<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: shutter]]></title>
    <link>http://securityratty.com/tag/shutter</link>
    <description></description>
    <pubDate>Sun, 13 Apr 2008 21:35:30 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Mobile Post: The End of Muni-Fi As We Know It]]></title>
      <link>http://securityratty.com/article/a23432669b90bcd125e041245f945af3</link>
      <guid>http://securityratty.com/article/a23432669b90bcd125e041245f945af3</guid>
      <description><![CDATA[MetroFi's plan to sell or shutter its networks spells end of first muni-Fi era: But it's not the end of municipal...]]></description>
      <content:encoded><![CDATA[<!-- FM Mobile Post Top Icon -->
<script type="text/javascript" src="http://mobileposts.federatedmedia.net/top_icon.js"></script>
<!-- /FM Mobile Post Top Icon --><strong>MetroFi's plan to sell or shutter its networks spells end of first muni-Fi era:</strong> But it's not the end of municipal wireless.<br clear="all">
<!-- FM Mobile Post Widget -->
<script type="text/javascript" src="http://mobileposts.federatedmedia.net/wifinetnews/825/mobile_post.js"></script>
<!-- /FM Mobile Post Widget -->]]></content:encoded>
      <pubDate>Fri, 16 May 2008 11:29:53 +0000</pubDate>
      <category domain="http://securityratty.com/tag/municipal wireless">municipal wireless</category>
      <category domain="http://securityratty.com/tag/networks spells">networks spells</category>
      <category domain="http://securityratty.com/tag/muni-fi era">muni-fi era</category>
      <category domain="http://securityratty.com/tag/metrofi">metrofi</category>
      <category domain="http://securityratty.com/tag/shutter">shutter</category>
      <category domain="http://securityratty.com/tag/plan">plan</category>
      <source url="http://wifinetnews.com/archives/008324.html">Mobile Post: The End of Muni-Fi As We Know It</source>
    </item>
    <item>
      <title><![CDATA[MetroFi Plans Market Exit: Sale or Shutter]]></title>
      <link>http://securityratty.com/article/64f008fcfc8f27ab4b858e3eaa8d471c</link>
      <guid>http://securityratty.com/article/64f008fcfc8f27ab4b858e3eaa8d471c</guid>
      <description><![CDATA[MetroFi will sell its networks, but plans to shutter if there are no buyers: Ah, folks, the trifecta has arrived, and I'm nothing but sad about it. MetroFi's chief Chuck Haas emailed me this evening...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" hspace="5" height="80" width="80" border="0" /><strong>MetroFi will sell its networks, but plans to shutter if there are no buyers:</strong> Ah, folks, the trifecta has arrived, and I'm nothing but sad about it. MetroFi's chief Chuck Haas emailed me this evening with the news that his firm has decided that they will sell their networks in nine cities, including their first cities in the Bay Area (Cupertino, Santa Clara, and Sunnyvale), and their largest muni deployment in Portland, Ore. If no buyers emerge--including the cities in question--Haas said that MetroFi would have a shutdown plan for gradually unlighting the networks.</p>

<p>MetroFi was one of the three most prominent pure play metro-scale Wi-Fi firms, if you count EarthLink's municipal wireless division as a separate operation, and Kite Networks, which was a subsidiary of a larger telecom firm. Each company had made a unique network hardware choice--MetroFi, SkyPilot; Kite, Strix; and EarthLink Tropos plus Motorola--and each had a sort of specialty. Interestingly, a fifth firm, BelAir powers Toronto (a small but super-fast Wi-Fi network) and Minneapolis (the only putatively completed large-city Wi-Fi network), and will be behind Cablevision's nearly $350m New York Wi-Fi plan.</p>

<p>MetroFi was the only major firm to back ad-supported no-fee access, coupled with paid, no-ads service, and higher tiered commercial offerings. They built mostly smaller cities, with Portland being their only real big city win. The firm began with the notion of building Wi-Fi out gradually as a way to provide broadband in communities that lacked service, with no municipal involvement. That plan required sparser networks and typically a home signal booster designed by SkyPilot. (Kite mostly focused on the Southwest; EarthLink on big cities.)</p>

<p>EarthLink was in many ways largely responsible for the mess that all Wi-Fi providers found themselves in last year by offering to build Philadelphia's network back in 2005 at no cost to the city--in fact, paying the city and the local utility fees. That set the stage for nearly all the RFPs that followed where, if EarthLink were a bidder or the city was aware of the alternatives, the notion was that no city dollars would be spent, even if taxpayer money wasn't "at risk"--that is, even if a city could save money by switching current line items in their telecom and data budget to a wireless network.</p>

<p>Haas noted via email that MetroFi has been working towards anchor commitments by cities for nearly two years, but the inertia of those early networks led municipalities to reject those options. In Toledo, where MetroFi had negotiated an anchor commitment, a change in administration led a new mayor to retreat from the plan. </p>

<p>Is there a future for metro-scale Wi-Fi? Yes. With thoughtfully constructed, outdoor-focused deployments centered on municipal purposes, with public access a secondary issue, it seems like these networks could still provide an inexpensive way for relatively high bandwidth compared to the alternative of cell data networks.</p>

<p>However, that advantage is likely short lived in larger markets. The near-future certainty now that there will be multiple provides offering wired broadband speed service starting later this year with Sprint/Clearwire's WiMax, and continuing through into 2012 with significant network buildout by Verizon and AT&T in several bands (including their new 700 MHz holdings).</p>

<p>While Sprint/Clearwire is talking about 120m to 140m homes passed by 2010 with their network, obviously focusing only on major markets, many of the 700 MHz licenses purchased by AT&T and Verizon carry buildout requirements with penalties. So cities outside the top 100 population markets and rural areas will still see some benefit. In those mid-tier markets, there's also the 3.65 GHz band for shared licensed use, which is a model that Azulstar is pursuing with new WiMax deployments, as <strong><a href="http://wifinetnews.com/archives/008313.html">I wrote about recently</a></strong>.</p>

<p>Competition will likely push the cost of mobile broadband far below its $60 per month 2-year contract rate of today, which then would beg the question why a city or county with good commercial coverage would need to build its own Wi-Fi network. There are still plenty of reasons to build dedicated, first-responder 4.9 GHz public safety networks, of course.</p>

<p>I've always described Wi-Fi on a metropolitan scale as the <em>best, worst technology</em>. The best, because everyone has Wi-Fi in their laptops and increasingly in handhelds and gadgets. The worst, because the technology is absolutely not designed for the purpose, unlike CDMA and GSM evolved cell standards and mobile WiMax.</p>

<p>It's possible that in the long term, looking five years out, that Wi-Fi on a metro-scale will only be needed in small towns, odd markets, and for highly particular purposes. Or, perhaps in a bit of irony, where companies like Cablevision feel Wi-Fi is necessary to retain the loyalty of their highly wired customer base.</p>]]></content:encoded>
      <pubDate>Thu, 15 May 2008 17:47:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/metro-scale wi-fi">metro-scale wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/large-city wi-fi network">large-city wi-fi network</category>
      <category domain="http://securityratty.com/tag/wi-fi providers">wi-fi providers</category>
      <category domain="http://securityratty.com/tag/wi-fi network">wi-fi network</category>
      <category domain="http://securityratty.com/tag/york wi-fi plan">york wi-fi plan</category>
      <category domain="http://securityratty.com/tag/city">city</category>
      <category domain="http://securityratty.com/tag/city dollars">city dollars</category>
      <category domain="http://securityratty.com/tag/super-fast wi-fi network">super-fast wi-fi network</category>
      <source url="http://wifinetnews.com/archives/008322.html">MetroFi Plans Market Exit: Sale or Shutter</source>
    </item>
    <item>
      <title><![CDATA[EarthLink Will Shutter Philadelphia Network, Company Says]]></title>
      <link>http://securityratty.com/article/5a938e0c429c5b2b2511d2b537800149</link>
      <guid>http://securityratty.com/article/5a938e0c429c5b2b2511d2b537800149</guid>
      <description><![CDATA[It's the end of the cycle, folks: The first shall be last and the last shall, apparently, be first to sue. The Philadelphia Wi-Fi network will be shuttered under plans by EarthLink that they announced...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" border="0" hspace="5" /><a href="http://news.yahoo.com/s/ap/20080513/ap_on_hi_te/wireless_philadelphia_2"><strong>It's the end of the cycle, folks:</strong></a> The first shall be last and the last shall, apparently, be first to sue. The Philadelphia Wi-Fi network will be shuttered under plans by EarthLink that they announced via <a href="http://ir.earthlink.net/releasedetail.cfm?ReleaseID=310055"><strong>press release today</strong></a>. </p>

<p>The company plans to pull all its gear from the poles starting 12-June-2008. The company's press release said it offered to give the network at no cost to an unnamed non-profit, as well as to the city, but claimed that "unresolved issues" led to the effort falling apart. EarthLink offered cash and more equipment, as well, in undisclosed quantities. Wireless Philadelphia, the non-profit in charge of managing the network provider and administering digital divide programs, was apparently not the non-profit mentioned. </p>

<p>EarthLink filed a lawsuit to allow it to remove its Wi-Fi nodes and cap its liability at $1m. That's a pretty hostile move, given that the city would have been the more likely party to feel aggrieved and file suit against EarthLink for failing to live up to the terms of their agreement.</p>

<p>EarthLink's claims of offering the network to "a non-profit" or the city for free skirts the issue that EarthLink may have certain liabilities for electrical power and other fees that haven't yet been paid; Wireless Philadelphia had agreed to pick up or defer certain charges as part of the deal that brought the network provider in. But without a completed network, and the contract therefore perhaps susceptible to being declared in default in court, it's unlikely that this will play out nicely.</p>

<p>And I'll say bluntly: If someone offered you $17m of outdated equipment on a network that never worked to specification that wasn't completed, and that already had known high annual costs, and which a private firm gave up as a bad job that they couldn't turn a dime on--would you take that deal? No. EarthLink will ultimately have to pay much more than $1m, I predict, and I suspect some of the settlement will leave gear in selected neighborhoods behind for more modest networking purposes. It's not going to be as easy as releasing a press release, although I haven't read the contract's provisions for this set of circumstances, and I'm not a lawyer.</p>

<p>The failure in Philadelphia, and EarthLink's exiting the entire muni-Fi business, represents the end of a bad model in which a company agreed to assume all risk and costs associated with building a public access network. When the assumptions were that networks would be cheaper and easier to build in 2005, and that citizens in many larger cities had few affordable broadband options, it made some sense to build a network on spec.</p>

<p>Three years into this, however, it's clear that that capital investment is 2 to 3 times higher than what was anticipated to reach a level of service quality that people will expect; that, when presented with potential competition, DSL and cable operators will slash prices and offer cheap 1-year or "lifetime" rates with long-term contracts; and that wireless broadband delivered via Wi-Fi isn't the best of ideas for indoor service.</p>

<p>Minneapolis may wind up being the only large city, if the network quality and subscriber rates play out, that has a public access network that works and produces a return. </p>]]></content:encoded>
      <pubDate>Tue, 13 May 2008 05:48:07 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/philadelphia wi-fi network">philadelphia wi-fi network</category>
      <category domain="http://securityratty.com/tag/earthlink">earthlink</category>
      <category domain="http://securityratty.com/tag/network provider">network provider</category>
      <category domain="http://securityratty.com/tag/philadelphia">philadelphia</category>
      <category domain="http://securityratty.com/tag/public access network">public access network</category>
      <category domain="http://securityratty.com/tag/company">company</category>
      <category domain="http://securityratty.com/tag/earthlink filed">earthlink filed</category>
      <source url="http://wifinetnews.com/archives/008316.html">EarthLink Will Shutter Philadelphia Network, Company Says</source>
    </item>
    <item>
      <title><![CDATA[RSA Day 2: Wednesday with JJ & the Engima]]></title>
      <link>http://securityratty.com/article/3b6a2b76bdadf65037a7c7a51ded2473</link>
      <guid>http://securityratty.com/article/3b6a2b76bdadf65037a7c7a51ded2473</guid>
      <description><![CDATA[RSA Conference, San Francisco
Day 2: Wednesday, April 9th
I know, I know- its late- but better late than never, right
I really tried my best to take photos as much as possible. A quick note on the...]]></description>
      <content:encoded><![CDATA[<p><strong>RSA Conference, San Francisco<br />Day 2: Wednesday, April 9th</strong></p><p>I know, I know- it&#8217;s late- but better late than never, right?</p><p>I really tried my best to take photos as much as possible.&nbsp;A quick note on the photography- because of the size of the rooms, it didn&#8217;t make sense to have the flash on, unfortunately it slowed the shutter speed, making some images blurry (sorry). </p><p>So Day 2 already felt like day 5 somehow. I had flown in early to be a tourist for a day or so but caught up with partners and other event-goers early, making it an especially long week. Wednesday was an eventful day. I have a great&nbsp; <strong>Sins of Our Fathers</strong> session to share with you, a day with the <strong>Enigmas</strong>, and the <strong>Security Bloggers Party</strong>. </p><p><strong>The highlight of the day&#8217;s sessions had to be the</strong> <strong>&#8216;Sins of Our Fathers&#8217;</strong> breakout with an amazingly hilarious geek-filled panel including <a class="offsite-link-inline" href="http://www.linkedin.com/in/danhouser" target="_blank">Daniel Houser</a>, <a class="offsite-link-inline" href="http://www.cryptography.com/company/Benjamin-Jun.html" target="_blank">Ben Jun </a>and <a class="offsite-link-inline" href="http://www.linkedin.com/pub/2/1bb/3b5" target="_blank">Hugh Thompson</a>. (Hugh unquestionably won the <em>Most Entertaining Geek Award</em> for the day). I was <a class="offsite-link-inline" href="http://tweetscan.com/index.php?s=SoOF&u=jjx&p=0" target="_blank">tweeting live</a> from the session and took some photos of the interactive polls they intertwined in the discussion. They drew some interesting correlations between current security issues, such as SQL injections an &#8216;previous sins&#8217;, likening it to&nbsp;phone whistling. There were random notes about the&nbsp;inherent security risk of&nbsp;mixing data and coding together. <a class="offsite-link-inline" href="http://www.flickr.com/photos/42618430@N00/tags/soof/" target="_blank">View photos from session.</a></p><p><span class="full-image-float-right"><img style="width: 256px; height: 192px" alt="DSC01791.JPG" src="http://www.securityuncorked.com/storage/DSC01791.JPG?__SQUARESPACE_CACHEVERSION=1208144360449" /></span>Then they talked about using good technology in a way that made it vulnerable. Examples, the Enigma code machines from WWII. (It was&nbsp;actually broken by the known plain-text gathered from repetition in contact initiation, and the mis-use of one-time-pads). They drew the line from Enigma to WEP and other algorithms that were okay, but mis-implemented. </p><p>There were a variety of other anecdotes, accompanied by audience-wide snickers, snorts and laughter. One story of tape backups, encrypted, with the key dutifully stick-noted to the case. Another of the secretary who type-writered all the 5.25&#8221; floppies. The story of the unmanned Predator aircraft flying unattended for about 5 minutes during a PC reboot. They were all tied into the topic nicely, and the guys did an outstanding job interacting and playing off one another. </p><p>One a more serious note- well, sorta- Hugh showed a clip from his participation in the documentary &#8220;<a class="offsite-link-inline" href="http://www.hbo.com/docs/programs/hackingdemocracy/" target="_blank">Hacking Democracy&#8221;</a> about the lack of security of electronic voting. </p><blockquote><p>Here was&nbsp;something amusing&#8230; Their crypto&nbsp;list of <br /><strong>If you hear&nbsp;any of these, RUN!</strong></p><ol><li><div>Cryptography is expensive. </div></li><li><div>We have this guy that&#8217;s reallllly smart&#8230;</div></li><li><div>Wired EQUIVALENT encryption&#8230; .&nbsp;</div></li><li><div>It&#8217;s &#8220;proprietary&#8221; security</div></li><li><div>It&#8217;s revolutionary NEW cryptography technology!</div></li><li><div>It uses DES- so its FIPS 140 compliant&nbsp;</div></li></ol></blockquote><blockquote><p><strong>Some of the sins from the session&#8230;</strong></p><ul><li><div>Engineering, Development &amp; Management sins </div></li><li><div>Using a good technology in a bad implementation</div></li><li><div>Lack of metrics to indicate misuse</div></li><li><div>Feature/mission creep - using item A for solution B</div></li><li><div>Not teaching people how to use security</div></li><li><div>Teaching them, but teaching bad habits </div></li><li><div>Normalization of deviancy </div></li></ul></blockquote><p>I&#8217;ve spent long enough on that, there&#8217;s plenty more to share, but that session was so good, I thought it deserved some special attention. I did stay for the <strong>Cyber Storm II</strong> Panel, but that left more than <em>&#8216;a little&#8217;</em> to be desired. I would have liked more anecdotal stories and a little more personality. The panel participants were knowledgeable, and I&#8217;m sure they were doing what they had been told, but it made for a very dry session, little content of interest, and much repetition. There&#8217;s a little <a class="offsite-link-inline" href="http://tweetscan.com/index.php?s=CSII&u=jjx" target="_blank">live Tweeting </a>from that session too. </p><p>&nbsp;</p><p><strong>Playing with the Enigma<span class="full-image-float-right"><img style="width: 256px; height: 192px" alt="DSC01797.JPG" src="http://www.securityuncorked.com/storage/DSC01797.JPG?__SQUARESPACE_CACHEVERSION=1208144122189" /></span></strong><br />At the Sins of Our Fathers sessions, I believe it was Ben that mentioned we had at our disposal not one- but TWO Enigma machines on the expo floor here are RSA. And BOTH were for our playing! They had it set so we could set the key and encode a message at the NSA booth, then take the encrypted message to the Cryptographic Research booth and use that Enigma to decypher the message. <em>HOLY COW!!!!!!</em> If their session hadn&#8217;t been so great I would have left right then. The only time I&#8217;ve seen these beautiful little pieces of crypto history, they&#8217;ve been fully encased in glass, and not for the touching. They actually let you set the rotors and punch the code in yourself so my buddy Eric and I ran right over to take full geek advantage of the situation.&nbsp;</p><p>YES, that&#8217;s me with an Enigma, and I have <a class="offsite-link-inline" href="http://www.flickr.com/photos/42618430@N00/tags/enigma/" target="_blank">more photos </a>of the two Engimas.</p><p>&nbsp;</p><p><strong>The big highlight of the evening? The Security Bloggers Party</strong> of course! You get a whole post just for this topic, so stay tuned for that. I didn&#8217;t take photos here, because I felt pretty sure someone would be walking around with a camera. I need to find @ajolly (Apneet Jolly) and see if he has any- he&#8217;s usually fully equipped with a very nice camera&#8230; </p><p># # #</p>
]]></content:encoded>
      <pubDate>Sun, 13 Apr 2008 21:35:30 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/inherent security risk">inherent security risk</category>
      <category domain="http://securityratty.com/tag/day">day</category>
      <category domain="http://securityratty.com/tag/security bloggers party">security bloggers party</category>
      <category domain="http://securityratty.com/tag/dry session">dry session</category>
      <category domain="http://securityratty.com/tag/session">session</category>
      <category domain="http://securityratty.com/tag/enigma">enigma</category>
      <category domain="http://securityratty.com/tag/enigma machines">enigma machines</category>
      <category domain="http://securityratty.com/tag/fathers session">fathers session</category>
      <source url="http://www.securityuncorked.com/security-uncorked/2008/4/14/rsa-day-2-wednesday-with-jj-the-engima.html">RSA Day 2: Wednesday with JJ &amp; the Engima</source>
    </item>
  </channel>
</rss>
