OK, having found that the "buy today in your favourite apple store" was a lie, and having now found that actually, if you want more than the base model you have to order the new Macbook Pro on-line anyway, I ordered one, on the 1st.
I want it by the end of the month, and they said "Dispatched 3-4 weeks", so I figure I am OK then...
But somehow 3-4 weeks from 1st July equates to "31 Jul, 2012 - 06 Aug, 2012"
Pardon?!?!?
I make one week the 8th, two the 15th, three the 22nd, and four the 29th. So 3-4 weeks would be 22nd to 29th, not the 31st to 6th. That would be at least 4-5 weeks.
Why the hell can't any damn retailer actually do what they say?
As it is I am chasing a birthday present needed for this weekend, from simplyelectronics.co.uk, which still says 2-4 working days on the site, ordered on Monday, and now say 3-8 working when asked, and turn out not to be UK at all. Arrrrrg!
2012-07-05
Government snooping for dummies
Basically, either the government can snoop on encrypted traffic, or they cannot. It does not matter which or how...
If they can snoop on encrypted traffic, then the systems for encryption will be changed until they cannot. There is no point in encryption if someone can snoop on it. It does not matter what the technology is, this is a simple fact.
If/when they cannot snoop on encrypted traffic then everyone using encryption for facebook, twitter, gmail, games, etc, etc, etc, will not be visible to them even to extract "communications data".
Please pass this message on to your MP. It is as non technical as I can make it. Thanks.
If they can snoop on encrypted traffic, then the systems for encryption will be changed until they cannot. There is no point in encryption if someone can snoop on it. It does not matter what the technology is, this is a simple fact.
If/when they cannot snoop on encrypted traffic then everyone using encryption for facebook, twitter, gmail, games, etc, etc, etc, will not be visible to them even to extract "communications data".
Please pass this message on to your MP. It is as non technical as I can make it. Thanks.
2012-07-04
Impressive speed test
So, a speed test from the data centre on my new PI space. Not sure why they always under estimate, but grade F- ? really ? And why would we obey that pesky speed of light thing?
2012-07-03
PI
No, not raspberry, or 3.1415..., but Provider Independent address space.
PI space is a block of IP addresses assigned to me rather than to an Internet Service Provider. It means that I can move the IP addresses in future, and connect via more than one ISP. In fact, unless I get a lot more IP connected devices at home, I have to connect to more than one ISP.
To qualify, I am multi-homing my house. I should have the second link sorted shortly. But right now I am renumbering the LAN and updating reverse DNS. I should have IPv6 PI shortly too. All good fun - a whole /24 (that's 256 IP addresses) just for me!
I was pondering how this would work with the draft Communications Bill. I am connected to two ISPs. I can send packets via either, and can direct them on a per packet basis if I want, starting an SSL TCP session via one and continuing it via the other. If ever either ISP gets "black boxes", I'll do that just to see how they cope :-) Given that one of them is A&A, that is a tad unlikely for some time.
Even if they were just passively monitoring, they would not see enough packets to construct the TCP session and extract anything from it. If they were intercepting SSL traffic, they would simply break the connection, something that means I can complain to the ISPs in question, who should be able to complain that the government black boxes are therefore not fit for purpose.
I really hope an ISP can refuse a black box that actually breaks the service they sell, but who knows.
Then I was pondering the Digital Economy Act, and how that would work. I am the contact on the IP addresses with no encompassing block belonging to an ISP. Which ISP would Copyright Infringement Reports go to if one of my IPs was involved in something? For now both ISPs are too small to get CIRs, but if ever that happens, it could be fun to poison trackers with one of my IPs just to see how much havoc I can cause.
Oh! what fun.
P.S. Speedtest.net says I am 3550 miles from Maidestone, my ISP is "***", and that I am slower than 99% of the - I think it is a tad confused somehow.
P.P.S. National Lottery think I am outside the UK and that I should contact my ISP as only they can update my location details - ahem (a) which ISP, and (b) I control my inetnum records, thanks. Email sent to them to confuse the hell out of them. FYI, no, I don't actually play.
More: Getting cross wil National Lottery now as they are refusing to recognise my IP addresses are in the UK. I've started threatending them with the Data Protection Act now :-)
PI space is a block of IP addresses assigned to me rather than to an Internet Service Provider. It means that I can move the IP addresses in future, and connect via more than one ISP. In fact, unless I get a lot more IP connected devices at home, I have to connect to more than one ISP.
To qualify, I am multi-homing my house. I should have the second link sorted shortly. But right now I am renumbering the LAN and updating reverse DNS. I should have IPv6 PI shortly too. All good fun - a whole /24 (that's 256 IP addresses) just for me!
I was pondering how this would work with the draft Communications Bill. I am connected to two ISPs. I can send packets via either, and can direct them on a per packet basis if I want, starting an SSL TCP session via one and continuing it via the other. If ever either ISP gets "black boxes", I'll do that just to see how they cope :-) Given that one of them is A&A, that is a tad unlikely for some time.
Even if they were just passively monitoring, they would not see enough packets to construct the TCP session and extract anything from it. If they were intercepting SSL traffic, they would simply break the connection, something that means I can complain to the ISPs in question, who should be able to complain that the government black boxes are therefore not fit for purpose.
I really hope an ISP can refuse a black box that actually breaks the service they sell, but who knows.
Then I was pondering the Digital Economy Act, and how that would work. I am the contact on the IP addresses with no encompassing block belonging to an ISP. Which ISP would Copyright Infringement Reports go to if one of my IPs was involved in something? For now both ISPs are too small to get CIRs, but if ever that happens, it could be fun to poison trackers with one of my IPs just to see how much havoc I can cause.
Oh! what fun.
P.S. Speedtest.net says I am 3550 miles from Maidestone, my ISP is "***", and that I am slower than 99% of the - I think it is a tad confused somehow.
P.P.S. National Lottery think I am outside the UK and that I should contact my ISP as only they can update my location details - ahem (a) which ISP, and (b) I control my inetnum records, thanks. Email sent to them to confuse the hell out of them. FYI, no, I don't actually play.
More: Getting cross wil National Lottery now as they are refusing to recognise my IP addresses are in the UK. I've started threatending them with the Data Protection Act now :-)
How it works: https
Most of us make use of https at some point, usually for accessing
on-line banking or on-line shopping of some sort, but increasingly for
more mundane things like facebook or twitter or gmail. It is meant to
provide some extra security, but what does it provide and how does it
work?
Snooping on your messages
Before we even consider encryption, consider that the easiest way to snoop on your communications is either before it is encrypted or after it is decrypted.
At the simplest level, consider you are sending someone an email, and using https to access gmail. You may take all precautions your end to be sure you are not snooped on in any way, but the recipient could be a dick and forward the email on to his mates, or post it on facebook. If you are considering security you have to think of the bigger picture and the people involved, not just the technology.
Thankfully most of us are not considering security but simply privacy. We (supposedly) have a right to privacy. We just don't want someone snooping, which is fair enough.
But if you are considering security, you do have to consider other ways an attacker can access your computer. There are hardware key loggers that plug in line with your keyboard, and are undetectable by the computer itself. There are viruses that log keys and grab images of the screen. Most computers have some sort of remote desktop facility, which means that you could be accessed if you have a poor password and poor firewall settings, even though you have no viruses on the machine. There are many ways, but all of these really only make sense if you are being individually targeted, so really not a concern for most people.
Encryption
Encryption as a principle has been around thousands of years. The concept is simple, you somehow "scramble" your message before sending it in a way that only the intended recipient can "unscramble". This is putting it very simply though.
Encryption uses maths, and there are some very clever people that understand how it works. There is a whole science of cryptography. Myself, even though I have an A at A-level maths and a degree in computing, I struggle to get my head around the detailed maths involved in some of it. The principles, however, are relatively simple to understand and can be explained with some simple analogies, thankfully.
Using mathematics to encrypt things has been around for a long time, but only in the last few decades have computers been powerful enough for serious encryption to be used routinely. There are many different systems, but basically it is impossible to crack an encrypted message without having the "key". I should be careful what I say here - in cryptography there is no "impossible", it is simply a matter of making something that takes too much time and resources to crack in the lifetime that you need something to be secure. But really, for all practical purposes, we are talking "impossible" to crack.
There are, of course, conspiracy theories. The idea that "they" have scientists that have cracked modern encryption systems. Basically, many encryption systems work on the difficulty of some specific mathematical problem. However, some mathematical problems have some "short cut" discovered that makes them a lot easier to solve. Some people believe such short cuts have been found and that governments can secretly decode all encrypted messages. This really is rather unlikely. Not only would it be unlikely for only one person to have found such a short cut, but it would be very unlikely for it to be successfully kept a secret. If you must have a conspiracy theory, it is far more likely is that governments just want people to think they have a way to cracking encryption.
Another theory is that "they" have huge computing resources to "brute force" the encryption systems. This has some grain of truth in that some older encryption systems can now be cracked in realistic time frames with large numbers of modern computers. Even so, this only makes sense when targeting a specific message. A realistic time frames could mean weeks to crack one message. In practice, modern encryption uses much larger keys which can't be cracked like this.
Of course, this is speculation on my part - but you can be pretty sure that if encryption in use today is found to be easy to crack, it will be changed very quickly to something that is hard to crack. Oh, and don't try and make any sort of encryption system yourself, it will be easy to crack :-)
Public key encryption
One of the key encryption techniques used is "public key encryption". Fortunately this is very easy to explain to someone without using any maths - a simple analogy using padlocks works well. In reality it is more complex, and public keys are used to encrypt random symmetric keys that are used to encrypt the message, but the basic principle is the same.
The idea is simple - imagine you have a very good padlock and a key for that padlock. You give me the padlock and you keep the key. Later, I want to send you a message and want to be sure nobody on the way can read the message, only you. I put the message in an impenetrable strong box and lock it with your padlock, and then send it to you. Nobody can open it. You get it and use your key to open it. Simples!
Trust, and man in the middle attacks
Of course you want all sorts of people to be able to send you messages, so you have loads of identical padlocks made, all of which open with only your key. You have your name engraved on them.
This means that when I want to send you a message, I just get hold of one of the padlocks with your name on it, and use that.
But what if there is an impostor, making padlocks with your name on. I end up getting one of these fake padlocks, and send your message. The impostor intercepts the message, unlocks it with his key (as it is his padlock), reads it, then locks it again with one of your real padlocks, and sends it on to you. Neither you, nor I, are aware of this. Oops.
The answer therefore is that all padlocks come with a certificate which states exactly who's padlock it is and lists the locks serial number (that somehow cannot be forged). This certificate has a seal on it (which also cannot be forged) which is one of the well known "certificate authorities" which we all trust to issue certificates for padlocks.
OK, that sounds a tad woolly doesn't it. The whole "cannot be forged" is achieved using public key encryption to "sign" things. I won't go in to detail, and there are analogies using padlocks and keys for that too, but lets just assume for the moment that it is possible.
This still leaves an issue - how do I know the seals of the trusted certificate authorities, and to be frank, how can I trust these people? After all, I am trusting them not to issue a fake certificate to the imposer?
The first answer is that my web browser comes with a list of certificate authorities (CAs). I can poke around with the settings to see the list. This just leaves the matter of "How do I know I can trust then?"
That is harder - the list of CAs in my browser may have some familiar names, but will have lots I do not know. If I have not personally inspected these companies, checked the security, processes, staff, and ethics I have no way to trust them, yet I do, every day!
The main reason I can trust them is that they trade on their integrity. If they did certify a fake padlock (so to speak) that would be found out eventually, and they would lose credibility, They would be removed from lists in browsers and people would not trust them. They would go out of business, and they know this. So they have to "do the right thing" to stay in business. It is not ideal, but it is a basis of trust, just.
https
When you access a web site, all of these principles are deployed. Your browser gets the "padlock" from the other end, with the certificate signed by one of the certificate authorities in the browser. It checks the certificate. It then uses this to negotiate the keys for the encryption to be used. Then you communicate with encrypted messages that cannot be decoded.
How serious is a man in the middle attack?
A man in the middle (MITM) attack means intercepting the communications - the whole "impostor with fake padlock" thing... This has some problems, thankfully.
Firstly, you have to actually be able to intercept communications. This is hard to do generally. It is a lot harder than simply monitoring unencrypted traffic (which can be done by tapping phone lines, or even bending fibres until light leaks!). It could be done by your ISP, or, in theory, by government mandated "black boxes".
The second issue is these pesky certificate authorities. Your fake padlock has to be certified. One way is to somehow get a new CA (which the impostor controls) in the CA list in the browser. This is hard, and certainly hard to do without being noticed. In theory a government could make it a law, but that would be very obvious and not very popular. Also, the browsers are not all made but companies - some are made "by the people" i.e. community open source projects where there is no legal entity to legislate against or intimidate. The other way is to get a copy of the "seal" from a CA that is already in the list. This will be bad when it is found out as it ruins the credibility of that CA and they get removed from browsers.
Basically, on a small scale, to target someone specifically, if you can arrange the physical access to intercept traffic, and if you can get a new CA on the users browsers somehow, you can do this. In practice this is hard. Where this is done is in corporate environments where regulation or corporate paranoia mean they install black boxes in the office. In such cases the staff know about it, and so it is no surprise that they have a special CA on their browsers.
You cannot covertly do this on any large scale - the change of key (the fake padlock) is always detectable if you look for it. Imagine that I get a fake padlock and certificate and meet up with you and compare with one of your real padlocks - we can see it does not match and know something is up. We also get to see who certified the fake padlock.
Of course, always remember, the web site you are communicating with can see the data - that is the idea. If they want to, they can use that data in various ways you may not like (legal, or non legal), and they could be compelled by their government to hand over data.
Summary
There is no way in hell that any government can snoop on all https traffic in the middle without the public knowing they are doing it. It only takes one person to check the keys to discover it.
If someone is snooping on your https then they are able to see everything, not just "communications data", if they want to. You no longer have the privacy to which you thought you had a right.
If https becomes snoopable by any means, then the "community" will come up with better systems to make it impossible. There are already changes afoot in the area of https that will thwart snooping by governments, and now there is even more incentive for such changes in the last few weeks.
Snooping on your messages
Before we even consider encryption, consider that the easiest way to snoop on your communications is either before it is encrypted or after it is decrypted.
At the simplest level, consider you are sending someone an email, and using https to access gmail. You may take all precautions your end to be sure you are not snooped on in any way, but the recipient could be a dick and forward the email on to his mates, or post it on facebook. If you are considering security you have to think of the bigger picture and the people involved, not just the technology.
Thankfully most of us are not considering security but simply privacy. We (supposedly) have a right to privacy. We just don't want someone snooping, which is fair enough.
But if you are considering security, you do have to consider other ways an attacker can access your computer. There are hardware key loggers that plug in line with your keyboard, and are undetectable by the computer itself. There are viruses that log keys and grab images of the screen. Most computers have some sort of remote desktop facility, which means that you could be accessed if you have a poor password and poor firewall settings, even though you have no viruses on the machine. There are many ways, but all of these really only make sense if you are being individually targeted, so really not a concern for most people.
Encryption
Encryption as a principle has been around thousands of years. The concept is simple, you somehow "scramble" your message before sending it in a way that only the intended recipient can "unscramble". This is putting it very simply though.
Encryption uses maths, and there are some very clever people that understand how it works. There is a whole science of cryptography. Myself, even though I have an A at A-level maths and a degree in computing, I struggle to get my head around the detailed maths involved in some of it. The principles, however, are relatively simple to understand and can be explained with some simple analogies, thankfully.
Using mathematics to encrypt things has been around for a long time, but only in the last few decades have computers been powerful enough for serious encryption to be used routinely. There are many different systems, but basically it is impossible to crack an encrypted message without having the "key". I should be careful what I say here - in cryptography there is no "impossible", it is simply a matter of making something that takes too much time and resources to crack in the lifetime that you need something to be secure. But really, for all practical purposes, we are talking "impossible" to crack.
There are, of course, conspiracy theories. The idea that "they" have scientists that have cracked modern encryption systems. Basically, many encryption systems work on the difficulty of some specific mathematical problem. However, some mathematical problems have some "short cut" discovered that makes them a lot easier to solve. Some people believe such short cuts have been found and that governments can secretly decode all encrypted messages. This really is rather unlikely. Not only would it be unlikely for only one person to have found such a short cut, but it would be very unlikely for it to be successfully kept a secret. If you must have a conspiracy theory, it is far more likely is that governments just want people to think they have a way to cracking encryption.
Another theory is that "they" have huge computing resources to "brute force" the encryption systems. This has some grain of truth in that some older encryption systems can now be cracked in realistic time frames with large numbers of modern computers. Even so, this only makes sense when targeting a specific message. A realistic time frames could mean weeks to crack one message. In practice, modern encryption uses much larger keys which can't be cracked like this.
Of course, this is speculation on my part - but you can be pretty sure that if encryption in use today is found to be easy to crack, it will be changed very quickly to something that is hard to crack. Oh, and don't try and make any sort of encryption system yourself, it will be easy to crack :-)
Public key encryption
One of the key encryption techniques used is "public key encryption". Fortunately this is very easy to explain to someone without using any maths - a simple analogy using padlocks works well. In reality it is more complex, and public keys are used to encrypt random symmetric keys that are used to encrypt the message, but the basic principle is the same.
The idea is simple - imagine you have a very good padlock and a key for that padlock. You give me the padlock and you keep the key. Later, I want to send you a message and want to be sure nobody on the way can read the message, only you. I put the message in an impenetrable strong box and lock it with your padlock, and then send it to you. Nobody can open it. You get it and use your key to open it. Simples!
Trust, and man in the middle attacks
Of course you want all sorts of people to be able to send you messages, so you have loads of identical padlocks made, all of which open with only your key. You have your name engraved on them.
This means that when I want to send you a message, I just get hold of one of the padlocks with your name on it, and use that.
But what if there is an impostor, making padlocks with your name on. I end up getting one of these fake padlocks, and send your message. The impostor intercepts the message, unlocks it with his key (as it is his padlock), reads it, then locks it again with one of your real padlocks, and sends it on to you. Neither you, nor I, are aware of this. Oops.
The answer therefore is that all padlocks come with a certificate which states exactly who's padlock it is and lists the locks serial number (that somehow cannot be forged). This certificate has a seal on it (which also cannot be forged) which is one of the well known "certificate authorities" which we all trust to issue certificates for padlocks.
OK, that sounds a tad woolly doesn't it. The whole "cannot be forged" is achieved using public key encryption to "sign" things. I won't go in to detail, and there are analogies using padlocks and keys for that too, but lets just assume for the moment that it is possible.
This still leaves an issue - how do I know the seals of the trusted certificate authorities, and to be frank, how can I trust these people? After all, I am trusting them not to issue a fake certificate to the imposer?
The first answer is that my web browser comes with a list of certificate authorities (CAs). I can poke around with the settings to see the list. This just leaves the matter of "How do I know I can trust then?"
That is harder - the list of CAs in my browser may have some familiar names, but will have lots I do not know. If I have not personally inspected these companies, checked the security, processes, staff, and ethics I have no way to trust them, yet I do, every day!
The main reason I can trust them is that they trade on their integrity. If they did certify a fake padlock (so to speak) that would be found out eventually, and they would lose credibility, They would be removed from lists in browsers and people would not trust them. They would go out of business, and they know this. So they have to "do the right thing" to stay in business. It is not ideal, but it is a basis of trust, just.
https
When you access a web site, all of these principles are deployed. Your browser gets the "padlock" from the other end, with the certificate signed by one of the certificate authorities in the browser. It checks the certificate. It then uses this to negotiate the keys for the encryption to be used. Then you communicate with encrypted messages that cannot be decoded.
How serious is a man in the middle attack?
A man in the middle (MITM) attack means intercepting the communications - the whole "impostor with fake padlock" thing... This has some problems, thankfully.
Firstly, you have to actually be able to intercept communications. This is hard to do generally. It is a lot harder than simply monitoring unencrypted traffic (which can be done by tapping phone lines, or even bending fibres until light leaks!). It could be done by your ISP, or, in theory, by government mandated "black boxes".
The second issue is these pesky certificate authorities. Your fake padlock has to be certified. One way is to somehow get a new CA (which the impostor controls) in the CA list in the browser. This is hard, and certainly hard to do without being noticed. In theory a government could make it a law, but that would be very obvious and not very popular. Also, the browsers are not all made but companies - some are made "by the people" i.e. community open source projects where there is no legal entity to legislate against or intimidate. The other way is to get a copy of the "seal" from a CA that is already in the list. This will be bad when it is found out as it ruins the credibility of that CA and they get removed from browsers.
Basically, on a small scale, to target someone specifically, if you can arrange the physical access to intercept traffic, and if you can get a new CA on the users browsers somehow, you can do this. In practice this is hard. Where this is done is in corporate environments where regulation or corporate paranoia mean they install black boxes in the office. In such cases the staff know about it, and so it is no surprise that they have a special CA on their browsers.
You cannot covertly do this on any large scale - the change of key (the fake padlock) is always detectable if you look for it. Imagine that I get a fake padlock and certificate and meet up with you and compare with one of your real padlocks - we can see it does not match and know something is up. We also get to see who certified the fake padlock.
Of course, always remember, the web site you are communicating with can see the data - that is the idea. If they want to, they can use that data in various ways you may not like (legal, or non legal), and they could be compelled by their government to hand over data.
Summary
There is no way in hell that any government can snoop on all https traffic in the middle without the public knowing they are doing it. It only takes one person to check the keys to discover it.
If someone is snooping on your https then they are able to see everything, not just "communications data", if they want to. You no longer have the privacy to which you thought you had a right.
If https becomes snoopable by any means, then the "community" will come up with better systems to make it impossible. There are already changes afoot in the area of https that will thwart snooping by governments, and now there is even more incentive for such changes in the last few weeks.
2012-07-02
You are now breathing manually
OK, under the needle (insulin) and working well.
Only catch is I have an appetite now, and eat more, and, well, getting fat.
So need to adjust insulin down, exercise more, and try and make it balance.
"You are now breathing manually" is a meme, for winding someone up making it feel that have to think to breath. But with diabetes "You are now balancing insulin and sugar manually" is kind of very true.
Bugger.
Only catch is I have an appetite now, and eat more, and, well, getting fat.
So need to adjust insulin down, exercise more, and try and make it balance.
"You are now breathing manually" is a meme, for winding someone up making it feel that have to think to breath. But with diabetes "You are now balancing insulin and sugar manually" is kind of very true.
Bugger.
How it works: Private Browsing
Occasionally people want to view a web site that they would rather others did not know they were viewing. The classic contrived marketing example being buying a present for your wife. The reality, I am sure, is people watching porn.
So how does the Internet work, and who can see what you are doing?
That is, except, for the new Communications Bill, which will, if passed, mean that all those web site accesses are snooped, and logged, and kept for a year, and accessible (officially) to various parties (e.g. police) and of course unofficially to anyone that hacks the black boxes... Oops.
So how does the Internet work, and who can see what you are doing?
- Well, the one thing you can be sure of, is that the web site you are visiting can track your IP address and knows that your IP is visiting their web site. No matter how the web site works, that will pretty much always be the case unless using something like TOR. However, to them you are a faceless IP address, and they will probably assume a dynamic IP address that will not be the same person tomorrow or perhaps even a second from now. They are also in some other country, probably. They probably have no interest in ever finding out who you are, and just want you to buy their premium services - just hand over your credit card now - there are girls waiting in Arnold, Nottingham for you :-)
- To access the web site you will have used something called DNS. This all happens behind the scenes. It is a system to convert names like (OK, every example I invented already exists, but www. something) in to the internal IP address used by your computer. The DNS server is probably run by your ISP. Surprisingly most DNS servers are not set up to log accesses (but could) and DNS accesses are not something covered by the UK Data Retention Directive. So yes, your ISP could know that you looked up a specific host name, and infer something from that if they wanted to. However, ISPs (well, most ISPs) have some integrity and would not look in to that. Also, you can use external DNS servers like 8.8.8.8 (google) and then the logging (if any) is again some anonymous dynamic IP address. If you really want you can run a local DNS resolver and avoid logging like this at the ISP or google, though some servers will be able to make logs.
- Your computer logs all sorts of crap, like you would not believe, but most browsers have a "private browsing" mode of some sort, or at least a "clear history" mode which means you can erase pretty much all of that. The "private browsing" mode is likely to be the most private. It is designed for this specific purpose (!) and so it does not log stuff. This is a reputation thing - someone making a browser that leaked your "private browsing" stuff would be exposed and laughed at.
- In order to actually access the web site in question, the packets do pass through your ISP. They could be snooping - but again, most ISPs have some integrity and would not be looking. To be honest, as an ISP, we really have no reason to look at, or care, what the hell you are up to, and would not do so.
- The packets pass through intermediate ISPs and transit providers. They have even less incentive to ever look at what you are up to, and less way to tell who you are - so again, low risk.
- On the way, if you are in an office, or even some homes where you are not the IT person, the packets could go via a local router of firewall that has some logging. They could log stuff. Your employer can, and may feel the need to, log your DNS lookups and your network traffic. Private browser mode will not help you. They almost certainly know which IP is which employee. Just go home!
That is, except, for the new Communications Bill, which will, if passed, mean that all those web site accesses are snooped, and logged, and kept for a year, and accessible (officially) to various parties (e.g. police) and of course unofficially to anyone that hacks the black boxes... Oops.
Subscribe to:
Posts (Atom)
Clocks
Some time geeks (should I say Time Lords) checked out my clocks. Seems they are impressed, saying sub microsecond. I have spent all day tryi...
-
Broadband services are a wonderful innovation of our time, using multiple frequency bands (hence the name) to carry signals over wires (us...
-
For many years I used a small stand-alone air-conditioning unit in my study (the box room in the house) and I even had a hole in the wall fo...
-
This is an appeal for (sensible) comments. I am working on revised A&A tariffs for broadband. For those that are not sure how they wor...


