nanog mailing list archives

Re: netflow in the core used for surveillance


From: jim deleskie <deleskie () gmail com>
Date: Wed, 25 Aug 2021 20:01:12 -0300

Randy,

  We all know many folks send their *flow to someone or somewhere.  In
exchange for pretty graphs for intelligence.  I suspect in many cases this
data is then reused in many cases for many purposes.  But let's not
overplay the risk here.  There would be much easier ways for rogue nations,
bad guys/good/in the middle nation to find out about dissidents, activists,
and journos than flow data. I think letting any of those people think ToR
is safe as being a much bigger risk.

-jim

Disclosures for those that don't know.  I've never worked with Team Cymru,
I do know them fairly well and believe them to be the good guys, I do
currently have a relationship with them, I do not currently work for a
large SP that sends them data.  I have worked A LOT with flow data over the
last 20 years, for large SPs, small vendors, and all things in between.

On Wed, Aug 25, 2021 at 6:15 PM Randy Bush <randy () psg com> wrote:

https://www.vice.com/en/article/jg84yy/data-brokers-netflow-data-team-cymru

used to get dissidents, activists, and journos killed

at&t, comcast, ... zayo, please tell us you do not do this.

randy


Current thread: