Aardvark Daily aardvark (ard'-vark) a controversial animal with a long probing nose used for sniffing out the facts and stimulating thought and discussion.

NZ's leading source of Net-Industry news and commentary since 1995
PAYBACK TIME! | Headlines | XML feed | Contact | New Sites | Archives | Job Centre | About
Note: This column represents the opinions of the writer and as such, is not purported as fact
Extension Leads And Proxies 27 March 2003 Edition
Previous Edition | Archives

Please support the sponsor
Sponsor's Message
Most ISPs run, or make use of, a caching proxy server.

If you listen to the ISP, they'll tell you that such devices are a good thing. They make sure that the web-pages you request load more quickly and that the cost of providing you with service is kept to a minimum.

Personally, I'm not a great fan of caching proxy servers and I've said so before in this column.

Caching proxies work by intercepting a user's requests for a web-page and, where possible, serving up a COPY of that page from the local cache-server rather than downloading it again from the original site.


Check Out The Aardvark PC-Based Digital
Entertainment Centre Project

Updated 2-Dec-2002

This all sounds very sensible doesn't it?

After all, if 10,000 users are all going to request CNN's front page to get an American perspective on the war in Iraq, why not just make a local copy and serve it up -- saving all that international traffic (and expense)?

Well, as I've detailed before, there are some problems associated with running a caching proxy server and the results aren't always good news for users.

I can still recall quite vividly how, about five years ago, Xtra's proxy server had a spaz-attack and corrupted its index. The result was that X-rated images started appearing on the pages of otherwise innocent websites. The operators of those websites (some of which were local) were not at all impressed.

The thing is, if caching proxy servers are the good news that ISPs claim they are, why not make them optional so that we can do our own comparisons and draw our own conclusions?

The fact that most ISPs are now forcing their customers to use caching proxies, by transparently integrating them into the path of all international web traffic, kind of leaves you wondering if users really benefit at all doesn't it?

Readers Say
(updated irregularly)
  • Proxy Servers... - Peter
  • Who is to blame?... - Allister
  • Net4u... - Richard
  • ISP Cache is evil... - Philip

    From Yesterday...

  • The Osborne Computer... - Steve
  • Osbornes... - Ian
  • Ultimate Geek Toy... - Barry
  • Thanks for that... - Kane

  • Have Your Say
    So why am I re-hashing old ground today?

    Well if you've been reading the headlines included every day at the foot of this column, you can't help but notice that one small ISP has gotten themselves in a heap of hot water by stealing bandwidth from another by exploiting a poorly configured proxy server.

    According to these reports, Net4U was able to divert a whole heap of its customers own traffic through the proxy server run by Attica Communications.

    This is the equivalent of sneaking into your neighbour's garage late one night and running an extension lead from the power outlet they didn't know was there then running your own lights, heaters and fridge from it.

    In most cases, these proxies are configured to only allow access from within an ISP's own network but it seems that in the case of Attica's, someone had been out to lunch when "security 101" was being taught so it was left wide open.

    So weren't Attica at least a little bit at fault here? Wasn't it their responsibility to lock down their proxy?

    Well, in a word, no.

    If you were to absent-mindedly leave the keys in your car while it was parked in your driveway and then come out to find someone about to start it up and drive away, would you simply say "Ah, you got me -- yes, it's my fault, away you go and have a good day"?

    No, you'd cry "Stop thief" -- and this case is no different.

    However let me add that open proxy servers are a menace and those who unknowingly run them deserve a kick up the backside. The worst of these poorly secured systems provide a wonderful anonymising service for any evil little sod who might want to engage in cracking or other nasty activities.

    When it comes to caching proxy servers I say:

    • Make them optional so that customers get the choice whether to use them or not -- especially if those customers are being charged by the megabyte (as some JetStream users are).
    • Make them secure -- for everyone's sake.

    Do you have an opinion on today's column or want to add something? Have your say

    Yes, You Can Donate
    Although the very kind folks at iHug continue to generously sponsor the publication of Aardvark, the bills still exceed the income by a fairly significant amount. It is with this in mind therefore that I'm once again soliciting donations from anyone who feels they're getting some value from this daily column and news index. I've gone the PayPal way of accepting donations because the time involved in processing a bunch of little credit-card billings sometimes exceeds the monetary value they represent. Just click on the button to donate whatever you can afford. NOTE: PayPal bills in US dollars so don't accidentally donate twice what you were intending :-)

    Contacting Aardvark
    The Best of Aardvark Daily As always, readers are invited to submit their comments on material covered in this column. If you'd like your comments published here then please be sure to use this form and select For Publication.

    Other media organisations seeking more information or republication rights are also invited to contact me.


    Add Aardvark To Your Own Website!
    Got a moment? Want a little extra fresh content for your own website or page?

    Just add a couple of lines of JavaScript to your pages and you can get a free summary of Aardvark's daily commentary -- automatically updated each and every week-day.

    Aardvark also makes a summary of this daily column available via XML using the RSS format. More details can be found here.

    Contact me if you decide to use either of these feeds and have any problems.

    Linking Policy
    Want to link to this site? Check out Aardvark's Linking Policy.

    Did you tell someone else about Aardvark today? If not then do it now!


    Latest
    Security Alerts
    Windows flaw opens PCs to attack
    (CNet - 21/03/2003)

    Buffer Overflow in Microsoft IIS 5.0 (CERT - 18/03/2003)

    Fix issued for critical Samba flaw (TheAge - 17/03/2003)

    Hole found in Sun server software (CNet - 14/03/2003)

    Opera Rushes Out Another Security Fix (iNetNews - 13/03/2003)

    Latest
    Virus Alerts
    E-mail virus exploits war interest  (BBC - 21/03/2003)

    Deloder slowly worms its way on Net
    (CNet - 11/03/2003)

    Linux trojan starts circulating (The Age - 15/01/2003)

    Bookmark This Page Now!

     

    MORE NEWS
    NZL Sites
    IDG.Net.nz
    NZ Netguide
    NZ Herald Tech
    PC World NZ
    Scoop
    NZOOM Technology WordWorx

    AUS Sites
    ZDNet
    Fairfax IT
    Australian IT
    AUS Netguide
    NineMSN Tech
    APC Magazine

    USA Sites
    Wired.com
    CNet
    CNNfn Tech
    TechWeb
    Yahoo Tech
    ZDNet Tech
    USA Today Tech
    7am.com SciTech

    UK Sites
    The Register
    BBC SciTech

     

    My Jet Engines
    Check Out Me And My Jet Engines

    The Day's Top News
    Open in New Window = open in new window
    New Zealand

    Open in New Window Bandwidth bludger a victim of spammer's revenge
    The teen who dobbed Net4U founder Sahil Gupta in to the New Zealand Herald is also the spammer quoted in an earlier story in the newspaper...
    IDG

    Open in New Window National Bank trying to trace online problem
    A glitch affecting some customers of the National Bank's online banking services using broadband connections is also affecting at least one other bank...
    IDG

    Other

    Open in New Window Use misleading domain name, go to jail?
    The U.S. House of Representatives is scheduled to vote Thursday on a proposal that would criminalize using misleading domain names to lure unsuspecting people to sex sites...
    CNet

    Open in New Window Provider pulls Canadian site for posting PoW pics
    The Canadian online news site, YellowTimes.org, was shut down by its hosting company on Monday after it posted content which the provider deemed offensive...
    The Age

    Open in New Window Senator calls for copy-protection tags
    Software, music and movies that employ copy-protection schemes must be prominently labeled with consumer warnings, according to a bill introduced in Congress this week...
    CNet

    Open in New Window PayPal Tightens Transaction Reins
    Message to would-be buyers of postage meters, CB amplifiers, mountain lion parts and speleothems taken from federal land: When you buy your goodies online, you'll have to pay for them with something other than PayPal...
    Wired

    Open in New Window Swedish Worm Writer Nabbed
    Swedish police track down the creator of the Ganda virus, which tried to trick recipients into opening it by offering war-related messages and screensavers. No word on whether the creator got a response to his complaints about his treatment in the Swedish school system...
    Wired

    Australia

    Open in New Window New laws to cut software prices
    COMPUTER games and business software could become cheaper under legislation expected to be passed today by federal parliament...
    Australian IT

    Open in New Window Coffee Club to launch wireless broadband nationwide
    Coffee Club stores throughout Australia will soon have wireless broadband access following a deal with service provider iseek...
    ZDNet

    Other

    Open in New Window Critical Win2K flaw yields multiple attack vectors
    Last week's very serious Windows 2000 vulnerability is far from limited to exploitation through IIS alone...
    The Register

    Open in New Window SMEs disagree on lure of Linux
    New research claiming that small businesses are switching to Linux has been dismissed by the industry, which says that few firms are ditching Microsoft....
    The Register

    Open in New Window Commuters hack wireless networks
    A study from consultancy firm KPMG has found that wireless hacking is most likely to occur during the rush hour...
    BBC

    Open in New Window Anti-war hacking rises dramatically
    More than 20,000 websites have been hacked since the war on Iraq began says one UK-based security firm...
    BBC

    Open in New Window Music and the Net: Take two
    For all the record labels' complaints about online piracy, it's the traditional record stores that have borne the brunt of falling music sales...
    CNet


    Looking For More News or Information?

    Google
    Search WWW Search Aardvark

    Privacy Policy | Copyright © 2003, Bruce Simpson, republication rights available on request

    jet engine page