Decentralizing the Internet So Big Brother Can’t Find You
nytimes.com
nytimes.com
The key idea behind the "Freedom box" is to own your logs and not let anyone else infer without your express permission. The idea was discussed in full in his speech, "Freedom In the Cloud" at the NY Internet society, 2010FEB05. You can read speech ~ http://www.softwarefreedom.org/events/2010/isoc-ny/FreedomIn... or listen/watch here ~ http://www.isoc-ny.org/?p=1338
"Rebuild the Internet"... how? They're evidently not planning on wall-warts to route the Internet. "would decentralize information and power" how, precisely? There's absolutely squat in the article about wtf the thing would do.
I would pay $99 for myself and buy each and every one of my friends one of these boxes if the concept proved true.
> what stops the government from just getting the ISPs to turn off traffic?
Something like Xnet in Cory Doctorow's Little Brother. A mesh network where you send your requests into the 'mesh' and it encrypts the information and sends it out to the wider internet through exit nodes that are hooked up to ISPs. Were such a network to exist, then the mesh would extend across borders, so E.g. the US government would also have to convince Canada and Mexico to shut down their ISPs as well. The parts of the mesh that connected to Canada and Mexico wouldn't be able to route all casual internet traffic for the entire US, but it would be enough just to get information into (or out of) the country and onto the mesh network. Once on the US portion of the mesh network, the external information could be distributed amongst the nodes since the mesh network is independent of government control. The mesh network would also easily be able to allow people within the country to coordinate things like protests, etc. Shutting down the internet in instances like Egypt isn't necessarily about cutting off access to the outside, it's also about cutting off the ability of the people easily organize themselves en masse.This might not be the case in western countries, right now, but once governments start to mess with communications infrastructure really badly (like happened in Egypt), people will use other, non-centralized ways to communciate.
Also, don't underestimate innovation, back in the 80's many people would think a global computer network that could be used by everyone, and is a big part of daily life, was a pipe dream.
Step 1 is to own the hardware that serves up your information.
Step 2 is to own the path that your information travels upon.
You are correct, Step 2 is a significantly more difficult problem to solve, but this does not mean that we should not try to solve Step 1 while we have an opportunity to do so.
IPSec is part of the protocol so these connections can be trusted. Also no NAT issues so connecting directly between trusted 'plugs' may be simpler than with IPv4. May need to start with a mesh network over a mix of paths that you own and paths that you may not.
I have no real world experience implementing IPv6, just been looking into it lately.
They're $99 now? Where?
Because encrypted distributed servers running around the country will efficiently serve internet traffic?
I'm a fan of Moglen and the SFLC but this is about as practical as a bicycle with square wheels.
Why is his idea flawed? What would it require to succeed? Are there other similar ideas that you think are good? Answering these questions would be interesting. Doing what you did is not.
It's a fantastic idea. What is missing from it is how the infrastructure is and probably always will be under the domain (pun intended) of corporations.
For example, how do we provide "internet access" with these servers? We don't own the fiber; it it gets shut down we're dead in the water. ISPs run the networks and therefore control the content and charge for it as much as they want.
An alternative is state-controlled ISPs--but we all can guess how fun that would be.
I'm trying to think of yet other alternatives, but I'm drawing a blank.
I don't see the difference between having encrypted data on a mini-server at your house vs. housed at a provider. If the data was stored centrally and there were few options, it would make the legal process of getting the data easier. With the existing options for hosting data in many different countries, this doesn't seem to be a problem. Even then, you could probably stripe this data across centrally stored hosting solutions and still have a more efficient and secure process than hosting off of a 'Freedom Box'.
Options seem to be: 1. Distributed storage. The storage is striped across these boxes all over, and no single box has any data. Nobody can subpoena the data because of the process involved in getting the information from so many people at once. I think using distributed storage would be very, very difficult with data redundancy, latency, and maintaining security with such high availability and access.
2. Each box is self operating, but managed centrally. Data storage is contained to a single (or few) boxes to simplify data access and speed. This still allows centralized access to the data, and fewer people would be involved in collecting the data. Higher levels of security could be maintained, but legally easier to access.
3. Self managed secure boxes that have a 'cloud' or 'bot' organization of peer-to-peer relationships. Again, these types of systems work today, but there are still centralized servers and most of the workload is still carried by large servers/organizations.
It seems easier to simply make Tor more secure, which is a different debate if that's even possible. The article reads like a lawyer who has some tech experience thinks he has created a magic Internet v2.0 because he's found a way to get around the legal ramifications of privacy without regard to technical ramifications.
1. http://www.networkworld.com/news/2008/022608-youtube-outage-...