Live data from Hacker News

Indian ISPs: We already give govt full access to web traffic

entrackr.com

11–20 of 113 posts

Re: Indian ISPs: We already give govt full access to web traffic

#11
post #10

Yes they do, mainly because it’s the law. That it’s a misguided law is open for debate, but I don’t believe there is any state in the world that doesn’t monitor and control tele-communications (internet is regulated as tele-communications WW).

The level of surprise does seem overblown. This bit stuck out to me:

> ... access to this data is so accessible remotely that physically visiting an internet provider’s premises is no longer required for government agencies.

They were expecting government agents to have to physically visit the ISP's offices? Were they perhaps going to get their data on a floppy disk?

Re: Indian ISPs: We already give govt full access to web traffic

#12
post #10

Yes they do, mainly because it’s the law. That it’s a misguided law is open for debate, but I don’t believe there is any state in the world that doesn’t monitor and control tele-communications (internet is regulated as tele-communications WW).

The level of surprise does seem overblown. This bit stuck out to me: > ... access to this data is so accessible remotely that physically visiting an internet provider’s premises is no longer required for government agencies. They were expecting government agents to have to physically visit the ISP's offices? Were they perhaps going to get their data on a floppy disk?

They weren't asking for floppy disks, they were sending their people to connect directly to infrastructure.

One of examples: https://en.wikipedia.org/wiki/Room_641A

Re: Indian ISPs: We already give govt full access to web traffic

#13

Many, if not most, nations have similar provisions to this. I think it's wrong and just over the top. However, encrypting everything and using multi-hop routing wherever possible at least will add noise to this sort of dragnet surveillance. Personally, I've taken steps to obsfucate my traffic since similar legislation was introduced in the UK.

Could you possibly share the tools you use to obfuscate your traffic?

Re: Indian ISPs: We already give govt full access to web traffic

#14
post #10

Yes they do, mainly because it’s the law. That it’s a misguided law is open for debate, but I don’t believe there is any state in the world that doesn’t monitor and control tele-communications (internet is regulated as tele-communications WW).

The level of surprise does seem overblown. This bit stuck out to me: > ... access to this data is so accessible remotely that physically visiting an internet provider’s premises is no longer required for government agencies. They were expecting government agents to have to physically visit the ISP's offices? Were they perhaps going to get their data on a floppy disk?

Just because data can be made accessible remotely doesn’t mean it should be.

Airgapped systems are also still a thing.

On-site access would also make it harder to abuse the data at scale.

I’m not surprised that the data is accessed remotely. But I can also understand scenarios where it makes sense to require physical access, and not because of long gone floppy disk drives or other ancient hardware.

Re: Indian ISPs: We already give govt full access to web traffic

#15
5 days ago i wrote about UK govt doing scans of all websites hosted in UK for "security" reasons and i was downvoted for " Stop lying and not relevant, you clearly came here with an agenda"... i guess we really do have an agenda when the government has access to full internet web traffic and they can pick and choose their targets with impunity

https://news.ycombinator.com/item?id=33470079#33470409

Re: Indian ISPs: We already give govt full access to web traffic

#16

Earlier quoted context omitted.

The level of surprise does seem overblown. This bit stuck out to me: > ... access to this data is so accessible remotely that physically visiting an internet provider’s premises is no longer required for government agencies. They were expecting government agents to have to physically visit the ISP's offices? Were they perhaps going to get their data on a floppy disk?

Just because data can be made accessible remotely doesn’t mean it should be. Airgapped systems are also still a thing. On-site access would also make it harder to abuse the data at scale. I’m not surprised that the data is accessed remotely. But I can also understand scenarios where it makes sense to require physical access, and not because of long gone floppy disk drives or other ancient hardware.

On the other hand, if your purpose is automated analysis of data, you will probably create an automated update of the records - a direct connection.

Re: Indian ISPs: We already give govt full access to web traffic

#17

Many, if not most, nations have similar provisions to this. I think it's wrong and just over the top. However, encrypting everything and using multi-hop routing wherever possible at least will add noise to this sort of dragnet surveillance. Personally, I've taken steps to obsfucate my traffic since similar legislation was introduced in the UK.

Snowden released his trove back in 2013. At that point it became obvious that anyone with power to surveil would use it.

I suppose the news here is that the response was so relaxed that governments started doing it publicly and explaining the tech.

Re: Indian ISPs: We already give govt full access to web traffic

#18

GNU Net [0] seems more relevant than ever: "The Internet is broken." "The conventional Internet is currently like a system of roads with deep potholes and highwaymen all over the place. Even if you still can use the roads (e.g. send emails, or browse websites) your vehicle might get hijacked, damaged, or long arms might reach into its back and steal your items (data) to use it against you and sell it to others - whil…

How does it differ from tor browser?

Re: Indian ISPs: We already give govt full access to web traffic

#19

Earlier quoted context omitted.

The level of surprise does seem overblown. This bit stuck out to me: > ... access to this data is so accessible remotely that physically visiting an internet provider’s premises is no longer required for government agencies. They were expecting government agents to have to physically visit the ISP's offices? Were they perhaps going to get their data on a floppy disk?

Just because data can be made accessible remotely doesn’t mean it should be. Airgapped systems are also still a thing. On-site access would also make it harder to abuse the data at scale. I’m not surprised that the data is accessed remotely. But I can also understand scenarios where it makes sense to require physical access, and not because of long gone floppy disk drives or other ancient hardware.

Data diods are also a thing (physical oneway traffic) but that so many are unaware of it is mindblowing.

https://owlcyberdefense.com/learn-about-data-diodes/

Re: Indian ISPs: We already give govt full access to web traffic

#20
post #10

Yes they do, mainly because it’s the law. That it’s a misguided law is open for debate, but I don’t believe there is any state in the world that doesn’t monitor and control tele-communications (internet is regulated as tele-communications WW).

It is the details of the law that count here.

"Rights of investigation" and "capillary monitoring" are poles.

Post reply on HN