I'm worried about this development. One the one hand, ubiquitous encryption is simply required for security on the internet. Things like lets encrypt and warning on http are great improvements. On the other hand, the owner of a network has some right to look into the packets on that network. Especially if the owner of the network also owns the end-points of that traffic. My main use-case here isn't corporate networks…
Deep packet inspection is dead, and here's why (2017)
81–90 of 126 posts
Re: Deep packet inspection is dead, and here's why (2017)
#82I'm worried about this development. One the one hand, ubiquitous encryption is simply required for security on the internet. Things like lets encrypt and warning on http are great improvements. On the other hand, the owner of a network has some right to look into the packets on that network. Especially if the owner of the network also owns the end-points of that traffic. My main use-case here isn't corporate networks…
The best solution to the privacy problem is to do research and exercise consumer choice about what sorts of devices you purchase.
Re: Deep packet inspection is dead, and here's why (2017)
#83Earlier quoted context omitted.
> Really, my issue is stuff on my own network. I want to see what my TV sends home. Same with an amazon-echo, or really any IoT thing. Yet, if they all use SSL and don't allow me to add a root CA, I can't look at what they run. Which is part of why the more paranoid of us steadfastly refuse to own such devices.
And sadly it's near-impossible to find a non-Smart TV these days :(
What's more important, is the possibility of having a camera-less and microphone-less smart-tv. Or to have the possibility of practicing a microphonectomy and a camerectomyon your smart-tv.
Re: Deep packet inspection is dead, and here's why (2017)
#84A few years ago, one of the best managers I ever worked for left to become the CTO of a company doing pattern analysis of network traffic, rather than Deep Packet Inspection. The premise was that most of the internet traffic on your network follows the same typical patterns, but nefarious traffic doesn't. Drop their system into the network and voila, you can start to find the weird things going on that seem out of th…
This is exactly what has been researched at multiple security companies and productized by Cisco under "Encrypted Traffic Analytics". This is based on research from 2016 that can be found on arXiv: https://arxiv.org/abs/1607.01639 > We conclude that malware's usage of TLS is distinct from benign usage in an enterprise setting, and that these differences can be effectively used in rules and machine learning classifier…
This is a fundamental evolutionary cat & mouse game that's impossible to win; antibiotics & bacteria, toxins in prey & toxicity resistance in predators, etc.
Re: Deep packet inspection is dead, and here's why (2017)
#85Earlier quoted context omitted.
yeah, while that's true, a manufacture like amazon or apple is much more likely to update your device since they are still hoping to sell you content. You think your offbrand Smart TV is going to update past a couple bugs? They already made all the money they are going to make off that TV and they are done. Still have to trust the manufacture for that to work, but at lease you're not just left wide open there. (I mea…
> You think your offbrand Smart TV is going to update past a couple bugs? They already made all the money they are going to make off that TV and they are done. Honestly, who cares? I mean, it's a TV. It should not need Internet to work, and it definitely shouldn't need software updates . Displaying video on a screen is a solved problem. The very fact you can use "software update" and "TV" in the same sentence signals…
Re: Deep packet inspection is dead, and here's why (2017)
#86Earlier quoted context omitted.
> You think your offbrand Smart TV is going to update past a couple bugs? They already made all the money they are going to make off that TV and they are done. Honestly, who cares? I mean, it's a TV. It should not need Internet to work, and it definitely shouldn't need software updates . Displaying video on a screen is a solved problem. The very fact you can use "software update" and "TV" in the same sentence signals…
TVs have had software for decades. The fact that we're finally using "software update" and "TV" together is a long time coming, and finally a security model we can work with.
Re: Deep packet inspection is dead, and here's why (2017)
#87Re: Deep packet inspection is dead, and here's why (2017)
#88Earlier quoted context omitted.
Agreed. It's not even the TV that needs access to Internet. What if you have one of the Roku, Apple TV, Chromecast, etc devices that stream content from the Internet? Without those we might as well go back to storing content locally which let's face it - is mostly retrieved quasi-legally through BitTorrent.
> Without those we might as well go back to storing content locally which let's face it - is mostly retrieved quasi-legally through BitTorrent. But at least it's always available and will not disappear between the moment you first watch it and the moment you want to show it to your spouse. I really expect (and hope) to see a resurgence of torrenting in the wake of ongoing balkanization of streaming platforms.
Agree. A lot of people think it's still the torrent dark-ages where you need to search for individual torrents like a cave-person. If so google sonarr, radarr and get a vpn!
Re: Deep packet inspection is dead, and here's why (2017)
#89Earlier quoted context omitted.
And sadly it's near-impossible to find a non-Smart TV these days :(
Smart TVs can be left unconfigured and not plugged in via Ethernet.
That, or you can buy a commercial display instead of a TV.
Re: Deep packet inspection is dead, and here's why (2017)
#90Earlier quoted context omitted.
> You think your offbrand Smart TV is going to update past a couple bugs? They already made all the money they are going to make off that TV and they are done. Honestly, who cares? I mean, it's a TV. It should not need Internet to work, and it definitely shouldn't need software updates . Displaying video on a screen is a solved problem. The very fact you can use "software update" and "TV" in the same sentence signals…
I don't have my TV connected to the internet. But I do stream, so I have to have something connected to the internet. And I prefer a box that is likely to be updated.