<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Infoporn: VeriSign NetDiscovery &quot;Lawful Interception&#160;Service&quot;</title>
	<atom:link href="http://boingboing.net/2007/08/30/infoporn-verisign-ne.html/feed" rel="self" type="application/rss+xml" />
	<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html</link>
	<description>Brain candy for Happy Mutants</description>
	<lastBuildDate>Wed, 19 Jun 2013 19:31:00 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.1</generator>
	<item>
		<title>By: Bill_Owens</title>
		<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html#comment-1822</link>
		<dc:creator>Bill_Owens</dc:creator>
		<pubDate>Wed, 30 Nov -0001 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-1822</guid>
		<description>It&#039;s an implementation of a CALEA &quot;Trusted Third Party&quot; service. Makes your ISP network CALEA-compliant without you having to worry about pesky things like subpoenas and network taps. Is CALEA a terrible thing? Is outsourcing your wiretapping wise? Dunno. But it doesn&#039;t appear to be an FBI plot (at least, not as far as I can tell).

Bill.</description>
		<content:encoded><![CDATA[<p>It&#8217;s an implementation of a CALEA &#8220;Trusted Third Party&#8221; service. Makes your ISP network CALEA-compliant without you having to worry about pesky things like subpoenas and network taps. Is CALEA a terrible thing? Is outsourcing your wiretapping wise? Dunno. But it doesn&#8217;t appear to be an FBI plot (at least, not as far as I can tell).</p>
<p>Bill.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Burz</title>
		<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html#comment-2710</link>
		<dc:creator>Burz</dc:creator>
		<pubDate>Wed, 30 Nov -0001 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-2710</guid>
		<description>I was struck by this fact when reading &lt;a href=&quot;http://www.wired.com/politics/security/news/2007/08/wiretap?currentPage=all&quot;&gt;this Wired article&lt;/a&gt; just yesterday. It mentions in passing that VeriSign contracts as a wiretapper in addition to phone companies.

IMHO this sort of activity is possibly a deep, deep conflict interest and betrayal of trust for a certificate authority like VeriSign to be engaged in. I could be wrong but it seems likely that VeriSign could, with help from ISPs, use their position to stage man-in-the-middle attacks on unsuspecting users without prompting any certificate warnings.

Would someone with detailed background care to comment on this possibility?</description>
		<content:encoded><![CDATA[<p>I was struck by this fact when reading <a href="http://www.wired.com/politics/security/news/2007/08/wiretap?currentPage=all">this Wired article</a> just yesterday. It mentions in passing that VeriSign contracts as a wiretapper in addition to phone companies.</p>
<p>IMHO this sort of activity is possibly a deep, deep conflict interest and betrayal of trust for a certificate authority like VeriSign to be engaged in. I could be wrong but it seems likely that VeriSign could, with help from ISPs, use their position to stage man-in-the-middle attacks on unsuspecting users without prompting any certificate warnings.</p>
<p>Would someone with detailed background care to comment on this possibility?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html#comment-1953</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Wed, 30 Nov -0001 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-1953</guid>
		<description>Well now we know why Verisign always gets it&#039;s contract to manage the DNS renewed.

</description>
		<content:encoded><![CDATA[<p>Well now we know why Verisign always gets it&#8217;s contract to manage the DNS renewed.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html#comment-1984</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Wed, 30 Nov -0001 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-1984</guid>
		<description>As far as &quot;the law&quot; is concerned, do &quot;lawful&quot; and &quot;legal&quot; mean the same thing?</description>
		<content:encoded><![CDATA[<p>As far as &#8220;the law&#8221; is concerned, do &#8220;lawful&#8221; and &#8220;legal&#8221; mean the same thing?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://boingboing.net/2007/08/30/infoporn-verisign-ne.html#comment-2023</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Wed, 30 Nov -0001 00:00:00 +0000</pubDate>
		<guid isPermaLink="false">#comment-2023</guid>
		<description>This is a design that many of the IP based phone carriers are utilizing instead of building the hugely expensive infrastructure to do it themselves. Verisign is not the only provider offering this service, there are several others and these products provide the compliance that companies like Vonage are required to maintain.

I have many customers who use these products but none of them have ever been served with warrants to tap their lines.

</description>
		<content:encoded><![CDATA[<p>This is a design that many of the IP based phone carriers are utilizing instead of building the hugely expensive infrastructure to do it themselves. Verisign is not the only provider offering this service, there are several others and these products provide the compliance that companies like Vonage are required to maintain.</p>
<p>I have many customers who use these products but none of them have ever been served with warrants to tap their lines.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
