Can Barack Obama Crash the Internet?

By Derek Vaughan

On Tuesday January 20, 2009 at approximately 12:00 noon President-elect Barack Obama will take the Oath of Office to become the 44th President of the United States of America.The swearing in ceremony will be immediately followed by the inaugural address. It has been estimated by predictify.com that between 2 and 3 million people will attend the inauguration. Countless millions more will watch on television and video feeds streaming on the Internet.

For example, here is just a short list of places online to view the inauguration:

First the major networks. NBC will stream via MSNBC. CBS will show live Inauguration video here. ABC news will likley stream the events from its special inaguration section of its news site.

Now the rest. CSPAN has online coverage, Fox news and Hulu will stream the events as well. Facebook and CNN have a feed. Current will be Twittering the Inauguration. Then there are all the major worldwide newspapers that are certain to have video feeds: the New York Times, Washington Post, L.A. Times, Wall Street Journal, you can also add many other International media websites.

There is no doubt that history will be made on several fronts. However, there is speculation that the Internet may not be up to the challenge of the intensity of the usage tied to this single (short) event.

According to published reports, the CNN-Facebook live video stream was built to support more than 1 million simultaneous viewers. Facebook, Twitter, Hulu and Photobucket are all separately adding servers to increase bandwidth. So what exactly will happen when an enormous fraction of the world’s Internet population hit the World Wide Web at precisely the same time and read, view, upload and stream multiple packets en masse? No one really knows for sure.

John Johnson, a Verizon Wireless spokesman was quoted by the Los Angeles Times as saying, ”Any network is like a giant highway system. We’ve added thousands and thousands of new lanes for the inauguration. But millions and millions of cars can still cause a traffic jam if they try to move in the same place at the same time.”

Ultimately, each of the streams, texts, or photos are the responsibility of a hosting provider and reside on servers at the data centers of hosting providers. Here are the opinions of two hosting experts on what might happen.

”There are two systems for streaming content to end users,” stated Daniel Foster, co-founder and technical expert at business web hosting firm 34SP.com. ”The first of these is unicast, where each user viewing the content has a connection to the server sending the content. Sending to 2 people requires double the bandwidth of a single user to be available. Sending to a million people requires a million times as much. Clearly this is not a very scalable situation! The solution to this problem is multicast streaming. In multicast, a single copy of the data is sent as far along the network as possible, and the router at the point where the data separates will send a copy of the data to each user. This results in far less data being transmitted across the trunks of the internet which do have a limited, though very high, capacity.”

Navisite Managed Dedicated Hosting expert William Toll gave his take on the inaugural events and the Internet, ”The Internet is remarkably resilient. Between big events and malicious activity (DDoS attacks etc.), for the most part I believe there will not be any wide-spread Internet wide issues during this widely anticipated event. With several Web properties preparing for the traffic with extra servers, CDN services and load balancing, I believe most Web sites promising coverage will be available – if not slightly degraded. It’s also important to note that YouTube and other video sites are now able to distribute this content at anytime. In a way the Internet is the new Tivo. We can time shift our participation in history.”

So we’ll see how history plays out – both in terms of the speeches and activities of the inauguration, and how the Internet infrastructure and hosting companies handle this epic event.

This content was written by Derek Vaughan exclusively for the Host Discussion Blog.


How To Choose The Right Managed Services Data Center for PCI Compliancy

By Chris Henning

If you accept, retain, or process credit cards your server needs to be PCI compliant. Failure to do so can result in your merchant account being revoked by your card processor. Finding a good partner Data Center NOC is paramount to enabling completion of PCI compliance. Even better, a NOC who provides Managed Services who can assist you to complete the rigid compliancy tasks. First of all, what does being PCI compliant even mean?

Payment Card Industry (PCI) Data Security Standard (DSS) was formalized to protect credit card holder data. The Internet has grown by leaps and bounds and home-based businesses to large corporations all accept and process credit card information. DSS standards were created to protect sensitive credit card data. As you are aware, Internet fraud is big business and credit card details falling in to criminal hands will result in large amounts of fraud.

Now that we know what PCI and DSS are and why they were created, how do you secure your web server to become compliant?

There are many steps in ensuring your server is PCI compliant. Below are bullet points provided from the PCI Security Standards Council:

  1. Install and maintain a firewall
  2. Do not use vendor-supplied default system passwords
  3. Protect stored cardholder data
  4. Use and regularly update anti-virus software or programs
  5. Encrypt transmission of cardholder data across open, public networks
  6. Restrict access to cardholder data by business need-to-know
  7. Develop and maintain secure systems and applications
  8. Assign a unique ID to each person with computer access
  9. Restrict physical access to cardholder data
  10. Track and monitor all access to network resources and cardholder data
  11. Regularly test and security systems and processes
  12. Maintain a policy that addresses information security for employees and contractors
  13. Shared Web Hosting providers have additional requirements they must meet to protect the cardholder data environment

The above seems like quite a bit to take in at first. One of the cornerstones is finding a good quality Data Center which provides you the tools you need to become PCI compliant. Ultimately, it is your responsibility to secure your systems. A good NOC can make this job much easier by providing easy to manage tools to get it done.

Things to look for in a PC compliant NOC:

  • Managed Services / Support team with an understanding of PCI DSS compliance
  • Hardware and Software Firewalls available
  • Anti-virus Software available
  • Key card entry only in to NOC
  • NOC limited to NOC employees ONLY
  • Offers SSL certificates
  • Employee screening (background checks)
  • On-site security
  • Secure and video monitored NOC

I’ve toured a lot of NOC’s and you would be shocked at how many advertising and promoting their services today can not meet the listing of requirements above. Main items lacking from 65 to 70% of all NOC’s I’ve toured are no employee screening, regular customers and others allowed to walk through a NOC, inadequate on site security (NONE), careless employees, and a general lack of understanding of security in general. Most important missing: QUALITY MANAGED SUPPORT TEAM UNDERSTANDING PCI COMPLIANCE.

The good thing is, there are high quality Data Centers available to you at affordable prices.

Many NOC’s listed on HostDiscussion.com offer quality hardware and software firewalls available to customers. In addition, these same NOC’s offer quality anti-virus / intrustion software. One of the NOC’s we suggest to small and large businesses on a regular basis is The Planet (http://www.theplanet.com). The Planet offers both hardware and software firewalls as well as highly secure NOC’s. Best yet, they offer the Managed Support and Services to assist you with the meeting the stringent PCI compliance.

For more quality information on managed services, be sure to visit this link:

Managed Support and Managed Service Providers

Information regarding PCI:

https://www.pcisecuritystandards.org/
https://pcisecuritystandards.org/pdfs/05-14-08.pdf
http://usa.visa.com/download/business/accepting_visa/support_center/cisp_overview.pdf#search=%22visa%20PCI%22