Get ready! New-gTLD Preparedness Project Thoughts August, 2013 © Mikey OConnor (just attribution is fine) version 0.3.

Slides:



Advertisements
Similar presentations
Implementing a Behavior Based Safety Process at Rockwell Automation
Advertisements

1 ICANNs Contractual Compliance Program David Giza, Senior Director, Contractual Compliance Stacy Burnette, Director, Contractual Compliance ICANN Policy.
ICANN Plan for Enhancing Internet Security, Stability and Resiliency.
UNCTAD Technical Assistance and Capacity Building in Trade Facilitation WTO, NGTF, 1 July 2009.
FMS. 2 Fires Terrorism Internal Sabotage Natural Disasters System Failures Power Outages Pandemic Influenza COOP/ Disaster Recovery/ Emergency Preparedness.
Time Management Skills
Incident Response Managing Security at Microsoft Published: April 2004.
Develop an Information Strategy Plan
Course: e-Governance Project Lifecycle Day 1
Managing IP addresses for your private clouds 2013 ASEAN CAS Summit Bangkok, Thailand 7 February 2013 George Kuo Member Services Manager.
Risk and Resilience Delivered by Alba
Chapter 10 Schedule Your Schedule. Copyright 2004 by Pearson Education, Inc. Identifying And Scheduling Tasks The schedule from the Software Development.
Ahsan Kabir Project Manager Ahsan Kabir Project Manager ………………………….
Smart Grid - Cyber Security Small Rural Electric George Gamble Black & Veatch
PPA 573 – Emergency Management and Homeland Security Lecture 9b - Department of Homeland Security Strategic Plan.
TEL382 Greene Chapter /27/09 2 Outline What is a Disaster? Disaster Strikes Without Warning Understanding Roles and Responsibilities Preparing For.
LEARNING FOR THE 21st CENTURY
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 7: Planning a DNS Strategy.
Small Business Security By Donatas Sumyla. Content Introduction Tools Symantec Corp. Company Overview Symantec.com Microsoft Company Overview Small Business.
Learning in Disaster Health February 13, 2014 Lois D. Banks, PHF TRAIN Director Erin Bougie, PHF TRAIN Program Assistant.
Status April 2009 and Roadmap. CNVC strives to serve people all over the world in at least four languages We want to help people interested in learning.
 Network Management  Network Administrators Jobs  Reasons for using Network Management Systems  Analysing Network Data  Points that must be taken.
Getting off NT4… Raj Natarajan National Technology Specialist.
Reconnaissance & Enumeration Baseline, Monitor, Detect, Analyze, Respond, & Recover Hervey Allen Chris Evans Phil Regnauld September 3 – 4, 2009 Santiago,
2011 – 2014 ICANN Strategic Plan Development Stakeholder Review 4 November 2010.
Resiliency Rules: 7 Steps for Critical Infrastructure Protection.
EASTERN MICHIGAN UNIVERSITY Continuity of Operations Planning (COOP)
© 2005 Prentice Hall14-1 Stumpf and Teague Object-Oriented Systems Analysis and Design with UML.
Value Assessment by Potential Tool Adopters: Towards a Model that Considers Costs, Benefits and Risks of Adoption Timothy C. Lethbridge SITE, University.
© 2010 Plexent – All rights reserved. 1 Change –The addition, modification or removal of approved, supported or baselined CIs Request for Change –Record.
Maintaining Essential Business and Community Services During a Pandemic Paul R. Patrick, Director Bureau of Emergency Medical Services Utah Department.
Team Launch Introduction. Real projects are large and complex, and most software is created by teams Merely throwing people together does not result in.
11 Bill & Melinda Gates Foundation Global Libraries Initiative April 2007.
Test Organization and Management
IT Systems Analysis & Design
Lifecycle Management and the Projects Portfolio. 2 Agenda How project portfolio management fits within an overall lifecycle for managing the delivery.
Managing Windows Server 2008 R2 Lesson 2. Objectives.
Critical Success Factors: Design and Development of Sharable Training E-Learn 2006 Honolulu, HI October 15, 2006.
ICANN LAC Regional Strategy Final Results URUGUAY February 7-8, 2013.
Module 2 Designing Microsoft® Exchange Server 2010 Integration with the Current Infrastructure.
1 CISCO SAFE: VALIDATED SECURITY REFERENCE ARCHITECTURE What It Is Business Transformation Top Questions To Ask To Initiate The Sale Where It Fits KEY.
Orphaned Servers and Broken Processes 2007 Security Professionals Conference April 12, 2007.
Module 13: Designing Active Directory Migrations in Windows Server 2008.
ICANN COMMUNITY STRATEGIC PLANNING DISCUSSION Brussels, June
The Community Collaboration Coaches Roles, Strategies, and Tools.
Ready or Not? assessing and implementing change Stephanie Jones Erica Ruck, Ovens and King Community Health Service.
PREPARE TO CARE 5 STEPS FOR FAMILY PLANNING Rachel Lockwood, M.S. Jan Johnston, Ph.D. OK Cooperative Extension Service Family & Consumer Sciences **
“Integrating Property Management with Emergency Recovery” Ivonne Bachar, CPPM CF Director, Property Management Office Stanford University
Creating a Virtual School Drawing board to Implementation.
Japan Registry Service Copyright © 2002 Japan Registry Service Co., Ltd. Consideration on DNS Service Level Shinta Sato Japan Registry.
2.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 2: Examining.
Streamlining – The Need: Costs Saved and Lessons Learned Facilitating Disaster Preparedness, Response & Recovery.
Hosted Voice & Hosted Contact Center
Planning Ahead for Optimal Contact Center Deployment Jim Jenkins
1 A COMMUNITY VIEW Ronnie Bush, Alderman, City of Freeport 1.
Texas STaR Chart School Technology and Readiness.
The Experts in Exchange Migration™ MIGRATING TO EXCHANGE OR OFFICE 365 TechSummit – Phoenix 2015.
6 February 2004 Internet2 Priorities 2004 Internet2 Industry Strategy Council Douglas Van Houweling.
4.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 12: Implementing Security.
CBIZ RISK & ADVISORY SERVICES BUSINESS CONTINUITY PLANNING Developing a Readiness Strategy that Mitigates Risk and is Actionable and Easy to Implement.
6/13/2015 Visit the Sponsor tables to enter their end of day raffles. Turn in your completed Event Evaluation form at the end of the day in the Registration.
RISK MANAGEMENT FOR COMMUNITY EVENTS. Today’s Session Risk Management – why is it important? Risk Management and Risk Assessment concepts Steps in the.
Troubleshooting Windows Vista Lesson 11. Skills Matrix Technology SkillObjective DomainObjective # Troubleshooting Installation and Startup Issues Troubleshoot.
Serving IT up with ITIL By Thane Price. IT is the laboratory’s pit crew  Goal : Make technology transparent while accomplishing valuable internal customer.
Outcomes By the end of our sessions, participants will have…  an understanding of how VAL-ED is used as a data point in developing professional development.
External Review Exit Report Campbell County Schools November 15-18, 2015.
Organisation Control KPI’s & an industry Review
IT Systems Analysis & Design
For Stake Emergency Communication Specialists
Regional Operations Forum Setting the Stage
Presentation transcript:

get ready! New-gTLD Preparedness Project Thoughts August, 2013 © Mikey OConnor (just attribution is fine) version 0.3

Contents Why we need a world-wide new-gTLD preparedness project How well define success What well be doing Where do we go from here?

The need for a new-gTLD preparedness project Impacts of certain new-gTLDs could be very severe for some network operators and their customers There may not be a lot of time to react Progress on risk-assessment and mitigation-planning is poor Fixes may not be identified before delegation Thus, getting ready in advance is the prudent thing to do We benefit from these preparations, even if we dont need them for the new-gTLD rollout Namespace collision Dotless domains Internal Name Certificates

The need for a new-gTLD preparedness project The maddening thing is, we may not know whats really going to happen until its too late to prepare -- so were going to have to make guesses. New gTLD impacts could be very broad and severe, especially for operators of private networks that were planned long before new-gTLDs were conceived of. ISPs may be similarly surprised. Microsoft Active-Directory installations may need to be renamed/rebuilt Internal certificates may need to be replaced Long-stable software and network configurations may need to be revised New attack vectors may arise And so forth...

.com.org.us bar.com SAP.org NetworkArts.us mail.prod server.test accounting.corp router01.cisco shared.pub product.group Internal & trusted (known knowns) External & untrusted (known unknowns) Today DNS Internal system or user asks DNS, where is this resource? Legacy gTLDs Requests from inside a network ask DNS where resources are located DNS distinguishes between resources that are inside and outside the local network If DNS is configured to look for an internal match first, all is well. But if DNS is configured to look for an external match first, then theres possible trouble ahead… Example: Namespace collision

.com.org.us.prod.test.corp.cisco.pub.group bar.com SAP.org NetworkArts.us mail.prod server.test accounting.corp router01.cisco shared.pub product.group Internal & trusted (known knowns) External & untrusted (known unknowns) mail.prod server.test accounting.corp router01.cisco shared.pub product.group External and a surprise (unknown unknowns) Tomorrow DNS Internal system or user asks DNS, where is this resource? Trusted names unexpectedly start routing to external hosts as new gTLDs delegate Legacy gTLDs New gTLDs The Problem: Example: Namespace collision

The need for a new-gTLD preparedness project Given that we dont know what will happen, and we appear to be in a high-risk zone, getting ready is the prudent thing to do – If there are failures, preparedness will be the most effective way to respond – The issues associated with being under-prepared could be overwhelming –Hope for the best, prepare for the worst is a strategy that we often use to guide family decisions -- this rule also applies here – Inaction, in the face of the evidence that is starting to pile up, could be considered irresponsible We benefit from these preparations, even if theyre not needed – We improve security, stability and resiliency of the DNS for all by focusing on building a more nimble, disaster-resistant community – If we are over-prepared we will be in a great position to help others who experience problems – Exercise is good for us -- whether its on a personal level or aimed at strengthening our network neighborhoods and communities

How we define success Here are possible overall objectives for an investment in new-gTLD preparedness efforts: – Minimize the impact of new-gTLD induced failures on the DNS, private and public network infrastructure, and Internet users – Make technical-community resources robust enough to respond effectively in the event of a new-gTLD induced disruption – Maximize the speed, flexibility and effectiveness of response to a new-gTLD induced disruption

AT THE EDGE Identifying needs Organizing, practicing Responding to problems Reporting successes and lessons-learned AT THE CORE Assessing & analyzing risks Developing mitigation tools Providing resources Communicating Coordinating What we should be doing: Connecting, developing and sharing resources ICANN Registries & Registrars Large network operators Businesses Associations Small network operators Governments ISPs Internet users

What we should be doing Overall approach Assessing readiness Determining what we need to do to get ready Forming partnerships Preparing network administrators, large & small Practicing responses Responding Leading - managing - informing Sharing knowledge Identifying resources to share Making and maintaining contact Readiness tracking systems Ongoing conversations with key players Identifying risks and resources Determining priorities Assisting planning efforts Developing coordinated plans Training and outreach activities Acquiring and staging resources Identifying networks with special needs Community of interest gatherings Checking signals between organizations Dry runs Identifying problems Delivering resources/solutions Coordinating efforts Project management Communications Leadership

What we should be doing: Getting started GET STARTED: Share and test different ideas and opinions Discover missed connections Coordinate efforts Identify resources and leaders Build momentum Keep focused GET STARTED: Share and test different ideas and opinions Discover missed connections Coordinate efforts Identify resources and leaders Build momentum Keep focused

Where do we go from here? Right away: Agree that this effort needs attention, support and funding Get started on the organizing Soon: Establish a focal point and resource pool Broaden the partnership base Start tracking what areas are ready and where there are likely to be problems