日批在线视频_内射毛片内射国产夫妻_亚洲三级小视频_在线观看亚洲大片短视频_女性向h片资源在线观看_亚洲最大网

OPINION> Commentary
Service providers must lead Net security
By Esther Dyson (China Daily)
Updated: 2009-03-26 07:47

Viruses, phishing, spyware, spam, denial-of-service attacks, botnets you have probably heard these words, and perhaps even suffered from what they signify, with or without knowing it.

I'd like to lay out a simple path to addressing (not resolving) these security problems, one that does not require agreement among all governments (or people) on what really constitutes a crime, much less a global police force or unenforceable global treaties. If we can increase security in general, then governments can focus on the real criminals.

A better approach is to view computer security as an issue of public health and economics, in which people can protect themselves but must pay for the costs they impose on others. We need to enable people to defend themselves against others; prevent innocent, well-meaning people from becoming infected and harming others; and reduce the incentives and ability of the ill-intentioned to do harm.

That sounds like a lot of different challenges. But there are effective approaches to each of them that do not require tracking everyone online, or requiring IDs for every interaction. Tracking user IDs will not enable us to catch or stop bad guys, and it will render the Internet impossible to use. We can't save cyberspace by destroying its openness.

To implement effective security, the entities best equipped to do so, the Internet service providers, must take the lead. They are technically savvy organizations with the ability (more or less) to protect users and detect abusers; they have a direct (though impersonal) relationship with their users; and they compete for users' business, so that, unlike governments, they will suffer if they perform badly.

The ISPs (rather than governments) should provide basic security - anti-virus, anti-phishing, anti-spam, and the like - as a regular feature of consumer Internet services. This is not hard to do. A number of anti-virus companies compete to offer consumer security services; each ISP could select one, or offer its customers a choice of three, for example. The trick is to get consumers to use these tools - which will require an awareness campaign along the lines of public health messages. The result should be something closer to widespread hand washing than to a system of acute-care hospitals.

As for spam, ISPs (including mail service providers) could limit their users to, say, 100 emails a day. For more, you would have to pay or at least post a security bond, or pass some good behavior test.

At the same time, all ISPs should implement an email ID system (there are two good standards, called Domain Keys and SPF). This is not to track everyone's mail. ISPs would throttle traffic from ISPs that did not join the security collective, and pretty soon their customers would complain, forcing them either to join or find themselves relegated to the underworld, from which it would be hard to launch attacks because no one would accept their traffic.

As for anti-phishing and malware downloads, there are a number of services that track "bad" sites and warn users off. Users can still go where they want, but at least there are signposts warning that they are entering a dangerous neighborhood.

Google does this in its search results, working with StopBadware.org (I am an advisory board member), and both Mozilla Firefox and Microsoft's Internet Explorer offer similar protections. In all cases, adventurous users or professionals can overcome the paternalism, but only by paying what amounts to liability insurance, for the risks they impose on the system.

The point is to create economic incentives to reduce cybercrime. Real criminals won't be deterred, but such a system would prevent the rest of us from being pulled along or becoming victims. With fewer victims, crime will pay less.

There are several reasons why this has not yet happened. The first is inertia, combined with (or disguised as) idealism - the mistaken idea that the Internet should be free not just for speech, but also from payment. Yet it costs something to maintain an infrastructure that keeps people safe.

Indeed, cost - both to users and to ISPs - is the second obstacle. The challenge is to acknowledge the costs (as we are now doing with pollution) and assign them to people who can - and can be compelled to - pay for them. After all, we accept the costs of police forces and health care, including not just hospitals, but also clean water, safe food, etc.

So how do we make this happen? ISPs need to pass these costs on to their customers. But they won't, because they compete mostly on price. So customers need to demand security as part of their service, while ISPs need to shun ISPs that don't comply.

To help things along, someone should file a lawsuit - not too many! - against ISPs who tolerate misbehavior. The targets should be ISPs that willfully serve criminal customers, refusing to deal with complaints to the point that ignorance is no longer a legitimate excuse.

But ISPs' costs also include warning people away from bad sites, which requires a due-process system to notify owners of compromised websites - so that they can fix them or realize they have been exposed. Such a system is relatively expensive to manage, but it is cheaper than the costs of not having it.

These changes would not create some digital nervous system with a centralized brain that could solve all problems. Instead, they would result in something like an immune system of competing ISPs and evolving security services, local and omnipresent. That would vastly improve the overall computer-security situation: Ordinary people would feel secure and law enforcement and security specialists could focus on the biggest threats.

The author is chairman of EDventure Holdings, and is an active investor in a variety of start-ups around the world. Project Syndicate

(China Daily 03/26/2009 page9)

主站蜘蛛池模板: 日韩一区二区视频在线 | 男人天堂网av | 欧美成人免费视频 | 在线观看视频亚洲 | 51xx午夜影福利 | 中文字幕日本 | 免费国产黄色 | 殴美一级片 | 91在线成人 | 99久久精品一区 | 国产在线综合视频 | 成人一级黄色 | 91在线观看免费 | 国产一二区视频 | 4虎最新网址 | 黄色一级大片免费版 | 自拍偷拍 亚洲 | 亚洲午夜18毛片在线看 | 国产精品亚洲成在人线 | 国产精选视频在线观看 | 久久久久久久久久久网站 | 亚洲视频免费 | 国产成人精品白浆久久69 | 日韩在线视频一区 | 四虎成人在线视频 | 欧美日韩国产不卡 | 亚洲国产精品久久久久久久 | 色呦呦精品| 亚洲欧美一区二区三区四区 | 在线看一级片 | 最新国产拍偷乱偷精品 | 天堂中文字幕在线 | 日韩av免费在线看 | 免费av高清 | 日韩美女av在线 | 潘金莲一级淫片aaaaaa播放1 | 亚洲日本中文字幕在线 | 91亚洲综合| 婷婷综合激情网 | 成人免费在线观看网站 | 狠狠2019|