!

    1. Re:Domain Decenralizaiton by Shwag · · Score: 1

      Imaging using gnutella to search for People and Web sites, rather then just files (pr0n).

    2. Re:Domain Decenralizaiton by user32.ExitWindowsEx · · Score: 1

      Wouldn't that be Googella?
      (yes, I know, lame 'Google' + 'Gnutella' comment, but humor was intended)

      --
      "Evil will always triumph because good is dumb." -- Dark Helmet
  46. Why this doesn't matter by Brew+Bird · · Score: 2, Insightful

    This sounds more like some politicos trying to 'make a diffrence' over something that doesn't need to be dealt with.

    NO ONE relies on the Internet for matters of 'life and death', which is the only reason you would go to the expense/aggrivation to make something that fault tolerant (can you hear the drums beating out the old 'we must be safe from everything' rythm?).

    When people couldn't get all the pretty pictures on the last few disasters we have had online, what did they do. They went to a medium better suited for broad and instantaneous information distribution. Television and Radio! What a concept! An amazing technology that is capable of reaching millions of people within range of any one of hundreds of 'broadcast stations' located all over the planet!

    Of course, because the Internet doesn't work that way, there must be something wrong with it, right?

    This reminds me of the telcos demanding QoS for IP, so they could start using a more familiar revenue model for IP and IP services...

  47. CACHE by Anonymous Coward · · Score: 0

    Until the cache expires - 3 days maximum.

  48. I'm not clear on the concept by poot_rootbeer · · Score: 2


    Anyone who's dealt with memory or disk allocation knows that performance suffers when a resource (file, data string, etc.) is fragmented over several locations on the same physical unit. This is why smart Oracle DBAs define storage parameters when they create objects, why smart Windows users run "Defrag" on their FAT volumes periodically, etc.

    If I understand the (altogether too brief) article correctly, the "secure net" will work by fragmenting a file across multiple servers, in multiple locations. To get the most recent copy of a file, any given node will have to go out onto the network and retrieve all the pieces that aren't stored locally. This is sure to yield much poorer performance than a purely-local retrieval (not to mention the inherent security risk of transferring data over the network...)

    What am I missing here

    1. Re:I'm not clear on the concept by poot_rootbeer · · Score: 1

      (...besides the question mark at the end of my sentence, which Netscape 4.x's crappy form handler lops off if you don't send a newline at the end of a textarea form submission?)\n

  49. Hmmm.... by kaladorn · · Score: 2

    some kind of routing protocol would have to be devised that understood the topology of such a network (perhaps by using latitude and longitude as metrics for the routing,

    That smacks of geolocation to me. People don't want others to know their incoming IP addresses, let alone their real coordinates!

    Distributed routing could work, but I can see a lot of ways for such a decentralized approach to break down.

    --
    -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
  50. Sounds like the article is describing a RAID by complexmath · · Score: 1

    Other people have mentioned that the internet isn't as decentralized as would first appear (DNS being a particular problem). But the article seems to focus specifically on breaking a single server into a decentralized (and potentially redundant) data cluster. The idea seems to be to eliminate subnet access from being a single point of falue for access to data stored on a single "server." I imagine a lot of what they want could be done now with mirroring and a bit of client-side coding, but it sounds like they want to make the server-side more than just a collection of redundant data sources.

  51. Re:Security != secure hosts, encryption of traffic by kaladorn · · Score: 2

    Security of data relates to secure hosts and secure encrypted traffic and security of web services relates to secure hosts and authentication of users. Security of the network itself relates to the physical security of the hardware and transmission lines, the redundancy of the hardware, the adaptability of the software for routing and other network services, etc.

    --
    -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
  52. already decentralized? by QuantumRiff · · Score: 2

    Please explain how this is decentralized, not to mention secure:

    This file is made available by InterNIC registration services
    under anonymous FTP as
    file /domain/named.root
    on server FTP.RS.INTERNIC.NET -OR- under Gopher at RS.INTERNIC.NET
    under menu InterNIC Registration Services (NSI)
    submenu InterNIC Registration Archives
    file named.root

    last update: Aug 22, 1997
    related version of root zone: 1997082200

    formerly NS.INTERNIC.NET
    . 3600000 IN NS A.ROOT-SERVERS.NET.A.ROOT-SERVERS.NET. 3600000 A 198.41.0.4

    formerly NS1.ISI.EDU
    . 3600000 NS B.ROOT-SERVERS.NET.B.ROOT-SERVERS.NET. 3600000 A 128.9.0.107

    formerly C.PSI.NET
    . 3600000 NS C.ROOT-SERVERS.NET.C.ROOT-SERVERS.NET. 3600000 A 192.33.4.12

    formerly TERP.UMD.EDU
    . 3600000 NS D.ROOT-SERVERS.NET.D.ROOT-SERVERS.NET. 3600000 A 128.8.10.90

    formerly NS.NASA.GOV
    . 3600000 NS E.ROOT-SERVERS.NET.E.ROOT-SERVERS.NET. 3600000 A 192.203.230.10
    formerly NS.ISC.ORG. 3600000 NS F.ROOT-SERVERS.NET.F.ROOT-SERVERS.NET. 3600000 A 192.5.5.241

    formerly NS.NIC.DDN.MIL. 3600000 NS G.ROOT-SERVERS.NET.G.ROOT-SERVERS.NET. 3600000 A 192.112.36.4

    formerly AOS.ARL.ARMY.MIL
    . 3600000 NS H.ROOT-SERVERS.NET.H.ROOT-SERVERS.NET. 3600000 A 128.63.2.53

    formerly NIC.NORDU.NET
    . 3600000 NS I.ROOT-SERVERS.NET.I.ROOT-SERVERS.NET. 3600000 A 192.36.148.17
    temporarily housed at NSI (InterNIC)
    . 3600000 NS J.ROOT-SERVERS.NET.J.ROOT-SERVERS.NET. 3600000 A 198.41.0.10

    housed in LINX, operated by RIPE NCC
    . 3600000 NS K.ROOT-SERVERS.NET.K.ROOT-SERVERS.NET. 3600000 A 193.0.14.129
    temporarily housed at ISI (IANA)
    . 3600000 NS L.ROOT-SERVERS.NET.L.ROOT-SERVERS.NET. 3600000 A 198.32.64.12

    housed in Japan, operated by WIDE
    . 3600000 NS M.ROOT-SERVERS.NET.M.ROOT-SERVERS.NET. 3600000 A 202.12.27.33 End of File

    --

    What are we going to do tonight Brain?
  53. Secure distributed Internet by crmartin · · Score: 1
    It's the "secure" distributed part that's important.

    The internet as it stands has highly robust routing -- if you drop a bomb on Cleveland it won't prevent routing to Akron. But (as someone already pointed out) the hierarchical DNS name protocol has it's problems, because there is effectively a small number of "masters" and those masters become a point of vulnerability.

    The internet itself (IP4) doesn't provide some other useful things, though, like:

    • Authenticated paths
    • Protection against interposer ("man in the middle") attacks.
    • Reliable distributed naming.

    They mention one other point in the article, which is that they hope to build a reliable distributed storage scheme. So once you put a file or object into the distributed store, it isn't local to one place -- kind of like an internet RAID system.

    The RIAA is gonna plotz, though: this makes it just that much harder to track down and eliminate all the copies ....

  54. Universities Tapped To Build Secure Net, sure..... by netcaretaker · · Score: 1

    Every university I have ever been to had the worse security of any network I had ever seen. They are going to Build it? From What? Off the shelf gear? Wow, no one else could do that....

  55. NAP's by sydbarrett74 · · Score: 2

    Actually one aspect of the 'Net -- network access points -- is remarkably centralised. I've read that anywhere from 40% to 80% of traffic in North America passes through UUNet's network. If UUNet goes down, anywhere from 2/5 to 4/5 of traffic in North America would, if not grind to a halt, be slowed down tremendously. And that's a scary thought.

    --
    'He who has to break a thing to find out what it is, has left the path of wisdom.' -- Gandalf to Saruman
    1. Re:NAP's by Brew+Bird · · Score: 1

      Uh, no. NAPs don't carry very much traffic, for the exact reason you stated. UUnet carries a tremendous amount of traffic due mainly to thier market leadership in transit connectivity.

      For UUnet to go 'down' as you put it, would be very difficult, as the network itself is very decentralized. it's not like they pull all thier traffic back to one spot and then send it back out again.

      Of course, them going out of business would be another thing all together.

  56. DNS isn't the Internet. by mmol_6453 · · Score: 2

    The only portion of the Internet that depends on a central authority, IIRC, is DNS.

    But DNS isn't the Internet.

    DNS is just an extension to the 'Net, added on later to make URLs easier to understand. Besides, who says we OSS'ers can't come up with, and implement, a better system?

    The problem with the Internet that I see, now, is the fact that you need manual effort to fix things like routing issues. Anyone remember about three or four years back when two routers in Florida each thought the other one was the destination for all their incoming connections?

    It wouldn't have been so bad if they hadn't told all the other routers in the world that they were where all connections needed to go.

    Then there's also the fact that most of Michigan looses its internet connection whenever Chicago has problems. The very nature of hubs make them weak points in the Internet infrastructure.

    --
    What's this Submit thingy do?
  57. Re:Universities Tapped To Build Secure Net, sure.. by Brew+Bird · · Score: 1

    Secure networks are simple. Just don't plug anyone you don't know into it. Universities have lax security because it is not a priority. Nothing they have would matter if someone else saw it. No one is going to DIE if thier grades get 'stolen'.

    however, just because it isn't a priority doesn't mean they couldn't if they wanted to. Don't confuse lack of need with lack of knowledge.

    Where things go wrong is when some secretary wants to check her AOL mail, and manages to convince the network admin she is sleeping with to hook 'AOL' into the secure network...

    Think it can't happen? LOL :)

  58. Sure, you personally will be OK - me too. by Ashurbanipal · · Score: 1

    The BIND daemon itself doesn't support /etc/hosts, but you're right that most systems (which generally use the NSS and the BIND resolver library code, these days) still do.

    So, sure, your corporate network isn't tied to the root nameservers by anything other than convenience.

    But the point of the Internet is *global* connectivity. That means support for millions of clueless AOhell users and their ilk too... and they are utterly dependent on a single naming authority - Verisign.

  59. How does this shit get moderated down?! by mekkab · · Score: 2

    Fookin' 'ell!

    that was damn-near brilliant!

    LADIES and GENTLEMEN, Alan Thicke has left the building!

    --
    In the future, I would want to not be isolated from my friends in the Space Station.
  60. Re:Universities Tapped To Build Secure Net, sure.. by netcaretaker · · Score: 1

    You are right, it is not a priority, and the politics at a university will not allow any security, and really not the tight secutity they are talking about. They do have a lack of knowlage, but I don't blame the engineers, it has never been a task they are required to do.

  61. A link that does discuss the quote by kaladorn · · Score: 2

    Vint talking about the myth

    Note he does mention that being Defense-funded, it did have to display some potential for some military usage. So I would agree that it wasn't developed "to survive a nuclear war" but it was likely funded because it could serve a military purpose (command and control capability enhancement).

    --
    -- Mal: "Well they tell you: never hit a man with a closed fist. But it is, on occasion, hilarious."
  62. Last Post! by alpg · · Score: 1

    When you have 200 programmers trying to write code for one
    product, like Win95 or NT, what you get is a multipule personality
    program. By definition, the real problem is that these programs are
    psychotic by nature and make people crazy when they use them.
    -- Joan Brewer on alt.destroy.microsoft

    - this post brought to you by the Automated Last Post Generator...