Slashdot Mirror


Verisign's SiteFinder - An Engineer's View

ixs writes "CircleID has an interesting article by David Monosov about Verisign's plans to reintroduce Sitefinder. The article presents the thesis that the Internet engineering community is partly to blame for Verisign's ability to mess with the .com and .net root zones. According to the author we spend too much time with our systems and not enough with politics. The writeup was previously posted to NANOG and received a favorable response from Paul Vixie."

38 of 159 comments (clear)

  1. ICANN? by autopr0n · · Score: 4, Interesting

    ICANN threatened to sue them, and 'revoke' their registry status last time, and they relented. Is there any indication that ICANN intends to do the same thing again? My guess is that Verisign isn't as stupid as SCO and wouldn't go forward with this if they thought they would lose out on what's basically a huge free money engine over this. Have they made a deal with ICANN? Do they think they can win, and own the entire domain system for .COM and .NET, ICANN be damned?

    I mean, if they can get away with this, what's to stop them from doing things like shutting out other registrars, etc?

    --
    autopr0n is like, down and stuff.
    1. Re:ICANN? by superhoe · · Score: 4, Interesting

      I still keep on wondering how much these certain companies like SCO and Verisign will win in the long run (via their corporate image) by introducing this new 'corporate world bully'-type to the general public.

      --

      -el

    2. Re:ICANN? by 1s44c · · Score: 5, Insightful

      I mean, if they can get away with this, what's to stop them from doing things like shutting out other registrars, etc?

      We are. There is only a minor edit to resolv.conf between having a monopoly and having nothing.

      ICANN could be forced to revoke verisigns status if an alternate .com and .net registry was setup and honoured all existing third level domains.

  2. What? by MarsCtrl · · Score: 4, Funny
    According to the author we spend too much time with our systems and not enough with politics.

    What? I don't have to listen to this! I'm going back to my desk!
    --

    I was going to put a sig here, but I had already submitted the message.
  3. enough time by abhisarda · · Score: 4, Funny

    According to the author we spend too much time with our systems and not enough with politics.

    Ok. Who watches CPAN here? Time to throw out our congressmen(and women) and take their places on capitol hill.
    And make our congressmen code monkeys. Don't be surprised if you frag down your senator on CS then.

    1. Re:enough time by warkda+rrior · · Score: 5, Funny

      Oh, I see, it's CSPAN I should be watching, not CPAN. Obviously a typo...

      Does CSPAN support regexes?

      --
      You need to install an RTFM interface.
    2. Re:enough time by Soko · · Score: 4, Funny

      Ummm... CPAN? Ohhhh, I see - And make our congressmen code monkeys. - laws written in Perl. Might be more understandable then. :P

      (BTW, it's CSPAN. I know that and I'm even Canadian.)

      Soko

      --
      "Depression is merely anger without enthusiasm." - Anonymous
    3. Re:enough time by PacoTaco · · Score: 4, Funny

      laws written in Perl if($campaign_contribution > 1000000) { $law .= $amendment; }

  4. Wow! Worst summary for an article ever? by Anonymous Coward · · Score: 4, Insightful

    The tone of the summary makes it seem like Monosov is advocating leaving Verisign alone and letting them do whatever they want.

    In fact, the article is exactly the opposite and states that we should wrest control of .com,.net, and .org registration from capitalist companies, and give it to a more global entity. Then, use those funds to help the Internet infrastructure further instead of lining the pockets of the already-rich.

  5. politics by pizza_milkshake · · Score: 4, Funny

    the problem with politics is that you need to get political in order to make sure people don't get political

  6. Really? by Anonymous Coward · · Score: 5, Funny

    According to the author we spend too much time with our systems and not enough with politics.

    No shit, Sherlock. That's why we're engineers.

    Mike

  7. They shouldn't draw attention to themselves by Capt'n+Hector · · Score: 4, Insightful

    What Verisign doesn't understand is that the public will put up with it's monopoly if we can use the internet day to day without seeing the verisign logo. This company has somehow cheated the system to become the overlord of the internet. As long as everyday consumers aren't aware where their meat comes from, they'll eat it. But if the harsh truth faced them every day, nobody would touch a big mac. In the same way, Verisign can get away with it's monopoly because nobody cares where the internet comes from. I hope sitefinder changes this. Let sitefinder be the 21st century "The Jungle."

    --
    Quid festinatio swallonis est aetherfuga inonusti?
    Africus aut Europaeus?
    1. Re:They shouldn't draw attention to themselves by Clinoti · · Score: 5, Interesting
      No, what Verisign does understand is (sorry) the Microsoft model of monopoly, where a broad presence pillows the muffled cries of an infant industry. (I digress, I know the age of the net.)

      What Verisign will learn is that the kid has already gone outside into the world and cannot be kept under thumb.

      Also, does anyone remember, speak of the devil, Microsoft's viewpoint on this? They essentially do the same thing on the lower level with default browsers for their search engine. Any insight?

      --

      Let's keep in mind that patents are in place to keep lawyers employed and keep them litigating. -CatGrep

    2. Re:They shouldn't draw attention to themselves by Pxtl · · Score: 4, Informative

      Actually, I think Microsoft's feature is much more amicable. After all, any other browser could do the same - hell, the moz project could raise funds by makign the default search engine and the host-not-found search engine a contract to the highest bidder. Not that we'd like that, but they could.

      The big thing is that the MS search-integration features don't break anything. They might interfere with their users seeing certain errors, but nothing's busted. SiteFinder breaks shite left right and center.

    3. Re:They shouldn't draw attention to themselves by steve_l · · Score: 4, Insightful

      I wrote an article on this not so long ago, The impact of sitefinder on Web Services.

      All verisign are trying to do is steal the revenue that MS get with their 90+ share of the browser world. But MS wont like, and will come up with a workaround, like a 'critical' IE patch.

      but in the meantime, everyone whose app uses DNS suffers, not just web browsers. Web Services -programs hitting servers for their own posts and gets- really suffer, because any configuration failure now results in really obscure messages (bad mime type), (307: not supported), instead of ones that users are vaguely familiar with ('not found), and that makes diagnostics and support worse. Once people start patching their DNS, a lot worse, as replication gets harder.

      That is what irritates me: Verisign are screwing up every network application other than a web browser to get advertising $.

  8. A Solution by 1s44c · · Score: 5, Insightful

    Verisign put a DNS wildcard in to sell their search service and generally piss off the world.

    We put in a bind patch to prevent DNS wildcarding on top level domains.

    We don't need to play brain-dead political games with these losers. It's our internet, not theirs. We have the right to totally ignore any and all of ICANN's setup and use our own DNS servers without notice and without asking for their permission.

    1. Re:A Solution by burns210 · · Score: 4, Insightful

      there was mention of creating a .alt TLD... Now i am of the personal belief that an owner of a .com should prove they are a for-profit company, a .org a nonprofit organization, etc. could we create a .alt where things are independent of verisign? By not giving them ownership over the TLD, we don't give them power.... Maybe an open source-run TLD?

      Or better yet, a decetralized, p2p like DNS. one where there aren't A-M servers, but just peers with their DNS caches. It would become what the internet was meant for: a network of computer systems that can communicate with one another even after a significant portion of them are taken offline(due to attack or otherwise).

  9. No, silly by metroid+composite · · Score: 5, Funny

    Slashdot should Slashdot Washington DC. Let's stick with what we do best!

  10. Engineering vs. politics by BitwizeGHC · · Score: 5, Insightful

    Countries and corporations are both run by people whose primary job is politics. It is extremely difficult to go up against these people without becoming one of them.

    Not many engineers want to become politicians, even if it means fighting for something they value. They want to do their job, which is designing stuff.

    --
    N4st0r, trixx0r h0bb1tz0rz! Th3y st0l3 0ur pr3c10uzz!
  11. Anyone remember when Postel tried... by Anonymous Coward · · Score: 5, Informative
    Postel's priorities:
    http://web.archive.org/web/20000818212505/www.iiia .org/lists/newdom/current/0233.html

    "There will be up to one-hundred-fifty (150) new iTLDs allocated to as many as fifty (50) new registries, with no more than one half (1/2) in the same country, created in 1996, and chartered to operate for up to five years.":
    http://web.archive.org/web/20000818221119/www.iiia .org/lists/newdom/current/0518.html

    Tell me what was wrong with this again?

  12. Distributed Decentralized DNS using JTXA by joelparker · · Score: 4, Interesting
    There's an interesting proposal & implementation
    for a distributed decentralized DNS using JXTA,
    which is the Java peer-to-peer framework.

    The basic idea is to trust your peers,
    rather than the centralized system now.

    Of course that raises all kinds of questions;
    still it's compelling to consider the approach.

    The O'Reilly introduction is HERE

    Cheers, Joel

  13. Re:I kind of like SiteFinder by 1s44c · · Score: 5, Informative

    Sometimes I misspell URLs and I actually *like* having a service that attempts to find the site I'm looking for.

    No problem, just set your browser to send you to a search engine of your choice when you get a 404. If your browser doesn't do that bug the developers.

    DNS wildcarding isn't the way to this. It breaks other stuff.

  14. Why have non-country specific TLDs at all? by Willbur · · Score: 4, Interesting

    Just throwing out an idea... There has been a lot of talk about whose laws should apply in cyberspace. One thought is that maybe it should be made explicit whose laws are applying by making the country explicit in the domain name. Ditch all .com, .org, .net, etc domains and just keep the country top level domains.

    As an ease of use measure you could make .com redirect to .com.us in the US, .com.au in Australia, etc. Those names would only be useful as shorthand for people to type and would be deprecated as published URLs (because they would no longer mean the same thing everywhere).

    When I access a .us site from Canada, the same laws apply as if I poked a stick over the border while standing in Canada.

    Moreover, it removes the problem of VeriSign playing with the TLDs (at least for the rest of the world, I don't know who administers .us).

    Pity it'll never happen.

    1. Re:Why have non-country specific TLDs at all? by cpghost · · Score: 4, Insightful

      Agreed! :-)

      So let's find out the UN's new URL:

      www.united-nations.nyc.ny.us for the HQ.
      Oh, wait, they have dependencies elsewhere:
      www.united-nations.wien.at
      www.united-nations.geneva.ch, www.united-nations.geneve.ch, www.united-nations.genf.ch, ...

      Or how's about, say, www.apache.org, slashdot.org, ...?

      --
      cpghost at Cordula's Web.
  15. Re:I kind of like SiteFinder by tyldis · · Score: 5, Insightful
    If you want that then you can use a browser which supports it and sends you to a search page of *your* liking. If I don't want it, I can configure my browser to display an error instead. This is freedom of choice. SiteFinder did not seem to find the best webpage matching your search, but the company that paid them the most to match.

    Another thing is that the way they implement this SiteFinder is breaking other stuff on the net. Internet is more than just Web, you know.

    And it certainly did not help that they ran an SMTP server aswell. God knows what it collected before it dropped the connection, and the server was also RFC ignorant with programmed responses.

    I was tempted to mod you a troll, but figured all the answers you would get would be quite informative on the issue.

  16. Not wrong, but naive by The+Famous+Brett+Wat · · Score: 4, Insightful
    The suggestion that the generic TLDs should be administered by a non-profit organisation (with international representation, I would add) is entirely reasonable and seems like the Right Answer. The point that David Monosov seems to have missed, however, is that politics doesn't work on the basis of finding the Right Answer and applying it. If politics were like that, it would be a branch of engineering. The actual process of placing the management of the GTLDs under the control of an appropriate organisation would involve a reduction in control for those presently in charge, including the government of the USA. This is a showstopper of a problem, and it doesn't rank a mention in Monosov's analysis.

    Putting it simply, I think the present organisation works this way: people with power (government) and people with money (corporation) get together so that some of the power can be used to generate more money. The corporation is happy because of easy money; the government can use the threat of taking the money away to influence the behaviour of the corporation, which is happy to appease its master so long as the money is there. Both parties are happy. Everyone else doesn't really figure in on the equation unless the corporation does something to rile the general public, at which point the government may be obliged to take steps which make it look like it's doing its job.

    Suppose the government delegates control of the GTLDs to a non-profit organisation which has a mandate to ensure the smooth operation of DNS infrastructure, and can be relied upon to do a good job of that. What's in it for the government? They can't easily coerce the organisation into doing things in a manner which leaves them in control (governments thrive on control), since there's no greed to manipulate. Further, no filthy lucre means no pork for the politicians to direct back to their electorate. What's in it for the politicians?

    How do you sell a politician on an idea when the best you can come up with is, "this is obviously the Right Thing to do." What you really need is a P.R. headline which emphasises how it's good for employment, or the economy, or security, or will save the children, and a subtle undergirding of, "this will make you (politicians) more powerful and/or popular and/or provide economic benefits to your constituents."

    So what we need is some very creative P.R. spin, and I'm not very talented at it. Any suggestions?

    --
    proof, n. A demonstration that a conclusion is implied by certain premises and axioms.
    1. Re:Not wrong, but naive by humankind · · Score: 4, Interesting

      The suggestion that the generic TLDs should be administered by a non-profit organisation (with international representation, I would add) is entirely reasonable and seems like the Right Answer.

      In theory it sounds good. However, in practice, I can't say I've ever come across a well-organized non-profit that wasn't constantly having to sacrifice its ideals to stay afloat, or wasn't teeming with epic ego-battles among the people involved.

      I hate to admit it, but I think government agencies are traditionally better run and organized than the vast majority of non-profits.

  17. Re:I kind of like SiteFinder by Gsus411 · · Score: 5, Informative

    This is a pet peeve of mine. When a site can't resolve, it is an nxdomain. A 404 is when the requested file on a web server doesn't exist. Please stop calling an nxdomain a 404.

  18. it goes both ways by humankind · · Score: 5, Insightful

    I agree that the tech community has traditionally been averse to playing politics, and this is evidenced in many areas. Nowhere is this more poignant than in the issue of SPAM, which is now more of a political than a technical issue. The tech community needs to form a hardcore lobbying group to force the Federal Authorities to do their job and prioritize the prosecution of spammers and other groups who are stealing, breaking into and destroying resources. The ineffectiveness of anti-spam efforts nowadays is the perfect testimonial to the much-needed aggressive politicking the tech community needs to do to solve this problem.

    On the other hand, the business community is also being too political and not technical enough. Tens, perhaps hundreds of thousands of businesses do not have secure networks and related policies and 99% of the larger operations are not fully-exploiting the technology available to them.

    Likewise, the mainstream business community is excessively political and seems to have had the common sense, as well as technical insight, sucked out of a majority of their business models. The whole "dot bomb" implosion was the result of too many companies relying exclusively on hype and politics to drive their business model.

    While the tech community can stand to be more political, I think the mainstream business community even more desperately needs to get technical.

  19. Verisign, not the engineers, lacks respectability by 0x0d0a · · Score: 4, Insightful

    We don't need to play brain-dead political games with these losers. It's our internet, not theirs. We have the right to totally ignore any and all of ICANN's setup and use our own DNS servers without notice and without asking for their permission.

    While a shift is not as trivial as you make it, I do agree with on major point.

    Paul Vixie has been running around trying to ensure that nobody acts "immaturely" or engages in name-calling with Verisign. He's desperate to be taken seriously.

    That's ridiculous. Verisign, not the engineers criticising them, is the side lacking respectability. The engineers run and design the networks and control the systems that Verisign uses. Verisign is a comparatively tiny collection of a few people who have buddies in politics, scientists, and engineers.

    Nobody should feel constrained in their online conversation for fear of "sounding respectable". The engineers who run the networks need prove nothing. They are running things. The only organization that has to worry about image at all is Verisign, which must seem at least impartial and benevolent enough to keep ICANN from axing their monopoly, which could be done.

    Verisign was granted a special, unique opportunity to get money for doing almost no work (some bandwidth and adding an entry to a database). Yes, they *can* be expected not to play hardball, as would be accepted in a general business arena, as they are not operating as a regular business. They have a monopoly that was granted to them that they do very well off of. If they want to continuously test their limits and see how much additional money they can soak people for, ICANN and other engineers are under no requirement to keep granting Verisign the right to continue making vast amounts of money for almost no effort.

    Verisign has clearly indicated that it is not currently willing to operate a public trust in good faith. They have continued to spout what most engineers consider to be bullshit, and have ignored frusterated feedback. Unfortunately, we have only one remedy, aside from formal complaints from ICANN (which have already been tried), and that is threats against and ultimately termination of Verisign's special privileges. Doing so will mean work for a lot of systems around the world, temporary service interruptions, bad blood at Verisign (and with political buddies of Verisign) and the risk that nobody else will be willing to step up after Verisign (given that their role might be terminated). Verisign is gambling that the Internet's collection of network engineers do not have the balls to actually terminate their role with a certain amount of bad behavior on their part. I am increasingly wanting to see Verisign's gamble proven wrong.

    Shifting to OpenNIC or similar has its own set of problems -- can the same level of service be provided? What happens when an name schisms start appearing?

    However, it may be better to be safe than sorry. Every day, Verisign makes it harder and harder to extricate them from a position where they can feed on vast amounts of technology money. This is acceptable, as long as they operate in good faith, which they have not done. Verisign's management has tried deceptive renewal forms sent to Verisign competitors. They have tried mucking about with fundamental components of the Internet. They may not be at a point where they must immediately be replaced, but I think that they are at a point where they must be made to modify their behavor or be terminated.

  20. Re:I kind of like SiteFinder by TekGoNos · · Score: 5, Informative

    Sometimes I misspell URLs and I actually *like* having a service that attempts to find the site I'm looking for.

    That's not an accurate requirement.

    1. Sometimes - when? I assume when you type it in your browser, you are not speaking email here?
    2. having a service - well, more like having something, you dont really bother what it is as long as it works, dont you?
    So your requirement becomes : When I misspell an URL in my browser, I like it when something attempts to find the site I'm looking for.

    Fine with everyone. There is such a feature in IE, and this is the right place for such a feature to be.

    Why we are against SiteFinder (and if you had read Slashdot before you would know this) :

    • It is absolutly impossible to opt-out of SF.
      You simply cant. Not even with cookies or so, as there is no such thing for DNS. But you can opt-out if the same service is implemented in your browser. (change browser/deactivate feature)
    • While IE has a pseudo-monopol, Verisign has a real monopol guaranteed by contracts. Read your capitalist handbook again about "monopol abuse".
    • DNS is completly independent from HTTP, so SF does not only affects you while you browse, but also when you send an email. All email with a mistyped .com or .net domain will be send to verisign (who might drop it if they are nice).
      AND you will get a wrong message : "recipient not known" instead of "server not know".
    • SF does not only affect you as a human.
      It may annoy you, but you can adapt quickly. But there is also software that needs DNS lookup to function properly (most prominently, spam filter). And software doesnt adapt itself, it has to be rewritten, thus generating costs in various other companies. If SF was an opt-in service that would be less problematic, so that only software that wants to use this feature had to be rewritten, but this isnt the case.
    • Finally, it is simply a breach of contract/protocol.
      It is written : "when the domain does not exists, you return a does not exist message". But suddenly Verisign decides to return "it's Verisign".

    Like the idea? Then get IE, misuse google for it, or hack mozilla/write a RFE. But SF is A Bad Thing (TM).

    --
    I have discovered a truly remarkable proof for my post which this sig is too small to contain.
  21. You know, his suggestion was already tried . . . by SEE · · Score: 4, Insightful

    A non-profit organization was set up to run Internet name assignments, with international participation, representation of major infrastructure players, and even a nascent direct interested-person representation system.

    It was called the Internet Corporation for Assigned Names and Numbers, and it's the organization that went ahead and so solidly entrenched VeriSign in the first place.

    Merely passing along control to another NGO is not, in itself, a solution; there is no reason to expect it won't be politicized and turned into another ICANN.

  22. Veri-lame by Anonymous Coward · · Score: 4, Interesting

    Well now, if we are going to have urls and dns, we need someone to sit on the database of who has what assigned to where.

    meet Verisign...

    Ok, so we are sitting on the afforementioned database with the required info for the internet presence for millions if not billions of people,
    what shall we do?

    I know, lets break it all and try to break into the search engine business! Every page anyone looks for on a domain that no longer exists will be our domain!

    All your leftovers are belong to verisign! ......

    Now to me this just seems like an abuse of power by the people who look after the database for us.
    (veri-lame)

    If they had mentioned that they would do this in the future then i'm most likely we wouldn't have picked verisign to look after our data, or we would have made sure they couldn't use it as a gun to our heads further down the road.

    If they were going to break all the RFC's and the like, again, we would have put blocks in place.

    but instead they are free to claim they own every domain that was ever that doesn't have a paying owner right now. Not that verisign are paying to squat on that domain mind, they just control the database.

    so i say again

    All your leftovers are belong to verisign!

    Who do they think they are? I don't want to use their substandard search engine anyway.

    much more useful would be a link to the domain as it was last known on internet archive or some other internet backup site. Not whatever it is verisigns ill thought out search routines are going to return.

  23. Re:From the Article: ISC by Anonymous Coward · · Score: 4, Interesting
    Definitely NO on this guy Paul Vixie and ISC if we want transparency and an up front way of running things. This guy has wrapped himself in the flag of RFC's, DNS and "the Internet" but his actions are otherwise:
    This site is a little conspiratorial, but at the time many of the people in the know agreed that Abovenet and MAPS blackholed ORBS by using dirty tricks little advertising low cost (hop count) routes to ORBS and then blackholing the traffic. See here among others.
    He seems fond of making everything two tiered, pay for BIND support, pay for access to the MAPS *BLs now. There was the situation where the patches for BIND were only available to those who paid. This was a huge deal at the time.
    There also seems to be denials of the connections between ISC and the other money making businesses that Paul and his employees are involved with.
    This is not a guy who want to share power and take the opinions of others into account, he and his companies also have a history of attacking overtly (DJB) and covertly (ORBS) people or groups who cross them. They scare me more than a bumbling giant corporation... Paul has companies/domains like Men in Black Hats and New World Order, these guys have very high opinions of themselves. I and many others would never speak out publicly against him, his employees/"volunteers" or companies because of the power they wield and their willingness to exact revenge on people who speak out against them. Those who do speak out are immediately branded as spammers or worse.
    Some Paul quotes:
    I am also getting ready to start work on my company's next commercial product, and it looks like a spam filtering SMTP gateway is going to be it even though I've got this drop-dead idea for optimal HTTP redirects that I've been wanting to implement for about the last 14 months. Oh well, "follow the money."
    Concentration of power into a single individual: It's very true that power has corrupted every individual in whom it has ever been concentrated in the history of mankind. I do not feel that I am necessarily above whatever elements of human nature give rise to that. I worry about it. Probably other people worry about it more than I do.

    There are people whose judgment I trust -- folks that have been in the industry longer than I have or maybe just as long as I have, but have done different things -- where I've learned that when they argue with me, they're usually right. And I have run what I'm doing by these people, and I'll continue to do that whenever I want any change in the way that I approach it. And if I get back some horrified stare that says, `Paul you're going to be the next Hitler; you're going to take over the universe,' I'm pretty much expecting that I'm not going to tell them that their concerns aren't justified. I am as worried about this as I think is healthy, but I'm not willing, once again, to say, `Well, because concentrating power in the hands of one person has always been dangerous, we should not attempt what we're doing.'
    [here, Paul, with more WWII references, refers to the fact that he is willing to block popular ISPs or sites and how it is similar to the way that people were willing to firebomb Dresden (even though the German's thought they wouldn't), as clear a reference to "acceptable collateral damage" as possible without using the phrase] ... I think I've told the story of the firebombing of Dresden to at least a half dozen popular host resource owners in the last two years. *
  24. Re:I kind of like SiteFinder by cpghost · · Score: 4, Informative

    VeriSign running a bogus SMTP server was very bad from a privacy point of view. Even if they didn't accept the message body (did they? I don't remember), they collected a lot of information that could've been used for traffic analysis. It's none of VeriSign's business to know that I mistyped an email address: they could find out what the real address was. It's none of VeriSign's business to know that I mistyped a URL: they could find out what the real URL was (hamming distance usually 1 or 2). Why should they collect so much information about my email or surfing habits anyway? If I believed in conspiracy theories, I'd suspect that they may be in cahoots with the NSA (I don't think so).

    --
    cpghost at Cordula's Web.
  25. Re:I kind of like SiteFinder by orthogonal · · Score: 5, Insightful

    Sometimes I misspell URLs and I actually *like* having a service that attempts to find the site I'm looking for.

    Hey, good point! You can't type, so we should break the internet and one of the few effective anti-spam techniques, so that you don't have to retype "www.hot-mokney-porn.com".

    By the way, I'm a fat slob with a heart condition, but I can't keep my fat ass out of McDonalds, inhaling lard-burger after lard-burger. I'd actually like a service that shut down all McDonalds and inconvenienced everybody else who can manage to control their compulsion to have evry meal at McDonalds.

    By the way, I'm an alky; I jus' can't stay awy from dat ol' demon rum. Howsabout we Prohibit all alcohol, jus' 'cause I can't figure out how to stop after two drinks?

    By the way, I get really afraid of Ay-rabs, and I don't understand why anybody would mind being on camera 24/7 unless they had something to hide. Can we tear up the Fourth Amedment and let John Ashcroft read your mail and tap your phones in order to give me a spurious sense of security?

    I mean, that would be really convenient to me if we could do these things. I don't care how it would inconvenience you, becuase I, just like Verisign, am in the business of offloading my costs onto the community, in order to increase the personal profits I keep all to myself.

  26. A new kind of spamming by werdna · · Score: 4, Interesting

    If Varisign can tinker with DNS responses provided by their DNS, why can't every other downstream DNS server act in kind, when forwarding a query, taking the ersatz advertising responses from Varisign and substituting their own advertising website, or better yet, substitute the responsible "usual" behavior?

    Indeed, if Varisign does this, wouldn's such a response be inevitable, for good and for ill?

    What I will be most amused by when that happens are the frivolous lawsuits Varisign will raise when that happens.

  27. This is terribly old news by Flyboy+Connor · · Score: 5, Interesting
    It happens all the time, every time.

    Engineer has an idea. Engineer implements the idea. Engineer is happy. Engineer's peers are happy. Non-engineer picks it up and uses it to get a lot of money, tarnishing the original idea in the process. All engineers are outraged.

    The article states that engineers should be more aware of politics. That's bull.

    An engineer that takes politics into account will accomplish nothing, because he is battling windmills. Trying to protect your inventions against corporate meddling is impossible. The problem is that those who invent simply do not have the power to enforce the "right" use of their invention. Being aware that that power lies with people who are mainly interested in squeezing money out of ideas will only make you despressed.

    And there are reasons that this is the way it is. The two main ones are (1) the innovators are the grease-monkeys of the corporate and political worlds; and (2) the fact that innovations can generate money is the catalyst that allows engineers to innovate.

    These two reasons lead to three possible solutions for the described situation.

    Solution 1: More engineers become politicians, thereby gaining influence on law-making and getting the ability to bend the laws to idealistic purposes. Unfortunately, engineers (just as scientists and artists) do not want to be politicians. It's a frustrating job, especially if you are idealistic. If someone is only interested in money and power, it can be a fulfilling job, but I don't expect idealistic law-making from such a person.

    Solution 2: Engineers refuse to work for corporations and develop their ideas for themselves. Unfortunately, this will mean that they do not have the funding to work on their interesting ideas, and even if they succeed, a big corporation will notice them and run away with them.

    Solution 3: Engineers do not create inventions that can be or need to be exploited for money. Translated: Engineers won't innovate at all.

    Conclusion: All three solutions won't work in practice. Since that is a depressing thought, perhaps you better not read this comment.

    Too late.