Read up on the latest ideas and technologies from companies that sell hardware, software and services. Why Security SaaS Makes Sense Today
Vendor Influence Curves And How You Can Get The Best Value Out Of Your Network
Web Security SaaS: The Next Generation of Web Security
Solve Exchange Storage Problems Once and For All: A New Approach without Stubs or Links
Taking On Demand CRM Integration to the Next Level
Solve Exchange Mailbox Storage Issues Once and for All
How to Beef Up Your Sales Pipeline
Wireless LANs: Is my enterprise at risk?
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
From AT&T's Global Network Operations Center 40 miles west of New York City, CISO Ed Amoroso has as wide a window into the Internet as anyone. With a glance at a two-story wall covered with computer monitors and television screens, Amoroso can tell at any given moment how much e-mail, Web and voice-over-IP traffic is streaming across AT&T's data networks, buzzing its way from business to business, person to person.
The amount of Internet traffic represented in the room is staggering. On the average business day, almost 10 petabytes of data pass through AT&T's networks--more information than the entire Web contained in 2000.
Too bad that almost all of it is garbage.
More than 80 percent of the e-mail coming in to AT&T is spam. About 1 million of the home computers AT&T sees each day are thought to be infected with bots, reaching out to hundreds of other IP addresses far more quickly than any Internet surfer with DSL or a cable modem ever would. Before a worm strikes, technicians see strange spikes of traffic going to normally obscure ports, as malware developers test and tweak their code. A sudden, sharp increase in the amount of Web traffic worldwide could mean breaking news--or a distributed denial-of-service (DDoS) attack being lobbed at a single company halfway around the world.
But Amoroso's window into a rapidly junkifying Internet is largely just that: a window. For the most part, he says, all he can do is sit and watch through the glass, as unwanted or malicious traffic makes its way from point A to point B.
"The standard service-level agreement is that we just push the traffic in and out," he says. "We don't touch it. We can do some upstream and downstream filtering if we see something that will affect our infrastructure, but you getting a spam, or you having some weird protocol aiming at you--I would love to filter that, but it's not that simple."
That's because a telecommunications company's job has always been to pass traffic, not pass judgment. "The starting point [for Internet carriers] is no responsibility whatsoever," says Jonathan Zittrain, professor of Internet Governance and Regulation at Oxford University. "Echoing the original spirit of Internet protocol design, the job of a router is simply to move a packet one hop closer to its destination."
This is the reason for the intense debate over whether to forgo so-called net neutrality, in which Internet carriers treat all packets the same. Even as carriers argue that they should be allowed to prioritize high-revenue content, however, AT&T has been quietly getting permission from its customers to stop certain kinds of traffic altogether. Already, some businesses have signed up to have AT&T filter out spam, viruses, DoS attacks and other malicious activity behind the scenes, before the traffic touches their enterprises. AT&T is now working on the "productization" of similar services for its home customers. In Amoroso's vision of the future, telecom companies will routinely deliver not the diseased melange of today's pure Internet, but a "clean pipe" of good (or at least decent) traffic. Less junk, fewer risks. Here's your bill.
It's a necessary gambit for an ocean-ship of a company (US$63 billion) in an industry that faces new competition and downward pricing pressure, the result of the excess telecommunications capacity laid during the late 1990s and early 2000s. "The carriers are looking for ways to differentiate themselves so they're not just competing on who's got the cheapest bits per second, and they're also looking for ways to stop the decline in dollars per bits per second," says John Pescatore, a vice president at the IT research firm Gartner.
According to Pescatore and other observers, AT&T is farthest along in the journey of U.S. telecom companies to position themselves as security providers--although competitor Verizon took a huge leap forward in May, when it announced that it was acquiring Cybertrust, one of the country's biggest names in information security, for an undisclosed amount. Verizon said the acquisition would add 800 employees to its 300-person information security team, along with expertise in computer forensics and identity management and a solid presence in Asia.
The growing security ambitions of telecom companies could have a profound impact on how "security" is packaged and sold--by standalone security companies or by network or IT providers; to CSOs as standalone services or to CIOs within a bundle of other services; as products or in a software-as-a-service model. What's more, the outcome of what AT&T is attempting could influence the very future of the Internet as a free and unfettered, if increasingly dangerous, communications platform. The question is whether the strategy will pay off--whether AT&T's vast customer base really wants to pay extra for an Internet as safe, banal and micromanaged as a shopping mall.
Bruce Schneier, whose own security company was purchased last year by the United Kingdom's largest telecom carrier, BT, says that right now, it's not the telecom industry's role to stop bad traffic. But if a telecom company can make it profitable to do so, that role will change. And fast.
"They'll do it if it makes them money," says Schneier, chief technology officer of BT Counterpane. Until then, he believes, Internet carriers have little incentive to clean up the Internet. Why should they bother? "Bandwidth is cheap."
Computerworld Member Login
Discover how SOA can create smarter outcomes for your business.
Attend and learn:
- How SOA is helping leading companies to become more agile
- Where you should be applying SOA processes in your company
- The top SOA implementation mistakes to avoid
Click here for more information.
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
Fujitsu PC targets Today's Young Adults with the release of the L series 2008-10-14 12:40:00+10
RSA survey shows employees’ everyday behaviours puts sensitive business information at risk 2008-10-14 11:29:00+10
Sound Alliance Group expands with acquisition of Mess+Noise 2008-10-14 08:48:00+10
Sterling Commerce Introduces New Managed File Transfer Capabilities That Cuts Server Change Management Time in Half 2008-10-14 08:41:00+10
Simms Exclusive Distributor of Cygnett MP3 Accessories 2008-10-14 08:10:00+10
Solve Exchange Mailbox Storage Issues Once and for All
Join industry expert Bob Spurzem and Chuck Arconi of Fox Hollow to discover how to reduce Exchange total storage and keep it at a manageable level. Learn how Exchange storage growth can be contained without sacrificing security and accessibility.









