In the UK? Strange browser behaviour? You might be being IWF’d.
grimboy.co.uk
grimboy.co.uk
Turns out that they'd blacklisted an album cover for having a naked 14 year girl on it, so everyone going to wikipedia got shunted through the system, which makes it appear as if everyone's coming from a handful of IP addresses. Ironically the 70s album cover wasn't censored in the UK when it originally came out.
I can't remember all the details now, I'm paraphrasing a story told by Glyn Wintle from the Open Rights Group[1]. I saw him at a Notts Tuesday event[2], good speech, a whole lot more insidious things going on than you realise.
In the UK the Open Rights Group are the people you need to support/get involved with to help keep things like this in check!
[1]http://www.openrightsgroup.org/ [2]http://notttuesday.com/2010/07/05/tuesday-13th-july-keeping-...
As usual, Wikipedia assimilates the controversy into another Wikipedia article: http://en.wikipedia.org/wiki/Internet_Watch_Foundation_and_W...
Buuuuut:
Virgin and NTL blocked it for YEARS afterwards. It was a nightmare getting it unblocked. I eventually had to reach out to a friend that knew Branson to get a high enough level connection.
Government blunt weapons plus corporate disinterest are in aggregate bad for everyone.
Some broke friends of mine noticed that their already downloaded torrents still worked. Obviously, all non HTTP traffic worked just fine. They took to going to the pub at the end of the road, grabbing .torrent files and downloading them at home. Pretty resourceful. I considered hooking them up with a SOCKS proxy but never did.
As it probably should, in this case, because we're not giving up a lot. People think that one child abused is one too many, which is hard to argue. But yes, you can argue that blocking entire domains instead of specific urls is overkill.
Accessing free child porn anonymously doesn't "incentivise" child abuse. But some think that it encourages abuse in real life. But that's a psychological argument, not a technical one.
It is hard to argue, but it's also a red herring. The missing bit is the solid link between someone(1) NOT accessing child porn and, somewhere down the line a child NOT getting abused.
1: and that someone is likely to be a small fish, as one must expect the serious guys to be perfectly capable of using any of the hundreds of easily accessible and usable tools (various flavours of crypto) to circumvent the deploy anti-measures.
To a certain extend, this is the war on drugs all over again. We fight (a very small subset of) the consumers because then we are seen to do something (tm), but it's not clear that it puts a significant dent in the production. And this is a harder nut to crack than drugs, because the easy demand-side solution (at least partial legalisation) is not really feasible here.
This just goes to show that "one child abused is too many" only applies when the solution discussed isn't "wrong".
Shoddy transparent proxying and traffic shaping isn't anything new in the UK though. For the past couple of years I've frequently had Google go "down" for blocks of 5-10 minutes several times each week, yet through VPN it's fine. If you want a reliable connection at home in this country, it seems you need to just be permanently hooked up to a VPN located somewhere else.
(I am not-dumpster diving for kiddie porn, however. It's a strict-liability offense: merely having the stuff in your hard drive cache, unlooked-at, is enough to draw a gaol sentence.)
That's something that comes up periodically w.r.t. to the IWF itself. It's not an agency of the police (or part of the govt at all), so the exception to child-porn laws that permits police to view such photographs in the course of an investigation doesn't apply. Thus, if the law were to be applied as written, it should be strictly illegal for IWF employees to have accessed many of the sites on its blocklist. So either they haven't done so, and their blocklist is of questionable accuracy; or they have done so, and thereby committed a crime.
Fortunately for them, the government supports the IWF and has no interest in prosecuting them.
I don't suppose the ISPs are too bothered about the sites being filtered - although there is some legal content on them, they're mainly used to host copied music and TV, so there is little incentive for them to make allowances for access to the non-porn content.
Incidentally, I'm with BeUnlimited and it seems uploading.com always thinks that my IP address has exceeded some download limit:
"Sorry, you have reached your daily download limit. Please try again tomorrow or acquire a premium membership."
This does not happen when browsing from a cheap Linux VPS box, looks like Be/O2 are proxying too, except from curl -I output it looks like it's a fully transparent proxy.
$ curl -I filesonic.com
HTTP/1.1 302 Moved Temporarily
Server: nginx
Date: Sun, 17 Apr 2011 12:21:29 GMT
Content-Type: text/html
Location: http://www.filesonic.com/
Age: 0
Via: HTTP/1.1 webcache1-know.server.virginmedia.net (Traffic-Server/5.7.0-59705 [cMs f ])
Note that I can still download from those site at will. It doesnt look like they're actually blocking anything. I'm on the 10mbit service, which is on a different network to the 50mbit+ plans.Virgin have stiffed me before with deep packet inspection, but this one is new to me. Time to persuade my new housemates that changing to DSL is a good idea...
Or figure some more elegant way around it. Any ideas? Hooking up openDNS at the router level is on my list, but I doubt that will help.
If they are going as far as inspecting http traffic (and selectively editing/blocking some of it) with a transparently proxy rather than redirecting selected domains via DNS poisoning then your only way around this is some sort of VPN which of course requires a host elsewhere for the VPN server to run on (unless you use something like Tor, but that is very slow and may cause the same "many people from a small set of IP addresses" problem itself anyway due to the relatively limited number of exit nodes).
http://www.cl.cam.ac.uk/~rnc1/cleanfeed.pdf
I personally use a cheap VPS located in the US to get around IP geolocation (e.g. occasional Youtube videos, Hulu etc.), and it can also circumvent this, though I have never had cause to - my Be Pro account does not block filesonic.com, for example.
Then in firefox you can setup a socket proxy (in options, under advanced settings -> connection settings select manual proxy then add 127.0.0.1 and port 4999.) This should be enough to get around it. I use this to secure my connection while on other peoples laptop (work etc..)
[1] - http://getfoxyproxy.org/
http://en.wikipedia.org/wiki/Gag_order#United_Kingdom (These are called super injunctions in the UK)
That's why I was so surprised. I only really followed the debate in Germany (that's where I'm from), not in the rest of Europe.
They're overseen by a committee of both government representatives and those from the press and news distribution (including Google's Europe head of PR)
Sky - Broadband, phone, TV. Requires you to pay a Murdoch (hard pill to swallow for one parent)
Virgin - Cable (internet on different unshared fiber), phone, tv. Requires acceptance of this article. (Tbh not too fussed)
BT - Broadband and calls. TV package is an expensive joke. Call centre is shit/Indian (quality of the line and training, not racism)
Talktalk - Broadband and calls. Even worse call centers. My parents are afraid to leave them now...
Anyway, I believe I'm wrong somewhere, I wish I was wrong in more places (everything negative).
To be honest though I have no idea on what level their transparent proxying works.
$ curl -I http://78.140.176.180/ [SNIP] HTTP/1.1 301 Moved Permanently
If the ISPs just wanted to implement IWF censorship, they could do it less invasively by using packet inspection.