Dutch carrier has been secretly spying on customers for at least 9 months
translate.google.com
translate.google.com
KPN uses deep packet inspection on mobile internet communications.
In a (Q&A) session with investors, KPN has admitted making use of controversial deep packet inspection technologies. By doing so the telecommunications company might be in violation of the law.
In a question and answer session with investors Marco Visser - VP of KPN Mobiel Nederland - confirmed KPN to have used controversial deep packet inspection eavesdropping methods to map mobile data traffic of it's customers. "As far as we know we are the first in the world to do this", according to the VP. According to Visser one of the purposes of dpi is measuring the WhatsApp-penetration among certain groups of customers.
Tuesday KPN CEO Eelco Blok presented numbers(/statistics) meant to illustrate the rapid growth of "sms-killer" WhatsApp among Hi(KPN)-customers. Now it is understood from Visser's comments that this data has been collected with the use of deep packet inspection over a period of at least nine months.
Visser also told shareholders that KPN intends to apply this same technology to VOIP-traffic to enable them to charge separately for related applications. Earlier this year KPN already announced the introduction of new subscription models and for prices of mobile internet subscriptions to increase, but the company never made clear which methods would be used to detect uses/applications like VOIP in its mobile data-streams.
It's unclear if KPN currently still makes use of dpi on it's mobile network, and if the telecommunications company also uses it on it's other networks; the company has yet to respond to any questions regarding the matter. It's also unknown whether KPN only analyses packet headers, or if their analysis also includes the payload. Nevertheless KPN enters a gray area with their use of dpi, and is possibly in violation of the law.
"The core component in PacketLogic is Procera’s own identification engine DRDL – Datastream Recognition Definition Language. DRDL facilitates a broad range of criteria to properly identify the application of each individual datastream, a.k.a. flow, session or connection. The identification relies on bidirectional information like the packet sequence in a handshake, header information, protocol, actual payload, and other distinguishing characteristics of an application. This way DRDL can properly identify even encrypted applications."
They are now trying to compensate their strategic mistakes by introducing tiered internet subscriptions where customers pay higher subscription fees to use VOIP and messaging services. Since there are only three big mobile operators in The Netherlands (T-Mobile, Vodafone, KPN), the worry is that the others will quickly follow suit.
EDIT: See (dutch) statement at: http://www.kpn.com/corporate/overkpn/Perscentrum/nieuwsberic... They used DPI to analyze Whatsapp usage and are checking if all the rules were applied regarding data used for the analysis.
I doubt they will, as customers would simply leave for one of the competitors. They will loose much more than they'll gain. Continuing to try and cash in on SMS traffic is like continuing to try and sell music the old way: we've entered a new era and that business model just won't work.
Port numbers for instance could point to certain services. Port numbers cannot be obscured using an encryption layer such as SSL.