11:46:52 From Claudia Ruiz to Everyone:
Welcome to the NARALO Monthly Call
11:56:34 From Glenn McKnight to Everyone:
Greetings all
11:57:18 From Glenn McKnight to Everyone:
FYI created a site to share training material and events
11:57:19 From Glenn McKnight to Everyone:
https://padlet.com/mcknightglenn/icou2scksu0rwk87
11:59:11 From Claudia Ruiz to Everyone:
Welcome All
12:05:21 From David Mackey to Everyone:
Let’s move forward. Innovation is not always easy.
12:06:17 From Glenn McKnight to Everyone:
This is a common problem and its critical for our participation
12:07:09 From David Mackey to Everyone:
At-Large has a mission to reach end users. Hopefully, the ICANN organization won’t get in the way of At-Large’s mandate. :-)
12:07:42 From Marita Moll to Everyone:
Ler's be easy on staff. They don't make the rules. That doesn't mean we should not try to change them.
12:09:15 From David Mackey to Everyone:
@Marita, it’s not any individual staff. It’s the organizational bureaucracy that needs to be supportive of communication innovation to meet our mandate. We are using the internet.
12:09:23 From Yubelkys Montalvo to Everyone:
Greetings to all!
12:10:26 From Heidi Ullrich to Everyone:
The selections wiki workspace is at; https://community.icann.org/display/atlarge/2021+ALAC+and+RALO+Elections%2C+Selections+and+Appointments
12:11:41 From Marita Moll to Everyone:
@David -- I was just reacting to the previous conversation. This appears to be something new -- and we are working within a bureaucracy.
12:11:59 From David Mackey to Everyone:
@Marita got it. :-)
12:12:12 From Heidi Ullrich to Everyone:
@All, regarding the design contest, we are are currently confirming with our supplier that they will be able to print the winning design.
12:12:53 From Claudia Ruiz to Everyone:
Welcome Pablo
12:12:56 From Silvia Vivanco to Everyone:
Elections wiki page: https://community.icann.org/display/atlarge/2021+ALAC+and+RALO+Elections%2C+Selections+and+Appointments
12:13:08 From Glenn McKnight to Everyone:
Question on the NARALO Mailcards ?
12:13:37 From Marita Moll to Everyone:
Is T-shirts the best use of this money. I have a pile of ICANN T-shirts I'd like to auction off.
12:14:08 From Yubelkys Montalvo to Everyone:
Hola Pablo!!!
12:14:45 From Judith Hellerstein to Everyone:
@glenn we have plenty of mail cards, we re-ordered them last year
12:14:46 From Evan Leibovitch to Everyone:
You really think you can get something at auction for them? 
12:14:56 From Judith Hellerstein to Everyone:
We also ordered table top banners as well
12:15:09 From Wes Boudville to Everyone:
Marita, tshirts might have to be given away; it's like this in los angeles with tech swag
12:15:41 From Marita Moll to Everyone:
@Evan -- could be vintage one day....
12:15:59 From David Mackey to Everyone:
@Marita I’m vintage already!! :-)
12:16:07 From Judith Hellerstein to Everyone:
@heidi if your vendor cannot print the design we can go with the vendors we did for the promotional swag we did last year they are able to print anything. Last year we were able to go with them when your vendor was not able to do it
12:16:35 From Judith Hellerstein to Everyone:
@marita. You may have too many but they are very popular with many people.
12:16:41 From Heidi Ullrich to Everyone:
Thanks, Judith.
12:17:05 From Glenn McKnight to Everyone:
FYI we will be having Robert Kahn in a future VSIG session. we had Vint, Steve Crocker already as speakers. We are sharing these recordings to the NARALO Facebook group
12:17:56 From Glenn McKnight to Everyone:
I like the slides in English and Spanish
12:19:28 From Evan Leibovitch to Everyone:
Vint's legacy is badly dininished. He fought HARD for the (unsuccessful) destruction of .org by selling it to Ethos.
12:20:02 From Evan Leibovitch to Everyone:
That ought not to be forgotten.
12:20:13 From Glenn McKnight to Everyone:
@evan its all under the bridge
12:20:22 From Evan Leibovitch to Everyone:
Not at all
12:21:13 From Evan Leibovitch to Everyone:
There ought to be consequences for fighting the public interest as enthusiastically as he did.
12:21:26 From Glenn McKnight to Everyone:
ISOC is going through a community reorganization headed by Hans and Mike and we will see how it becomes more responsive
12:21:54 From Wes Boudville to Everyone:
I heard Vint @ucla 2 years ago. He spoke well
12:21:58 From Glenn McKnight to Everyone:
Look to efforts by Ester Dyson and others on their alternative strategy
12:22:31 From Glenn McKnight to Everyone:
@Wes we will post Vints lecture he did for our Group C to the Facebook group
12:22:43 From David Mackey to Everyone:
@Glenn That’s good news. I resigned my ISOC membership precisely because I feel the ISOC leadership is sooooo disconnected from its members.
12:23:12 From Glenn McKnight to Everyone:
Is that Steve Crocker in the picture with a beard?
12:23:57 From Glenn McKnight to Everyone:
@Wes we found a picture of Vint without a suit ( it was a picture provided by Peter Knight) when he was in high school
12:23:59 From Eduardo Díaz to Everyone:
@Glenn - I do not think so.
12:24:26 From Glenn McKnight to Everyone:
@ed i do not think what?
12:24:42 From Eduardo Díaz to Everyone:
That that is Save Crocker in the picture
12:24:51 From Eduardo Díaz to Everyone:
SAve = Dave
12:25:08 From Eduardo Díaz to Everyone:
SAve = Steve
12:26:09 From Evan Leibovitch to Everyone:
Actually, all the necessary community consultation mechanisms required by ISOC already exist. This issue is not that ISOC needs restructuring, it's that the Board overrode the structures in place.
12:26:11 From Wes Boudville to Everyone:
well, it's good that we still have many veterans of the early 70s still around
12:27:27 From Glenn McKnight to Everyone:
@wes we have looking for speakers in the ISOC Hall of Fame and we will be working on showcasing a number of early pioneers who have past. ie. John Postel etc
12:27:53 From Wes Boudville to Everyone:
sounds great, Glenn
12:28:13 From Glenn McKnight to Everyone:
If anyone has any suggestions please email me
12:29:05 From Glenn McKnight to Everyone:
I was thinking of Tarek Kamel and others
12:30:30 From Glenn McKnight to Everyone:
FYI new Padlet site we creatd
12:30:32 From Glenn McKnight to Everyone:
https://padlet.com/mcknightglenn/icou2scksu0rwk87
12:32:17 From David Mackey to Everyone:
1995 … the good old days. :-)
12:35:24 From Glenn McKnight to Everyone:
FYI
12:35:26 From Glenn McKnight to Everyone:
CANARIE announced today that its Cybersecurity Initiatives Program (CIP) will fund the Canadian Shared Security Operations Centre (CanSSOC) to deliver its Threat Feed service to eligible research and education (R&E) organizations at no cost. The CanSSOC Threat Feed uniquely serves the R&E sector by identifying emerging threats based on intelligence shared among national and global partners.
12:35:41 From Glenn McKnight to Everyone:
https://www.canarie.ca/new-funding-to-deliver-canssoc-cybersecurity-threat-intelligence-to-canadas-research-and-education-sector/
12:36:21 From Judith Hellerstein to Everyone:
That is also why I suggest going to the bank’s website itself and never click on a link even if it looks accurate.
12:36:35 From David Mackey to Everyone:
+1 Judith
12:36:43 From Wes Boudville to Everyone:
yes Judith! INdeed.
12:37:05 From Frank Anati to Everyone:
hi everyone Frank Anati from Ghana https://www.linkedin.com/in/frank-anati
12:37:47 From Eduardo Díaz to Everyone:
@Judith: What Pablo is saying that even if you type your bank url in the browser you may end up in a different website.
12:38:14 From David Mackey to Everyone:
lol, yep that’s true now that I think of it
12:38:29 From Eduardo Díaz to Everyone:
The domain name needs to be DNSSEC signed.
12:38:34 From David Mackey to Everyone:
DNSSEC for me!
12:40:15 From David Mackey to Everyone:
DANE https://en.wikipedia.org/wiki/DNS-based_Authentication_of_Named_Entities
12:42:42 From Glenn McKnight to Everyone:
If anyone interested in IpV6 training created by Nalani Elkins and the Industry Network Technology Council , i will post the training links in the NARALO Facebook page
12:44:29 From Eduardo Díaz to Everyone:
Cache poisoning and man-in -the-middle dns abuses are very hard to detect by the end-user. That is why if are connecting to a web site were you deal with confidential personal information always activate a second way to authenticate you like by sending a code to your phone every time you attempt to loging
12:45:23 From David Mackey to Everyone:
Does anyone have stats on the frequency/impact of cache poisoning and/or MITM attaches?
12:45:24 From Glenn McKnight to Everyone:
@ Ed the recent cyberattack on the Oil pipeline in the US is this a DNS attack?
12:45:31 From David Mackey to Everyone:
attacks
12:46:11 From Eduardo Díaz to Everyone:
Yes, it was ramsonware.
12:46:49 From Glenn McKnight to Everyone:
I think the line is still shut down
12:47:08 From Glenn McKnight to Everyone:
The electrical grid is also at serious risk
12:47:33 From Glenn McKnight to Everyone:
It happened a couple of years ago in Ukraine
12:47:33 From Eduardo Díaz to Everyone:
@Glenn: But those are done using a different vector like emails, compromise webs site or apps that you download into your computer.
12:48:12 From Glenn McKnight to Everyone:
@ed i guess the IT folks at the pipeline are under fire....
12:48:51 From Eduardo Díaz to Everyone:
It could have been an employee connecting a compromised laptop into their network.
12:48:57 From Judith Hellerstein to Everyone:
@eduardo and @ Pablo you can tell that the website has SSL installed and then it is your choice but i have not seen a bank that did not
12:49:00 From Eduardo Díaz to Everyone:
So, who knows
12:49:17 From Judith Hellerstein to Everyone:
My browser will not go to a website if it is not ssl
12:49:50 From Eduardo Díaz to Everyone:
@Judith: eventually all websites will be SSL ready
12:49:55 From Zakaria Abdelwahab to Everyone:
I think, we can improve in the header of Ip address as in IP v6 and can add the confidentiality and integrity in IP v4 instead of complexity additional layer
12:50:09 From David Mackey to Everyone:
@Judith I assume you had to configure your browser to only go to SSL sites, right?
12:50:11 From Eduardo Díaz to Everyone:
Problem is that SSL certificate cost $$ most of the time
12:51:07 From Eduardo Díaz to Everyone:
But any serious corporation doing business in the Internet will have a SSL cert
12:51:36 From David Mackey to Everyone:
@Ed Let’s Encrypt is free, but it’s not always easy to install with all web host providers. https://letsencrypt.org
12:51:39 From Jeff Neuman to Everyone:
SSL Certs have come down in pricing for your basic level cert.
12:51:45 From Judith Hellerstein to Everyone:
@david, no actually i use https everywhere and it does it automatically
12:52:00 From David Mackey to Everyone:
@Judith thx
12:52:10 From Judith Hellerstein to Everyone:
@ed I recommend let’s encrypt very easy to do
12:52:50 From Eduardo Díaz to Everyone:
@DAvid: I use Godaddy an is almost imposible to install and maintain them
12:52:53 From Judith Hellerstein to Everyone:
My hoster did it for me and so I did not have to do it
12:53:16 From David Mackey to Everyone:
@Ed oh yeah, I feel your pain brother. :-(
12:53:22 From Eduardo Díaz to Everyone:
@JUdith: Did you have to pay for the certificate?
12:53:27 From Judith Hellerstein to Everyone:
@eduardo if you use Pair Domains which is independent and a great company and they make everything easy and do it for you
12:53:44 From Judith Hellerstein to Everyone:
No I did not pay anything as i am using lets encrypt
12:54:30 From Judith Hellerstein to Everyone:
I just need to fix my website and make sure I used https:// everywhere or use the domain shortner
12:55:01 From Judith Hellerstein to Everyone:
I do not use go daddy, prefer an independent company that I trust which is pair networks
12:55:14 From Judith Hellerstein to Everyone:
Pair.com they are also a registrar
12:55:20 From Bill Jouris to Everyone:
I never open an email from a gmail or yahoo address that I don't recognize. It *might* be OK, but why take the chance?
12:55:51 From Glenn McKnight to Everyone:
Ed you had a very good little quiz demonstrating good and bad sites illustrated by Pablo
12:55:57 From Judith Hellerstein to Everyone:
@pablo that is dns abuse
12:56:12 From Judith Hellerstein to Everyone:
It was not ed, it was jon Zuck
12:56:14 From Glenn McKnight to Everyone:
@bill now i know why you ignore my email:)
12:56:39 From Bill Jouris to Everyone:
Nah, I recognize you. That was just sloth!
12:56:48 From Glenn McKnight to Everyone:
@judith i know Ed had a different survey as well
12:57:20 From Judith Hellerstein to Everyone:
I think this is called diacriticals but i could be wrong
12:57:34 From David Mackey to Everyone:
This crowd may be interested learning about CIRA’s “Canadian Shield” product. I’m not sure but it may only work for Canadians. I need to do more homework to better understand what’s under the hood.
12:57:38 From David Mackey to Everyone:
https://www.cira.ca/cybersecurity-services/canadian-shield
12:57:43 From Glenn McKnight to Everyone:
will be slideshow be shared so i can convert it to ebook
12:58:15 From Maureen Hilyard to Everyone:
Great presentation Pablo.
12:58:29 From Glenn McKnight to Everyone:
@david perhaps Marita knows about the CIRA product
12:58:36 From David Mackey to Everyone:
Question: Are there any stats for cache poisoning and/or Man In The Middle attacks?
12:58:39 From Maureen Hilyard to Everyone:
And I have enjoyed the chat as well..
12:58:44 From Eduardo Díaz to Everyone:
These days I am turning to google sites for simple web site which they provide the SSL automatically. And you do not have to register your domain with them.
12:59:38 From Glenn McKnight to Everyone:
@maureen we are a chatty bunch
13:00:02 From Maureen Hilyard to Everyone:
I can see that Glenn :)
13:00:35 From Marita Moll to Everyone:
Many thanks for a great presentation. It is always worth reminding all of us of the traps we have to avoid on the internet.
13:00:43 From Judith Hellerstein to Everyone:
I recommend https everywhere by EFF
13:00:45 From Maureen Hilyard to Everyone:
Sometimes anitivirus programmes will indicate if a website is secure or not (with SSL)
13:02:17 From John More to Everyone:
Excellent. Must leave for IGF USA meeting.
13:02:58 From David Mackey to Everyone:
Not a big issue, I was just curious :-)
13:03:26 From Jeff Neuman to Everyone:
In the NCAP discussion group, we are looking at whether Name Collisions can lead to Man in the Middle attacks as well.
13:03:38 From Jeff Neuman to Everyone:
NCAP (Name Collision Analysis Project)
13:03:53 From David Mackey to Everyone:
Thank you Pablo! Great presentation!
13:04:32 From Jeff Neuman to Everyone:
Does NARALO do a prep session for ICANN meetings
13:04:42 From Marita Moll to Everyone:
Bye and thanks
13:04:45 From Herb Waye Ombuds to Everyone:
Take care everyone
13:04:46 From Heidi Ullrich to Everyone:
There will also be a Prep Week and an inter-sessional week. Please join.
13:04:49 From Zakaria Abdelwahab to Everyone:
Thanks all
13:04:53 From Maureen Hilyard to Everyone:
Thanks everyone

  • No labels