Slashdot Mirror


When the NSA Shows Up At Your Internet Company

Frosty Piss writes "When people say the feds are monitoring what people are doing online, what does that mean? How does that work? When, and where, does it start? Pete Ashdown, CEO of XMission, an internet service provider in Utah, knows. He received a Foreign Intelligence Service Act (FISA) warrant in 2010 mandating he let the feds monitor one of his customers, through his facility. He also received a broad gag order. Says Mr. Ashdown, 'I would love to tell you all the details, but I did get the gag order... These programs that violate the Bill of Rights can continue because people can't go out and say, This my experience, this is what happened to me, and I don't think it is right.' In this article, Mr. Ashdown tells us about the equipment the NSA installed on his network, and what he thinks it did."

6 of 309 comments (clear)

  1. Re:Hack the black box? by Anonymous Coward · · Score: 5, Interesting

    You'd probably be charged with a wide range of crimes, like tampering with evidence, disrupting an investigation, espionage and wiretapping (because the NSA is authorized, but you aren't).

  2. Challenge the Gag Order by TemperedAlchemist · · Score: 5, Interesting

    Most gag order statutes have been voided for being unconstitutional.

    ---

    What the NSA is actually doing is blatantly ignoring our bill of rights. These gag orders are not legal because they are not constitutional, regardless of what the NSA insists.

    I would like them to see them -- and the court officials that go along with their little scheme, pay for their crimes against humanity (and yes, that's what it actually is). Hilarious that this organization has become the very monster it was created to destroy: a terrorist network.

  3. Terminate contract instead? by Anonymous Coward · · Score: 5, Interesting

    What if the contract had a clause that said services would be terminated with no notice and no explanation if we receive a lawful warrant to participate in monitoring said customer?

    Sort of canary?

    1. Re:Terminate contract instead? by auric_dude · · Score: 5, Interesting

      Some librarians (Jessamyn West and others) tried this sort of idea in attempts to warn users that FBI were prowling about https://en.wikipedia.org/wiki/Jessamyn_West_(librarian)

    2. Re:Terminate contract instead? by icebike · · Score: 5, Interesting

      How would terminating a customer account violate a lawful order.

      Fisa order for customer Joe arrives.
      Joe's account immediately terminated.
      Fisa replied to with no such account exists.
      Joe calls up pissed. Receives Reply: read clause 24.65 of your contract.

      --
      Sig Battery depleted. Reverting to safe mode.
    3. Re:Terminate contract instead? by silas_moeckel · · Score: 5, Interesting

      Basic boiler plate for legit (actual judge, actual crimes etc) warrants have a clause to keep the service active. They pay all expenses and reasonable fee's with a very loose definition of reasonable (billing out a jr techs $35 a hour time as $400 an hour was considered fairly cheap). It can be rather annoying had a dedicated server under scrutiny they had setup encrypted VPS's on the box with a spammer on one VPS that the client refused to turn off. It got bad enough that our up streams were complaining and had to get a letter and a conf call with the FBI case agent to get things settled (they were exploiting a 3 way session, spoofing the outbound packets and relaying the reply packets over a vpn to bypass our outbound spam filtering effectively just using out clean IP's).

      The specifics to this one look OK they had them host a server with a single connection to a span port for the web site in question. They only had access to what the provider sent them and would still have to break through any encryption. I've done similar for warrants on shared servers hundreds of times. Performing some digging related to servicing these I've found child porn etc hiding behind rather boring looking fronts.

      --
      No sir I dont like it.