German Cloud Company Offering Free Heat If You Have Room for Some of Its Servers
slate.com
slate.com
"We install The Device in your house, free of charge. You receive heat. Do not ask about the function of The Device."
"You may hear a human voice coming from inside The Device. Ignore it."
"Some customers report having recurring dreams about The Device, this is normal."
"The Device comes in one colour: Impenetrable Blackness."
"Behold, I will corrupt your seed, and spread dung upon your faces, even the dung of your solemn feasts; and one shall take you away with it."
"I just wanted some heat from the thing, I don’t even know what it really is", is the unlikely claim of Heinz S., who turned 76 this year.
On Tuesday, he has to state his case in court, together with 22 other people who surprisingly tell a very similar story.
It doesn't have to be inside.
The noise is something else from just one server with the fans being especially annoying
In a datacenter environment a single rack makes a mighty annoying noise and vibrations.
I would not want to be living anywhere near a rack lol
Ladies and Gentlemen, i present: Bullshit. I wish companies with no clue about encryption would stop making these insane claims.
Presumably they detect unauthorized case-intrusion and immediately delete the keys. This isn't foolproof, but it's probably good enough to stop anyone except the people that are going to get the data no matter what you do.
That's obviously something that can be done, but it requires a lot of dedication to pull of, so that's something you'd only do in case where you know the data is valuable. It's probably easier to just get an inside job done, but you could get that at any other datacenter or even at AWS.
For a lot of data, the payoff is not worth the effort and risk, so I'd be unconcerned. Obviously, don't store bank accounts or medical data there, don't use it for the next NSA datacenter etc.
But yeah, you're right - this isn't gonna happen. I'd worry more about a home below floodplain taking on water.
To be honest - law enforcement could pull that off. But that's not the threat model that this is supposed to counter.
The very first people to sign up will all be budding security enthusiasts secretly looking forward to their prime time on Chaos Computer Club or BlackHat or whatever where they take apart one of these servers.
Seems about the last thing you'd try too. Surely you'd try and catch the data on the wire a long time before you'd even contemplate this sort of scenario. At least then you have the chance to get the whole encrypted file you're after.
I wouldn't want my bank to store my account data on one of those, but I wouldn't mind if website assets were served from there.
Well not all video content as Youtube allows for private (and unlisted) videos.
If there simply storing encrypted data then these servers might be unable to decrypt the stored information and reading their contents would be pointless.
If on the other hand these servers decrypt the data then encryption is of limited value.
"Yep."
"That ... does not sound German to me."
"Yeah, well, ... "
"I think you are a spy. Looking to take advantage of our generosity, ja? Und maybe in ze middle of the nacht you installen the spying thing on our box, mit your little NSA spying thing?"
"Haha! Those don't exist. The NSA? That actually stands for No Such Agency, dude. I mean, freund ... fraud ... you know, ich bin ein jelly donut and all that."
"You are sure you are not this spy?"
"Yep, er ... ja."
Can't see it being practical at small house scale, and there's also some big security issues.
> Cloud&Heat sets up a separate Internet connection for server operation and bears all costs of this as well as liability for any damage.
http://www.speedguide.net/faq/is-dsl-dedicated-while-cable-m...
This scheme takes hot air and either gives it some use - heating a room - or dumps it.
Burying pipes to get heat from the ground is quite popular. This is just a version of that.
I'm not sure it's as bad as the "green washing" that many companies do.
I've always wondered the same thing about cooling towers in power stations. Why are they cooling the water coming out of the plant? The whole point of the plant is to make it hot and then convert that to electricity - why on earth are they venting the energy like that?
Apparently it's to do with cooling it fast enough to create a vacuum to draw through more water.
Unless they've cracked the problem of practical fully homomorphic encryption, that data is still going to be unencrypted at some point in those units and vulnerable if the physical security of the cabinet is compromised.
Unless the cabinet is air tight, and uses a pressure sensor to detect itself being opened. It's "Is the cabinet open?" subroutine can be defeated by simply opening the cabinet where a sensor isn't located.
Basically cut the sucker open on the side.
:.:.:
Also by using a time sharing OS its likely you can induce a large network based load externally slowing its IO speed to the level you can open the cabinet, and "close" the cabinet from the sensors perspective while leaving it opened.
:.:.:
Further more data loss doesn't occur on door opening, thus the keys are still recoverable, because without it would be impossible to service.
Given that the units are spread out further than servers in a datacenter, you probably want that anyways. Your service teams don't want coordinate access to the device, drive there and the homeowner does not show up for something as mundane as an HDD swap.
Best approach not necessarily being the one that was put into production.
The fastest approach would be to store your key value pairs encrypted on the host device, and do your map/reduce functions locally so you only forward relatively useful data.
This is an engineering problem: how secure do you want to be; how many mechanisms do you need to achieve that; does this come in under the cost budget. Your pressure-sensor solution alone is probably good enough for a large number of applications already.
But this is not a research problem: we don't have to solve homomorphic encryption!
Fine, thin, looped resistance wire - if you drill or cut through it, its resistance changes (either to infinite in case of a clean cut, or a couple ohms in case of two or three shorted-together loop).
> Also by using a time sharing OS its likely you can induce a large network based load externally slowing its IO speed to the level you can open the cabinet, and "close" the cabinet from the sensors perspective while leaving it opened.
Use a Raspberry Pi together with a UPS-backed fiber modem and a cellular modem backup uplink in case someone cuts the fiber, and the threat is basically neutralized (okay, someone may jam the phone signal, but then again this can be detected by carrier loss).
No safe is "uncrackable", they just get rated at how much time/expense it would take a pro to break in and then you don't store anything in it that's more valuable than that.
If I'm a potential customer looking to process my data on these servers, I would want to know what the equivalent rating is.
Distributed rendering of video content could maybe be a good use case - moderate bandwidth requirements, heavy CPU/GPU utilization, data not overly sensitive.
That depends entirely on your use cases. Making comments like this without mentioning the wide range of trust levels with different use cases is short sighted.
I don't think it is.
I kinda thought the same.
But assuming it can be properly encrypted (hard) what's the difference to swapping in a new server compared to swapping in a new gas bottle? User pays for the initial infrastructure.
Pull the old one out, pop the new one in, 60 seconds, any blue collar worker can do it, if it's setup properly. It would even be automatically checked remotely it was done 100% correctly.
Once every 3 years? Probably cost $50 a pop? Not necessarily crazy.
Will this be seen as a way to impede and slow down large scale raids?
Even if they want to "raid" my flat-mate, they can't go to my rooms while doing it.
So police are going to get a warrant that is limited to the basement room containing the racks. the home owners will be slightly annoyed and inconvenienced, but they aren't going to put up a fight against the warrant. They'll be more than happy to cooperate with the police.
> Ladies and Gentlemen, i present: Bullshit. I wish companies with no clue about encryption would stop making these insane claims.
Which is rude and does not make a cogent argument, and yet 3 people asked for clarification instead of downvoting it.
The (lack of a) downvoting policy here is abysmal and no one wants to talk about it.
You sure about that?
http://seattletimes.com/html/localnews/2024952673_amazonheat...
"Partnering with other companies, Amazon will use waste heat
from a data center in a Seattle skyscraper to warm its
soaring new Denny Triangle campus across the street."
http://www.theguardian.com/environment/2010/jul/20/helsinki-... Helsinki data centre to heat homes
"A mini revolution in eco-friendly computing is taking place
in the depths of the 19th-century Orthodox Uspenski
Cathedral in downtown Helsinki."
"The Finnish IT company Academica has installed a new 2MW
database server centre in an empty second world war bomb
shelter meant to protect city officials in the event of a
Russian attack. Water warmed while cooling the servers will
go on to provide heat for 500 homes or 1,000 flats in a city
that often suffers winters of -20C. After the heat is
extracted, the water will be recycled back to cool the
servers again."(I'm purposely not addressing sex with the livestock)