Merit Network
Can't find what you're looking for? Search the Mail Archives.
  About Merit   Services   Network   Resources & Support   Network Research   News   Events   Home

Discussion Communities: Merit Network Email List Archives

North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: lawful intercept/IOS at BlackHat DC, bypassing and recommendations

  • From: Christopher Morrow
  • Date: Thu Feb 04 17:42:37 2010

On Thu, Feb 4, 2010 at 5:26 PM, Crist Clark <Crist.Clark@globalstar.com> wrote:

>> this seems like much more work that matt blaze's work that said:
> "Just
>> send more than 10mbps toward what you want to sneak around... the
>> LEA's pipe is saturated so nothing of use gets to them"
>
> The Cross/XForce/IBM talk appears more to be about unauthorized
> access to communications via LI rather than evading them,
>
>  "...there is a risk that [LI tools] could be hijacked by third
>   parties and used to perform surveillance without authorization."
>
> Of course, this has already happened,

right... plus the management (for cisco) is via snmp(v3), from
(mostly) windows servers as the mediation devices (sad)...  and the
traffic is simply tunneled from device -> mediation -> lea .... not
necessarily IPSEC'd from mediation -> LEA, and udp-encapped from
device -> mediation server.

>  http://en.wikipedia.org/wiki/Greek_telephone_tapping_case_2004-2005

yea, good times... that's really just re-use of the normal LEA hooks
in all telco phone switch gear though... not 'calea features' in
particular.

-chris





Discussion Communities


About Merit | Services | Network | Resources & Support | Network Research
News | Events | Contact | Site Map | Merit Network Home


Merit Network, Inc.