[163464] in North American Network Operators' Group
Re: PRISM: NSA/FBI Internet data mining project
daemon@ATHENA.MIT.EDU (Ryan Malayter)
Sat Jun 8 18:47:31 2013
From: Ryan Malayter <malayter@gmail.com>
In-Reply-To: <CABL6YZTGVEdcdun2MPRa6VeZa91vu5XvJpzMXzQt2NYq6BWjdQ@mail.gmail.com>
Date: Sat, 8 Jun 2013 17:43:55 -0500
To: NANOG <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On Jun 7, 2013, at 12:25 AM, jamie rishaw <j@arpa.com> wrote:
> <tinfoilhat>
> Just wait until we find out dark and lit private fiber is getting vampired=
.
> </tinfoilhat>
Speaking from the content provider dide here, but we've always run IPsec on D=
CIs and even "private" T1s/DS3s back in the day.
Doesn't everyone do the same these days? I find it hard to imagine passing a=
ny audit/compliance process without doing so.
"Private lines" or "dedicated fiber" always pass through much public, unmana=
ged, and unmonitored space infrastructure. And we know better than to trust o=
ur providers to never screw up and mis-route traffic.=