Internet 101 l.jpg
This presentation is the property of its rightful owner.
Sponsored Links
1 / 58

Internet 101 PowerPoint PPT Presentation


  • 112 Views
  • Uploaded on
  • Presentation posted in: General

Internet 101. Technology Policy Framework. Disclaimer!. This presentation is oversimplified And incomplete for pedagogical reasons and because of time constraints!. How does Internet work?. Internet.

Download Presentation

Internet 101

An Image/Link below is provided (as is) to download presentation

Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author.While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server.


- - - - - - - - - - - - - - - - - - - - - - - - - - E N D - - - - - - - - - - - - - - - - - - - - - - - - - -

Presentation Transcript


Internet 101 l.jpg

Internet 101

  • Technology

  • Policy Framework


Disclaimer l.jpg

Disclaimer!

  • This presentation is oversimplified

  • And incomplete for pedagogical reasons and because of time constraints!


How does internet work l.jpg

How does Internet work?


Internet l.jpg

Internet

  • The Internet is a network of networks interconnected by means of the Internet Protocol Suite.

  • It is an architecture for a system of computer-based applications.

  • Protocols are standard procedures, conventions and formats for inter-computer communication.

  • The Internet protocols are based on packet switching concepts.


Circuit and packet switching l.jpg

S

D

S

D

Circuit and Packet Switching

Circuit Switching

“telephone network”

Internet

Packet Switching


Packet switching features l.jpg

BB

AA

AA

Packet

Switch

BB

BB

Packet Switching Features

A

Host

B

  • Multiplexing data from multiple processes

  • “Store-and-forward”

  • Automatic speed adaptation

  • Adaptive alternate routing


Packet structure l.jpg

S = Source Address (“From”)

D = Destination Address (“To”)

Packet Structure

Header

...

S

D

Data

S


Internet addressing l.jpg

Internet Addressing

  • IPv4 - 32 bits (4.3 billion addresses)

  • IPv 6 – 128 bits (1038 addresses)

    that’s 100 trillion trillion trillion …


Internet packet formats l.jpg

Internet Packet Formats

Version

number

“from” address

“to” address

CONTENTS

166.45.18.99

204.146.165.100

“4”

“hello”

An Internet Packet


Packet networks l.jpg

Packet Networks

host

host

  • Packet switched

  • Some use virtual circuits

  • Peer-to-peer

  • Client/server

  • Some are shared media (e.g., Ethernet)

host


Internetworking l.jpg

Internetworking

  • Routers

  • Encapsulation

  • End-to-end packets

  • Internet Protocol- IP

H

R

R

“Routers were once called

Gateways between nets”

H


Slide12 l.jpg

IP:

The “Thin Waist” of the Internet

App

App

App

App

App

App

Transport

TCP

Transport

TCP

Network

IP

Network

IP

Network

IP

Network

IP

Link 3

Link 1

Link 1

Link 2

Link 2

Link 3

Phys 3

Phys 1

Phys 2

Phys 1

Phys 3

Phys 2

Subnet 1

Subnet 2

Subnet 3

Internet: a Network of Connected Sub-Networks


Slide13 l.jpg

From: eop.gov

To: mci.com

01101110

11100111

The Internet IP Postcard System

An electronic postcard (“packet”)

Another router

A router

A bucket of packets


Early internet network of networks l.jpg

Ethernet 1974

ARPANET 1969-1990

Packet Radio 1975

Packet Satellite 1976

NSFnet 1986-1995

MCI, IBM, Merit, ANS

NYSERNET - 1987

GIX

Sprint Link

CERFNET - 1989

PSINET - 1990

NORDUNET 1991

CIX

Early Internet - “Network of Networks”

EBONE 1992

BARRNET 1988

UUNET – 1989

(End-user nets not shown)


Internet protocol architecture key protocols tcp ip l.jpg

MIME

PGP

HTTP

FTP

SMTP

Utility/Application

. . .

SNMP

DNS

Transport

TCP

UDP

OSPF

EGP/BGP...

Network

I P / I C M P

. . .

. . .

Ethernet

HDLC

X.25

FR

link

FDDI

SONET/SDH

WiFi

ATM

Internet Protocol ArchitectureKey Protocols: TCP/IP

Note many protocols not shown

Physical

Coaxial cable, optical fiber, radio, satellite…


How does tcp work l.jpg

How Does TCP Work?

  • Like Sending a Novel on Postcards

    • Page numbering (ordering, duplicate detection)

    • Positive Acknowledgement

    • Retransmission on Timeout

    • Finite Mailbox


Protocol layering l.jpg

Protocol Layering

  • Key concept – like floors of a building: lower floors support upper ones

  • Layers form a kind of stair case – users have access to each layer (floor, step)

  • To understand the Internet, you must look at it from the side to see the layers – looking down from the top conflates all functions into one solid mass.


Routing l.jpg

Routing

  • Internal Gateway Protocol (IGP)

    • IS-IS, Open Shortest Path First (OSPF), RIP (primitive). Used within an autonomous system (AS).

  • Exterior Gateway Protocol (EGP)

    • BGP4 – used between autonomous systems

  • Routing protocols help routers track topology and preferred routing for traffic within and between autonomous systems.


Interconnecting internet service providers isps l.jpg

Interconnecting Internet Service Providers (ISPs)

  • Peering and Transit

    • Peers exchange routing information directly or through Internet Exchanges; and exchange traffic only between their customers (not their peers)

    • Transit: one net purchases full Internet connectivity from another

  • Internet Exchanges

    • London Internet eXchange (LINX)

    • MAE-EAST, MAE-WEST, …

    • Multiple nets peer at the exchanges


Firewalls l.jpg

Firewalls

  • Introduced between edge networks (e.g. corporate nets, home networks) and public Internet

  • Filter traffic (in either direction) to control access to edge network resources

  • Vary in complexity and layers of protocol examined for access control. Some observe set-up and tear-down of TCP connections for example.


Network address translators nats l.jpg

Network Address Translators (NATS)

  • Introduced between users and edge access networks (LANS, wireless nets) to allow sharing of a single IP address by multiple computers.

  • Response to limited number of IP addresses made available to users by ISPs (maximize revenue per IP address)

  • Detrimental to end/end security methods

  • Personal anecdote with cable network


Virtual private networks vpns via ipsec tunnels l.jpg

Virtual Private Networks (VPNs) via IPSEC tunnels

  • Packets from private (edge) network are encapsulated in IP packets flowing through the public Internet. The payload of each packet is encrypted to protect it while in transit (this creates the “tunnel”)

  • The edge networks may use private IP addresses rather than public IP addresses without penalty.


Domain names and addresses l.jpg

Domain Names and Addresses

  • www.isoc.org is a “domain name”

    • “org” is the “non-commercial top level domain”

  • 208.234.102.119 is an Internet address

    • this is really just a way to represent a 32 bit number which how Internet Protocol version 4 represents locations in the Internet, like telephone numbers in the telephone network


Domain names l.jpg

Domain Names

  • Latin characters “A”-”Z”, numbers “0”-”9” and “-” (encoded in US ASCII)

  • They appear in embedded constructs such as email: [email protected]

  • In Uniform Resource Locators:

    • http://www.mci.com/cerfsup

  • And in other protocol constructs


Top level domain names tlds l.jpg

Top Level Domain Names (TLDs)

  • Generic TLDs: .edu, .com, .org, .net, .mil, .gov, .int, .biz, .aero, .coop, .museum, .name, .pro, .info

  • and country code TLDs: .US, .UK, .FR, .DE, .JP, .ZA, .AU, …

  • But note: .tv, .md, .to, .cc… are operated like generics

  • Infrastructure TLD: .arpa (inverse IP address lookup and also e164 telephone number entries)

  • The system is hierarchical and each name is unique: www.cnri.reston.va.us

  • The Internet Assigned Numbers Authority (IANA) delegates responsibility for each TLD to an appropriate entity.


Dns components and mechanics l.jpg

DNS Components and Mechanics

  • Domain Name Servers

    • Associate domain names with IP addresses (among other things) or point to lower level servers with more information

    • “Root” = “.”

    • TLD = .biz (for instance)

    • Second Level Domain = alpha.biz (e.g.)

    • Third Level Domain = www.alpha.biz (e.g.)


Dns components and mechanics cont l.jpg

DNS Components and Mechanics (cont.)

  • Domain Name Resolvers

    • Queries (a sequence of) Domain Name Servers to find the IP address of a given domain name.

    • If not known by the Resolver already, Resolver may query a Root Server to find a TLD DNS server which will point to a server for second level names, etc.

    • Resolver returns the results to the party originally asking “what is the address of this domain name?”

    • The answer may be: “there is no such domain name in the DNS system”.


Root servers in the dns l.jpg

Root Servers in the DNS

  • There are 13 Root Servers in the DNS

  • Each of them has a complete table of the addresses of all TLD servers. This table is sometimes called the “Root Zone File.”

  • There can be many copies of each Root Server (using the “anycast” feature of the Internet routing system) and these copies can be anywhere in the Internet.

  • Each root server system is operated on a volunteer basis by an independent entity.

  • Changes to the Root Zone File must be approved by the US Department of Commerce (National Telecommunications and Information Agency) after approval by IANA.


Internationalized domain names l.jpg

Internationalized Domain Names

  • IETF has developed standards for incorporating UNICODE strings into domain names. They are mapped into ASCII code strings of the form “xn--<ASCII sequence>

  • Current practices does not (yet) support “multi-lingual” Top Level Domains. Registration restriction tables may be needed for specific languages sets.

  • Introduction of multi-lingual domain names is proving to be complex. Higher level applications potentially mix up character codings (recent example from email exchange: German umlauts converted to Cyrillic characters!)


Domain name registration l.jpg

Domain Name Registration

  • Registry: entity that maintains a database of second level domain name registrations and associated servers

  • Registrar: entity that accepts registrations from users on behalf of registries.

  • Registrars forward relevant information to Registries using standard protocols

  • Some TLD operators perform registrar and registry functions (e.g. many ccTLD operators)

  • Life of a Domain Name (unregistered, registered, registry hold, in redemption/grace period, expired…)


Whois l.jpg

WHOIS

  • Information about registrants (owner, administrative and technical contact) is kept in the WHOIS database along with many other kinds of information.

  • There is much controversy over how much of this information should be publicly accessible and what should be protected (there are privacy, law enforcement and intellectual property protection issues involved.)


Email l.jpg

EMAIL

  • One of the oldest Internet applications

  • <user mailbox ID>@<mailserver domain name>

  • Example: [email protected]

  • Mail clients retrieve email via IMAP or POP3 protocols. Some use WWW browsers, e.g. hotmail

  • Multimedia Internet Mail Extensions (MIME) allow for multiple attachments containing arbitrary content (including sound, video, imagery, programs, documents, …). Messages and attachments can be encrypted and sent this way for privacy.


Email33 l.jpg

EMAIL

  • EMAIL is sent from the email client to an email relay using the Simple Mail Transport Protocol (SMTP).

  • A feature of DNS allows one relay to server as a proxy for another through a DNS “MX” entry:

  • XYZ.COM MX ABC.COM means ABC.COM serves as proxy for XYZ.COM


Slide34 l.jpg

SPAM

  • SPAM is unsolicited commercial email and is sometimes consider the scourge of the Internet.

  • Many efforts are underway to limit the influx of spam, including legislation, technical measures to resist mail relay “hijacking” but the spammers find many ways to circumvent them.


World wide web l.jpg

World Wide Web

  • Layered atop TCP/IP, WWW uses hypertext transport protocol (http) to carry objects encoded in Hypertext Markup Language (HTML) or Extensible Markup Language (XML) between browsers (clients) and servers.

  • Web Proxies can be configured to intervene between clients and servers acting as filters or as aggregators of web traffic, caching web pages for efficiency.


Www cont l.jpg

WWW (cont.)

  • The WWW system uses hyperlinks that are embedded in HTML or XML pages to allow users to “point and click” to move to new places in the web.

  • Embedded hyperlinks are expressed as Universal Resource Names, Identifiers or Locators: http://www.isoc.org/internet/history/doc.html


Www cont37 l.jpg

WWW (cont.)

  • Secure Socket Layer (SSL)

    • This allows client/server communication to be encrypted for privacy using Public Key Cryptography infrastructure (PKI) to transport symmetric cryptographic keys between the parties.

    • This is an important enabler of ecommerce


Streaming audio video l.jpg

Streaming Audio/Video

  • Usually uses UDP streams (ie. Not guaranteed to be delivered or in order)

  • Some use Real Time Protocol (RTP)

  • Some use multicasting capability of the router systems

  • Some use special distribution services such as those of Akamai and Real Networks.

  • Quality of Service issues sometimes arise with respect to ISP service level agreements.


Voice over internet or ip l.jpg

Voice over Internet (or IP)

  • Sometime use private IP networks

  • Sound is encoded, compressed, packetized and sent

  • Bandwidth requirements may be reduced (no packets when no one is speaking)

  • Session Initiation Protocol (SIP) a key element in call processing


Slide40 l.jpg

VOIP

  • SIP Proxies can locate Internet VOIP terminations and route traffic to them.

  • SIP destination identifiers may look like email addresses:

  • SIP: [email protected]

  • Media gateways convert to/from packet mode and serial digitized voice in the public switched telephone network. They also convert SIP signaling into conventional SS#7 for example.

  • Free Internet “telephony” from SKYPE, Free World Dialup, or reduced price services including access to PSTN from Vonage, among a number of others.


Slide41 l.jpg

ENUM

  • ENUM: maps e164 international telephone numbers into DNS:

  • +1 703 886 1690 becomes

  • 0.9.6.1.6.8.8.3.0.7.1.e164.arpa

  • And the lookup produces a SIP address or other Internet destination (web page, email address) or fax or telephone number, etc.


Search engines l.jpg

Search Engines

  • Google, YAHOO!, Alta-Vista, etc.

  • Systems scan billions of web pages, index them according to text content, rank order them (e.g. by number of hyperlinks pointing to the page) and respond to search queries.

  • Enormous experimentation with advertising mechanisms – Google instant auctions, etc.


Portals l.jpg

Portals

  • AOL, YAHOO!, MSN, Corporate ebusiness portals, directory services

  • These are web sites intended to guide users to resources, to perform services for them.

  • FEDEX, UPS, DHL package tracking systems; Airline flight status information

  • Travel and shopping services

  • Business to Business and Business to Consumer services


Grid computing l.jpg

GRID Computing

  • Open Grid Standard Architecture (OGSA)

  • Virtualize computing, networking and storage resources; allow computer services to register and be “discovered” in directories.

  • Potential to create network-based supercomputing capability at low cost


Security l.jpg

Security

  • Many layers of vulnerability and security responses

  • Denial of Service Attacks (DOS)

    • Direct attack against routers, DNS servers, hosts

    • Many avenues: IP, TCP, HTTP, operating system holes…)

    • Ordinary overload sometimes not distinguishable from DOS attack


Security cont l.jpg

Security (cont.)

  • Distributed Denial of Service (DDOS)

    • Compromise of many hosts

    • Remote control to launch attacks

    • Always-on DSL and Cable Modem services expose user computers to co-opting

  • Worms – self propagating software

  • Viruses – piggy back on email, eg.

  • Trojan Horses – code embedded into operating system or application software


Security cont47 l.jpg

Security (cont.)

  • Mitigation

    • Firewalls including personal firewalls (but not sufficient)

    • ISP DOS detection and mitigation

    • Virus filters in email relays

    • “BOT” detectors (system scanning software)

    • Cyber-hygiene (periodically)


Wireless access l.jpg

Wireless Access

  • WiFi (IEEE 802.11a,b,g,i, etc.)

  • WiMax (IEEE 802.16)

  • 3G (mobiles)

  • GPRS (mobiles)

  • VSATS (satellite)

  • Hotspots, SIP/WiFi telephones


Evolution of low level services l.jpg

Evolution of Low Level Services

  • Quality of Service (QOS)

  • IPv6

  • Domain Name System Security (DNSSEC) – many technical questions

  • Secure Routing (SBGP) – many technical questions

  • Intrusion Detection and Mitigation Services


Grand collaboration l.jpg

GRAND Collaboration

  • Hardware and software makers

  • Internet Service Providers, Corporate and institutional Internets

  • Broadband and Wireless Access Providers (mobiles, hotspots,…)

  • Domain Name Registries, Registrars, Resellers


Grand collaboration51 l.jpg

Grand Collaboration

  • Root Server Operators

  • Regional Internet Registries (ARIN, LACNIC, RIPE-NCC, APNIC, [AFRINIC]) and the Number Resources Organization (NRO)

  • Web Application Service providers

  • Hosting service centers


Grand collaboration52 l.jpg

Grand Collaboration

  • ICANN

    • Generic Domain Name Support Org (GNSO)

    • Country Code Domain Name SO (ccNSO)

    • Address Support Organization (ASO/NRO)

    • Gov’t Advisory Committee (GAC)

    • Security+Stability Advisory Comm (SSAC)

    • Root Server System Advisory Comm (RSSAC)

    • At Large Advisory Comm (ALAC) + Regional At Large Organizations (RALO)

    • Standing Committees (audit, finance, governance, nominations…)


Grand collaboration53 l.jpg

Grand Collaboration

  • Internet Society (ISOC)

  • Internet Architecture Board (IAB)

  • Internet Engineering Task Force (IETF)

  • Internet Engineering Steering Group (IESG)

  • Internet Research Task Force (IRTF)


Grand collaboration54 l.jpg

Grand Collaboration

  • International Telecommunications Union

    • ITU-T, ITU-D

  • United Nations

    • UN Development Program, Food and Agriculture Organization (!), UN Information and Communications Technology Task Force, UNESCO, ECOSOC, …


Grand collaboration55 l.jpg

Grand Collaboration

  • Professional Societies

    • IEEE, ACM, IEE, …

  • International Chamber of Commerce

  • World Intellectual Property Organization

  • And many more!


Internet policy l.jpg

Internet Policy

  • Many layers – see papers by Lawrence Solum, Larry Lessig and Richard Whitt

  • Extremely Broad

    • Technical Policy (address alloc, DNS integrity, …)

    • Intellectual property protection

    • Consumer protection (fraud, libel…)

    • Abuse (child pornography, drugs…)

    • Dispute Resolution (business, consumer…)

    • Privacy

    • Censorship

    • Freedom of speech


Recommendation l.jpg

Recommendation

  • Identify Issues and concerns FIRST

  • Develop a Taxonomy of issues

  • THEN consider venues in which issues and policy concerns can be address

  • Humbly but strongly urge that the policy issues be viewed IN LAYERED form to understand constituent responsibilities


Last note l.jpg

Last Note

  • Governance does not mean government

  • It INCLUDES government where this is appropriate but it is a distributed, multi-layer responsibility involving private, public sectors and civil society in a wide variety of ways.


  • Login