issue number 70 thought for the week - packet pushers · this is why i think network security, as a...

18
Why yes, I will have more pie. View this email in your browser IN THIS WEEK'S ISSUE: How Do You Learn?; Network Security In Decline. Hey, turn on those images, they might be amusing. Or not. Probably not. But it's worth a try. Table of Contents (aka The Project Plan) 1. How Do You Learn? (An Honest Question!) Sponsor: A10 Networks 2. Network Security In Decline Sponsor: LiveAction Thanks, Internet Internets Of Interest Product News PacketPushers.net - The Last Five Quick Survey: The Best Pie Last Issue's Survey Results Issue Number 70 11/22/2017 The "Learning" issue. Thought For The Week: "The leftovers are my favorite part."

Upload: others

Post on 22-Jun-2020

0 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Why yes I will have more pie View this email in your browser

IN THIS WEEKS ISSUE How Do You Learn Network Security In Decline Heyturn on those images they might be amusing Or not Probably not But its worth atry

Table of Contents (aka The Project Plan)

1 How Do You Learn (AnHonest Question)Sponsor A10 Networks2 Network Security In DeclineSponsor LiveActionThanks InternetInternets Of Interest Product NewsPacketPushersnet - The LastFiveQuick Survey The Best PieLast Issues Survey Results

Issue Number 70

11222017

The Learning issue

Thought For The WeekThe leftovers are my favorite part

1 How Do You Learn (AnHonest Question)by Ethan Banks Before you read this understand that it comes with a bit ofresponsibility on your part Irsquom asking you to provide us with feedbackon how you learn in our distracted world A major initiative at PacketPushers is to create deeper focused presentations on topics importantin the world of IT architecture The question is how best tocommunicate that information

As an offshyagainshyonshyagain technical instructor I often consider how bestto visually support what Irsquom teaching Should I have a massive slide deck that itemizes everything I want tocommunicate Or should I limit supporting visuals Of late I tend towards sparser supporting slides I put just enoughinformation on a slide so that the audience knows where we are in thediscussion and can visualize challenging concepts Only rarely do I use text walls complex builds or multishylayereddiagrams Right or wrong my philosophy behind this approach is as follows

1 I want people to focus I believe people can focus on slides or onwhatrsquos being said but not both Focusing on whats being said ismore crucial in that effective instruction builds as it progressesTherersquos a train of thoughtshyshya story arc To understand the storyyou need to stay tuned in not tune out as a new slide issues ameat CPU interrupt to process

2 I prefer people take notes Thats because for me the mosteffective way to ingest information is to take notes I type majorpoints and subshypoints of the material restating in my own wordswhat the instructor is sharing I often generate hundreds of wordsper halfshyhour of lecture In this way I force myself to comprehend the information in realtime I do not rely on slides to make up for my lack of timelyattention I have tried the timeshyshifted approach but I find thatldquolaterrdquo never comes

3 I hope to provoke questions Perhaps some view technicalinstruction as a oneshytoshymany format where the one talks and themany shut up Thatrsquos true but only to a point Understanding anew technical fact will often raise questions about things youalready know making technical instruction a twoshyway street If yoursquore half paying attention half browsing Amazon becauseyou plan to run through the slides later you wonrsquot achieve thedepth of focus required for good questions to materialize in yourmind

And Now Back To YouDespite my point of view I worry that my version of slideware needsan upgrade for effective online learning and that I should be includingmore visual aids to bring points home Assuming Irsquom right I intend tocreate learning modules using three key elements

1 Short video series To gain all of the knowledge yoursquoll have towatch all of the videos Each video will cover a single majorconcept in no more than 8 minutes In this way you can fitindividual videos into your week whenever is convenienteventually getting through the entire series

2 Sparse slides supported by live whiteboarding or screen captureI can video capture from my tablet Paired with a stylus and

drawing app a tablet becomes a whiteboard My thought is to talkthrough a slide to introduce a concept and then illustrate theconcept with a whiteboard drawing Alternatively I can screencap a GUI or CLI

3 Audio instruction Over the top of the light slides and heavyscreen captures you will hear talkingshyshythe story arc Sharing withyou whatrsquos being discussed from my point of view

If yoursquore keen on this sort of content let us know your thoughts via thissimple form Herersquos an idea of what wersquod like to get your feedback on

In principle would a format like this work for you

Do you think you need ldquoheavyrdquo slides Do you think you needslides at all in this context Why or why not (For instancemaybe a title in the lower third of the screen would be goodenough for you)

Do you learn effectively with the whiteboard method where a livedrawing is being generated to illustrate a concept

Is it especially helpful to see GUI and CLI for concepts (saylearning about how spanningshytree works in a vendor agnosticway) or just for specific tasks (because you want to learn avendorshyspecific configuration)

In what other ways do you learn something technical so that itsticks with you

Sponsor A10 NetworksUncover Hidden Threats In Encrypted Traffic Bad actors and malicious insiders are concealing threats in encryptedtraffic in an attempt to infiltrate networks or steal sensitive data Theirrationale if itrsquos out of sight itrsquos out of mind Catch A10 on November 27ths ldquoNetwork Breakrdquo hosted by Greg Ferroand Drew ConryshyMurray and learn why visibility into encrypted trafficis imperative and how A10 Thunder SSLi ensures these shieldedthreats donrsquot pass into or out of your network A10 Thunder SSLi is dedicated decryption solution that decryptsenterprise traffic and enables security devices to analyze that traffic

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 2: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

1 How Do You Learn (AnHonest Question)by Ethan Banks Before you read this understand that it comes with a bit ofresponsibility on your part Irsquom asking you to provide us with feedbackon how you learn in our distracted world A major initiative at PacketPushers is to create deeper focused presentations on topics importantin the world of IT architecture The question is how best tocommunicate that information

As an offshyagainshyonshyagain technical instructor I often consider how bestto visually support what Irsquom teaching Should I have a massive slide deck that itemizes everything I want tocommunicate Or should I limit supporting visuals Of late I tend towards sparser supporting slides I put just enoughinformation on a slide so that the audience knows where we are in thediscussion and can visualize challenging concepts Only rarely do I use text walls complex builds or multishylayereddiagrams Right or wrong my philosophy behind this approach is as follows

1 I want people to focus I believe people can focus on slides or onwhatrsquos being said but not both Focusing on whats being said ismore crucial in that effective instruction builds as it progressesTherersquos a train of thoughtshyshya story arc To understand the storyyou need to stay tuned in not tune out as a new slide issues ameat CPU interrupt to process

2 I prefer people take notes Thats because for me the mosteffective way to ingest information is to take notes I type majorpoints and subshypoints of the material restating in my own wordswhat the instructor is sharing I often generate hundreds of wordsper halfshyhour of lecture In this way I force myself to comprehend the information in realtime I do not rely on slides to make up for my lack of timelyattention I have tried the timeshyshifted approach but I find thatldquolaterrdquo never comes

3 I hope to provoke questions Perhaps some view technicalinstruction as a oneshytoshymany format where the one talks and themany shut up Thatrsquos true but only to a point Understanding anew technical fact will often raise questions about things youalready know making technical instruction a twoshyway street If yoursquore half paying attention half browsing Amazon becauseyou plan to run through the slides later you wonrsquot achieve thedepth of focus required for good questions to materialize in yourmind

And Now Back To YouDespite my point of view I worry that my version of slideware needsan upgrade for effective online learning and that I should be includingmore visual aids to bring points home Assuming Irsquom right I intend tocreate learning modules using three key elements

1 Short video series To gain all of the knowledge yoursquoll have towatch all of the videos Each video will cover a single majorconcept in no more than 8 minutes In this way you can fitindividual videos into your week whenever is convenienteventually getting through the entire series

2 Sparse slides supported by live whiteboarding or screen captureI can video capture from my tablet Paired with a stylus and

drawing app a tablet becomes a whiteboard My thought is to talkthrough a slide to introduce a concept and then illustrate theconcept with a whiteboard drawing Alternatively I can screencap a GUI or CLI

3 Audio instruction Over the top of the light slides and heavyscreen captures you will hear talkingshyshythe story arc Sharing withyou whatrsquos being discussed from my point of view

If yoursquore keen on this sort of content let us know your thoughts via thissimple form Herersquos an idea of what wersquod like to get your feedback on

In principle would a format like this work for you

Do you think you need ldquoheavyrdquo slides Do you think you needslides at all in this context Why or why not (For instancemaybe a title in the lower third of the screen would be goodenough for you)

Do you learn effectively with the whiteboard method where a livedrawing is being generated to illustrate a concept

Is it especially helpful to see GUI and CLI for concepts (saylearning about how spanningshytree works in a vendor agnosticway) or just for specific tasks (because you want to learn avendorshyspecific configuration)

In what other ways do you learn something technical so that itsticks with you

Sponsor A10 NetworksUncover Hidden Threats In Encrypted Traffic Bad actors and malicious insiders are concealing threats in encryptedtraffic in an attempt to infiltrate networks or steal sensitive data Theirrationale if itrsquos out of sight itrsquos out of mind Catch A10 on November 27ths ldquoNetwork Breakrdquo hosted by Greg Ferroand Drew ConryshyMurray and learn why visibility into encrypted trafficis imperative and how A10 Thunder SSLi ensures these shieldedthreats donrsquot pass into or out of your network A10 Thunder SSLi is dedicated decryption solution that decryptsenterprise traffic and enables security devices to analyze that traffic

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 3: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

2 I prefer people take notes Thats because for me the mosteffective way to ingest information is to take notes I type majorpoints and subshypoints of the material restating in my own wordswhat the instructor is sharing I often generate hundreds of wordsper halfshyhour of lecture In this way I force myself to comprehend the information in realtime I do not rely on slides to make up for my lack of timelyattention I have tried the timeshyshifted approach but I find thatldquolaterrdquo never comes

3 I hope to provoke questions Perhaps some view technicalinstruction as a oneshytoshymany format where the one talks and themany shut up Thatrsquos true but only to a point Understanding anew technical fact will often raise questions about things youalready know making technical instruction a twoshyway street If yoursquore half paying attention half browsing Amazon becauseyou plan to run through the slides later you wonrsquot achieve thedepth of focus required for good questions to materialize in yourmind

And Now Back To YouDespite my point of view I worry that my version of slideware needsan upgrade for effective online learning and that I should be includingmore visual aids to bring points home Assuming Irsquom right I intend tocreate learning modules using three key elements

1 Short video series To gain all of the knowledge yoursquoll have towatch all of the videos Each video will cover a single majorconcept in no more than 8 minutes In this way you can fitindividual videos into your week whenever is convenienteventually getting through the entire series

2 Sparse slides supported by live whiteboarding or screen captureI can video capture from my tablet Paired with a stylus and

drawing app a tablet becomes a whiteboard My thought is to talkthrough a slide to introduce a concept and then illustrate theconcept with a whiteboard drawing Alternatively I can screencap a GUI or CLI

3 Audio instruction Over the top of the light slides and heavyscreen captures you will hear talkingshyshythe story arc Sharing withyou whatrsquos being discussed from my point of view

If yoursquore keen on this sort of content let us know your thoughts via thissimple form Herersquos an idea of what wersquod like to get your feedback on

In principle would a format like this work for you

Do you think you need ldquoheavyrdquo slides Do you think you needslides at all in this context Why or why not (For instancemaybe a title in the lower third of the screen would be goodenough for you)

Do you learn effectively with the whiteboard method where a livedrawing is being generated to illustrate a concept

Is it especially helpful to see GUI and CLI for concepts (saylearning about how spanningshytree works in a vendor agnosticway) or just for specific tasks (because you want to learn avendorshyspecific configuration)

In what other ways do you learn something technical so that itsticks with you

Sponsor A10 NetworksUncover Hidden Threats In Encrypted Traffic Bad actors and malicious insiders are concealing threats in encryptedtraffic in an attempt to infiltrate networks or steal sensitive data Theirrationale if itrsquos out of sight itrsquos out of mind Catch A10 on November 27ths ldquoNetwork Breakrdquo hosted by Greg Ferroand Drew ConryshyMurray and learn why visibility into encrypted trafficis imperative and how A10 Thunder SSLi ensures these shieldedthreats donrsquot pass into or out of your network A10 Thunder SSLi is dedicated decryption solution that decryptsenterprise traffic and enables security devices to analyze that traffic

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 4: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

drawing app a tablet becomes a whiteboard My thought is to talkthrough a slide to introduce a concept and then illustrate theconcept with a whiteboard drawing Alternatively I can screencap a GUI or CLI

3 Audio instruction Over the top of the light slides and heavyscreen captures you will hear talkingshyshythe story arc Sharing withyou whatrsquos being discussed from my point of view

If yoursquore keen on this sort of content let us know your thoughts via thissimple form Herersquos an idea of what wersquod like to get your feedback on

In principle would a format like this work for you

Do you think you need ldquoheavyrdquo slides Do you think you needslides at all in this context Why or why not (For instancemaybe a title in the lower third of the screen would be goodenough for you)

Do you learn effectively with the whiteboard method where a livedrawing is being generated to illustrate a concept

Is it especially helpful to see GUI and CLI for concepts (saylearning about how spanningshytree works in a vendor agnosticway) or just for specific tasks (because you want to learn avendorshyspecific configuration)

In what other ways do you learn something technical so that itsticks with you

Sponsor A10 NetworksUncover Hidden Threats In Encrypted Traffic Bad actors and malicious insiders are concealing threats in encryptedtraffic in an attempt to infiltrate networks or steal sensitive data Theirrationale if itrsquos out of sight itrsquos out of mind Catch A10 on November 27ths ldquoNetwork Breakrdquo hosted by Greg Ferroand Drew ConryshyMurray and learn why visibility into encrypted trafficis imperative and how A10 Thunder SSLi ensures these shieldedthreats donrsquot pass into or out of your network A10 Thunder SSLi is dedicated decryption solution that decryptsenterprise traffic and enables security devices to analyze that traffic

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 5: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Sponsor A10 NetworksUncover Hidden Threats In Encrypted Traffic Bad actors and malicious insiders are concealing threats in encryptedtraffic in an attempt to infiltrate networks or steal sensitive data Theirrationale if itrsquos out of sight itrsquos out of mind Catch A10 on November 27ths ldquoNetwork Breakrdquo hosted by Greg Ferroand Drew ConryshyMurray and learn why visibility into encrypted trafficis imperative and how A10 Thunder SSLi ensures these shieldedthreats donrsquot pass into or out of your network A10 Thunder SSLi is dedicated decryption solution that decryptsenterprise traffic and enables security devices to analyze that traffic

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 6: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

without compromising performance In this podcast A10 Networks Senior Systems Engineer MichaelWheeler addresses

The importance of SSL decryptionThe security challenges of encrypting dataPitfalls of decrypting with point solutions like firewallsHow to maintain high performance and scalability

Listen to this episode and learn how you can eliminate the blind spot inyour network and wipe out encrypted threats Learn how much you could save with a dedicated decryption solutiontry our ROI Calculator To read more about the power of A10 ThunderSSLi please see our data sheet

2 Network Security In Declineby Greg FerroThe era of ldquonetwork securityrdquo is over For a while You cannot trust thenetwork there is no perimeter and data in motion must have integrity

Security Vs NetworkingFor the last 20 years perimeter security has been a foundationalassumption of enterprise IT design You establish a perimeter withfirewalls monitor it with security appliances and hope that nothinggets through This caused all sorts of problems The most fundamental designprinciple of the TCP and UDP protocols is that a packet will traverse

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 7: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

the network end to end without modification The CRC check ensuresthat data hasnt been corrupted

Network ServicesNetwork makers have been keen to add value to their products butonce you have connected everything together there isnt much moreto do The last generation of network innovation happened in the late1990s when Tag SwitchingMPLS arrived So vendors began to exploit weaknesses in TCPUDP and startedselling middleboxes Network Address Translation (NAT) broke thenetwork path (path asymmetry) but added value for public IPaddressing and Internet access in the late 1990s Proxy servers exploited HTTP via the lack of encryption Byintercepting the packet flow and reading the clear text HTTP payloadproxy servers modified the content Because caching (bandwidth reduction) was a key feature the proxywas popular when bandwidth was limited When bandwidth got cheapand easy the proxy pivoted to become a security appliance for usermonitoring and malware scanning The midshy2000s trend for QoS everywhere also breaks the end to endmodel TCP and UDP have flow control mechanisms that worked finein uncontrolled multishyhop networks but failed when QoS was appliedon only some devices or worse applied erratically across differentsoftwarehardware combinations

The Pain Of Value AddAll of these network services were intended to add value For somethis was true but mostly this has created larger problems such as

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 8: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

reduced security Google has been promoting QUIC to replace HTTP over TCP Insimple terms QUIC is HTTP over UDP (more correctly it is HTTP2over UDP) Why TCP is less relevant now that network quality is high Packet drops arerare so retransmissions are statistically rare TCP wastes hundreds ofmilliseconds to create a TCP session using the threeshyway handshakeMeanwhile UDP is faster when passing through NAT rebinding whichreduces endshytoshyend path latency During field research Google found that HTTP2 was blocked as anunsupported protocol by a substantial number of Internet middleboxesUDP is largely ignored and more likely to pass untouched

Was Value AddedI see this a story of change being prevented by value addingWhenever we place security in the network we break basic designprinciples and create problems We know that building and securing a perimeter isnt working anymoreJust look around The cost and ubiquity of public WANInternet ismaking private networks rapidly obsolete Where can you build aperimeter What network security can you apply to manage risk Every network filter inspection protection and mediation tool that weuse creates technical debt In part this debt is quickening the demiseof private WANMPLS networks as their complexity and operationaldifficulty is not worth solving It seem to me that few SDN vendors aretaking on that challenge because its not worth winning

The EtherealMind View

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 9: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

This is why I think Network Security as a principle is on hold Thependulum is swinging towards endpoint security Stop laughing I know endpoint security has been a disaster whileMicrosoft dominated the endpoint But if I look at Apple iOSMacOSIm seeing an endpoint that is secure enough Apps are reasonablysafe reliably updated and well controlled For contrast look at GoogleAndroid and its litany of security failures Itrsquos going to take a while but I think that network security will declineover the next few years

ReferencesLink Bufferbloat on the Internet backbone

Link The QUIC Transport Protocol

Sponsor LiveActionTurn SD-WAN Disruption into BusinessTransformation with Machine Learning Insights The ROI in adopting an SDshyWAN intelligent overlay to a carriershyagnostic transport is now clear but the added complexity can causedelays and potentially increase risks to these strategic initiatives Check out a Webcast with LiveActionrsquos CTO John Smith and thePacket Pushers Ethan Banks as they discuss best practices to reducethe complexity of SDshyWAN technology adoption provide serviceassurance governance with proactive insights and deliver promisedperformance enhancement for a better application experience

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 10: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Ethan and John share SDshyWAN market feedback and use cases andwalk through a platform demonstration highlighting three key enablingtechnologies

1 Realshytime network visualization and topology maps for completesituational awareness

2 Continuous machine learning from customer data to provide realshytime lsquohuman in the looprsquo insights for better service management

3 Dashboard reports and systems integration for serviceassurance governance

We look forward to sharing our customers success with you Watch now Get ready for SDshyWan 3 Challenges to Consider as You ApproachSDshyWAN Monitoring

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 11: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Thanks InternetAll kinds of amusing things wash up in our social feeds Heresone that caught my eye

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 12: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Join the Packet Pushers new membership program and get benefitsincluding our weekly Link Propagation newsletter and more Click herefor details and to sign up

Internets Of Interest A collection of pre-loved links that might interest you Pre-lovedbecause I liked them enough to put into this newsletter Its not true love By Greg Ferro and Drew Conry-Murray

RIP net neutrality FCC chair releases plan toderegulate ISPs Here we go again Jon Brodkin at Ars Technica who has done a greatjob of covering Net Neutrality over the past few years reports on thelatest effort by the FCC to remove Net Neutrality protections anddramatically loosen regulations on cable companies carriers and

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 13: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

telcos The FCC will vote on a plan to reverse the commissions classificationof home and mobile ISPs as common carriers eliminating the legaljustification for the net neutrality rules and numerous other consumerprotections according to the article If youd like to see Net Neutrality preserved you know the drill callyour representatives and demand that consumer protections be kept inplace and ask your family and friends to do the same LINK

Join the Datanauts on their missionto bust silos and explore the latestdevelopments in cloudconvergence data centers andmore Sign up free here

Network Break is a weeklypodcast that delivers news ampanalysis on the networking industryin a fun fastshypaced style Subscribehere

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 14: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Product News Find out about interesting new products or get essential informationabout things you might already be using

Research Towards an Open DisaggregatedNetwork Operating System ndash ATampT ATampTrsquos white paper ldquoTowards an Open Disaggregated NetworkOperating Systemrdquo is breathtaking in its scope I believe its goal is tocreate a community to build and maintain a universal NOS forhardware and software network devices LINK

LiveAction Adds Machine Learning To ItsNetwork Performance Management Software LiveAction has announced version 7 of its LiveNX networkperformance management software

LiveAction gathers and analyzes flow records SNMP data and otherinformation to give network operators a detailed view of networktopology and endshytoshyend visibility into how applications are performingon the network

LINK

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 15: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Spectra7 And Smaller Active Coaxial CablesIrsquove been idly wondering when coax cables will shrink to a smallerdiameter The weight of the coax alone causes some amount of failurewhen people donrsquot use cable management

Spectra7 has released a thinnershygauge coax cable

LINK

Briefings In Brief A New Packet PushersPodcast Want more tech news Subscribe to our newest podcast channelBriefings In Brief We take five minutes or less to summarize andanalyze tech news product announcements or other interesting itemsthat come across our desks LINK

Recent PodcastsThe last five podcasts published on Packet Pushers

PacketPushersnet - The Last FiveNetwork Break 162 Facebook Opens Routing Platform HPE Targets PrivateCloud Show 366 Inside Cisco EVPN (Sponsored) Datanauts 110 The Future Of Storage

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 16: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Network Break 161 Broadcom Bids For Qualcomm Level 3rsquos BGP Blues Show 365 You Canrsquot Do That In Enterprise Networks

Full Stack Journey tells personalstories about the ongoing quest tobecome a full stackengineer Subscribe today

Priority Queue tackles niche andnerdy tech topics and cuttingshyedgeresearch projects Subscribe here

Quick Survey The Best Pie The annual American feast of thankfulness gluttony and shopping isupon us What kind of pie is your favorite to have at Thanksgiving Orif youre not from the US what is your favorite pie to have on aThursday in November A Apple B Pecan

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 17: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

C Pumpkin D Sweet potato E Raspberry Pi (sorry couldnt resist) F Other

Last Issues Survey Results

Did We Miss Something Got an link or an article to share Email it tohumaninfrastructurepacketpushersnet

The End Bit

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences

Page 18: Issue Number 70 Thought For The Week - Packet Pushers · This is why I think Network Security, as a principle, is on hold. The pendulum is swinging towards endpoint security. Stop

Sponsorship and Advertising - Send an email to humaninfrastructurepacketpushersnet for more information Youcould reach 5013 people Human Infrastructure is bi-weekly newsletter with view perspectives and opinions It is edited andpublished by Greg Ferro and Drew Conry-Murray from PacketPushersnet If youd like to contribute emailDrew at drewconrymurraypacketpushersnet We dont give away your email address or personal details because that would suck Copyright copy 2017 Packet Pushers Interactive LLC All rights reserved unsubscribe from this list update subscription preferences