4 ms·
> It seems unsuitable for coordinating mass protests to me, because it's a single point of failure. In many countries, the government controls all Internet acc
by rogeryu 11y ago
> It seems unsuitable for coordinating mass protests to me, because it's a single point of failure. In many countries, the government controls all Internet access, so blocking Twitter would be relatively easy. Sure, people can use Tor, but will enough people have it when Twitter gets blocked?
No, you can set up endless blogs (using Wordpress or Joomla or any other CMS with Twitter plugins), and include a twitter stream in it. You can post to twitter by email or using similar plugins.
A government cannot block all those sites.
Blocking twitter is not enough to block all content coming from and going to twitter.
- alphapapa 11y agoSure, you can set up what are effectively Twitter proxies, and sure, the censors won't be able to keep up playing whack-a-mole. But then the users have to do the same thing, preemptively finding such proxies and jumping between them. I'd guess that that would be a good enough result from the government's perspective. And that's just read-only stuff. Post by email? DPI could drop packets containing emails addressed to Twitter, even if they're being sent through a mail server in another country. And, sure, you can proxy stuff, but again, the point here is the masses. If 95% of people are blocked from access, that would probably prevent mass protests from happening; or at least keep them from happening quickly and unexpectedly. But besides all that, when the government cuts off the country's Internet access entirely, creating a nationwide intranet, none of those blog proxies are going to help. The only thing that is going to truly work in such a situation is peer-to-peer stuff.
- pdkl95 11y ago> preemptively finding such proxies and jumping between them This is why it is so important to create protocols for communication instead of single-point-of-failure services. While it is still possible for bad actors to interfere with traffic, it is much harder to shutdown an entire network of federated servers. In contrast, a service can be disabled by simply throwing legal papers at the person running the service (or otherwise threaten them, bribe them, etc). > DPI could drop packets containing emails addressed Which is why that email should have been encrypted. Even non-authenticated opportunistic encryption would make that kind of DPI much harder and more expensive. We've had encryption for a long time, and there is absolutely no excuse for to not have encryption in all network software. Unfortunately, a lot of software has been badly negligent in their duty to keep their users safe. > cuts off the country's Internet access entirely ...they should be left with a split network, still able to communicate internally. It is pure hubris to believe that a single service will always be available in any situation; when international links are involved, some amount of loss-of-service should be assumed. This is why email allows multiple MX records - servers fail, so build in backups, some of which can be local. > peer-to-peer stuff Yes, though the model to copy is federated services like email. The power of the internet is that it IS peer-to-peer. No 3rd party has to grant authorization to listen(2) for connections or connect(2) to a remove host. This has been forgotten because of the damage that NAT does to the network (you aren't a full citizen ("peer") on the internet when you have to ask the NAT device to forward your packets.) Now, after about a decade of failing to heed the warnings about NAT, the digital imprimatur[1] is being constructed and running proper peer to peer (no 23rd party) is harder than ever. Hopefully IPv6 can reverse this trend. [1] https://www.fourmilab.ch/documents/digital-imprimatur/ https://www.fourmilab.ch/documents/digital-imprimatur/
- alphapapa 11y agoI'm confused. It sounds like you're arguing against me, but you basically agree with me. Except for... > Yes, though the model to copy is federated services like email. I disagree. For one thing, DNS. How many average users will be able to reconfigure their systems to use a DNS server besides the one their ISP provides? And when the national government cuts off the nation's external Internet access, what good will 8.8.8.8 be? It seems obvious to me that, for this kind of use-case, peer-to-peer, DHT-type services are what's needed. Federated is better than centralized, but it would still be easy to censor and block. Even P2P protocols could be blocked by ISPs blocking inbound connections to their customers, but barring that, it would be difficult.