Data Retention. Who What Where - When. Anna Harmer. Assistant Secretary Electronic Surveillance Policy Branch. Greg Sadler



Similar documents
Communications Essentials

DATA RETENTION. Frequently Asked Questions for Industry

DATA RETENTION. Guidelines for Service Providers

[PRIVATE LABEL TELEPHONY SOLUTION]

Nex-Tech is now offering their decades of expertise to take your company to the next level.

ABOUT AT&T GLOBAL CLEARINGHOUSE

Subpoena Compliance and Special Investigations. Law Enforcement Assistance Guide for Internet Investigations

Load Balance Mechanism

Assuring Telecom (Infrastructure and Services) An Operations Perspective

Wireless Services. The Top Questions to Help You Choose the Right Wireless Solution for Your Business.

Contact Info. Canadian office: IPsmarx Technology Inc. Toronto, Ontario M5C 1Y2 USA. Canada Tel:

Position Paper 4. Closer understanding of the term third party networks and service providers" in relation to its application in Directive 2006/24/EC

UNIVERSITY OF CALIFORNIA, RIVERSIDE ANNUAL INVENTORY OF SYSTEMS CONTAINING PERSONAL PROTECTED DATA SEPTEMBER Organization

The Need for Speed: NZ s appetite for better broadband

Note: Admin rules mis-numbered see 8721 also THE STATE OF NEW HAMPSHIRE DEPARTMENT OF REVENUE ADMINISTRATION IN THE MATTER OF THE PETITION OF

How To Contact Answerfirst

INSTALLATION INSTRUCTIONS

Internet Privacy Options

Patrick Fair Partner, ITC and Data Security Specialist Baker & McKenzie. Developments in Security Regulation

Scorecard for wholesale DSL broadband unbundling and bitstream - figures as of 30 June August 2009

NOS Case Study. Operational Challenges SIGMA ENABLES NOS MULTIMEDIA TO DELIVER TRUE ALL-PLAY OFFERINGS ABOUT NOS

Assuring Your Business Continuity

World Voice-over Internet Protocol (VoIP) Services Market

WAN Failover Scenarios Using Digi Wireless WAN Routers

Security MWC Nokia Solutions and Networks. All rights reserved.

MIR Technologies Ltd

Preparatory Meeting for Phase 2 of Philippine National ENUM Trial

ABC PRIVACY POLICY. The ABC is strongly committed to protecting your privacy when you interact with us, our content, products and services.

HIGH SPEED BUSINESS SOLUTIONS WHERE YOU LEAST EXPECT THEM

FMIG Program of Excellence (PoE) Application

Analysis of the U.S. Dedicated Internet Access Services Market, 2012 Back On Track with Robust Recovery

Did you know your security solution can help with PCI compliance too?

UK ENUM - Update and impact. Jay Daley, Nominet UK

Chapter 3 Restricting Access From Your Network

Chapter 4 Restricting Access From Your Network

PowerLink Bandwidth Aggregation Redundant WAN Link and VPN Fail-Over Solutions

Small Business Server Part 2

Protocols. Packets. What's in an IP packet

F-Secure Messaging Security Gateway. Deployment Guide

DISCLOSURES WEB PRIVACY POLICY

New Study Finds Wireless VoIP Emerging as Threat to Mobile Carrier's Profits and Revenue

Trends of Interactive TV & Triple Play

Objectives. Remote Connection Options. Teleworking. Connecting Teleworkers to the Corporate WAN. Providing Teleworker Services

SERIES A : GUIDANCE DOCUMENTS. Document Nr 3

PANDA Monthly. & easy profits for you!

Missed Recovery Techniques for SQL Server By Rudy Panigas

1. Mobile VoIP solutions and Services:

Staying Up To Speed: Choosing the Right Network Connectivity to Boost Your Bottom Line. Cybera ONE - Webinar

1.264 Lecture 34. Telecom: Connecting wired LAN, WAN. Next class: Green chapter 17. Exercise due before class

DRO-210i LOAD BALANCING ROUTER. Review Package Contents

WineWeb Account Services

General Tariff Information

Wireless Installation Checklist for Novell GroupWise Environments

2.1.1 This policy and any future changes requires ratification by CAUDIT.

Microsoft Business Analytics Accelerator for Telecommunications Release 1.0

Scoping the market for business communications. Tanuja Randery President BTGS Strategy

IPv6 Migration Challenges for Large Service Providers

Enhance Your Network: How Cybera ONE Supports the Next-Generation C-store

Multimedia Service Platform

TAXONOMY OF TELECOM TERMS

Chapter 9. The Internet: Information Technology Infrastructure for the Digital Firm. Essentials of Management Information Systems

AXIS 70U - Using Scan-to-File

Broadcasting and Telecom Regulatory Policy CRTC

COMMUNICATIONS ALLIANCE LTD

MPLS: Key Factors to Consider When Selecting Your MPLS Provider Whitepaper

FACT SHEET DATA SOLUTIONS DSL INTERNET GRADE

Product Name: Recurring & Subscription Payments Version: Document Type: Help doc Author: Milople Inc.

ADVOSS SIP APPLICATION SERVERS

MaaS360 Mobile Service

The treatment of Voice over Internet Protocol (VoIP) under the EU Regulatory Framework

Adore Infotech. PC 2 Phone System

Glossary of Telco Terms

TR-069 Brings Flexibility To DSL Remote Management

The following Protective Markings are classified as Dissemination Limiting Markers (DLM).

Management Architecture and Distribution Framework for Home Network Services

Open Voice over IP according to Aastra SIP. Your connection to the World

ADSL or Asymmetric Digital Subscriber Line. Backbone. Bandwidth. Bit. Bits Per Second or bps

Regulatory Issues Associated with Provision of Voice Services Using Internet Protocol in Australia

SIP Server Installation (Mayah example)

Telecommunications (Interception and Access) Amendment (Data Retention) Bill 2014

Globarange Phones and joip Service. How does the Globarange phone work?

Conquering PCI DSS Compliance

A Simple Idea: Multiple Carriers, One Point of Contact

Strategic Analysis of the Brazilian Companies Investments in ICT

Internet Protocol Television (IPTV)

Introduction to Computer Networks and Data Communications

ALLNET ALL-VPN10. VPN/Firewall WLAN-N WAN Router

Communication Manager Template Library

U.S. Department of Justice. Federal Bureau of Investigation VIA ELECTRONIC SUBMISSION

Chapter 2 Voice services

JUNCTION CONNECTIONS SERVICES AGREEMENT WHOLESALE SIP TRUNKING & CALLING CARD - January 25, 2011

Toward Connected Vehicle with AGL

Taitell Telecom Equipamentos e Soluções

Privacy Policy Australian Construction Products Pty Limited

Submitting an application

Privacy Policy Last Updated September 10, 2015

Why Should Unified Communications Be Part Of Your Strategy?

Managed VoIP platform for delivering business class features to your clients. Deliver reliable Voice Over IP service without licensing costs

SIP Security Controllers. Product Overview

Transcription:

Data Retention Who What Where - When Special Guests Anna Harmer Assistant Secretary Electronic Surveillance Policy Branch Greg Sadler Acting Director Electronic Surveillance Capability and Engagement Section 2 Data Retention who, what, how, when 1

Consultation Groups Many Other Submissions Parliamentary Joint Committee on Intelligence & Security ISPSIG (subset of AusNOG) Industry/Government Working Group Experts Working Group DRIP Working Group FAQs, Guidelines, Meetings, Case Studies 3 When? SP Submit DRIP by 16 July 15 AGD Review- up to 60 days DON T PANIC SP revision up to 30 days Likely to be significant leniency and forebearance, IF you can show reasonable efforts Be Compliant (with law or DRIP) by 13 October 15 DRIP valid for 18 months 4 Data Retention who, what, how, when 2

Who? Carrier? (easy Carrier License) ISP? (easy L3 IP Transit to global Internet) CSP? (self-assess Telecoms Act) 6 Data Retention who, what, how, when 3

Don t Confuse Acts Telco Act: Are you a CSP? TIA Act : Is it a Relevent Service? 7 What? Think about the SERVICE at the highest level If its not intended/designed for carrying communications, it is NOT relevent. (You are not expected to try to second-guess how a terrorist might mis-use your service). 8 Data Retention who, what, how, when 4

Exemptions Not apply to a Broadcasting Service IPTV/streaming VOD is not a Broadcasting Service you ll need to apply for an exemption Not destination URLs (no web browsing history ). Not Email Subject lines (Subject text is Content), or similar Not Over the top services (e.g. VoIP or Email to a server outside your network you don t operate) Not services operated by a different CSP using your underlying service. Only services that you provide. Not same area (e.g. WiFi café hotspot, in-building, internal campus) or immediate circle (e.g. VPN/closed-group) 9 What? 1 Subscriber/Customer/Account Info Keep all change history Keep for 2 years AFTER last service is cancelled 2 SOURCE identifiers relative to the service E.g. EMAIL service source EMAIL address, IP address 3 DESTINATION identifiers 4 Date/Time/Duration of SESSION (incl Timezone) 5 Type of communication + value added features (telephone call, Email message, Email session, Internet Access ADSL2, Internet Access Satellite) 6 Location (at start and end if different) 10 Data Retention who, what, how, when 5

Wholesale / Retail Not expected to collect data from other CSPs Don t overcomplicate matters! Use *YOUR* Logs E.g wholesale DSL network won t have end-user account details for each line Subscriber is the RSP Agency can then use RSP + ServiceID to gain end-user details from the RSP E.g. retailer won t have SRC/DEST protocol addressing data Retailer will have street address location. Agency can request service addresses from wholesale network. 11 Encryption / Protection Operationally Unworkable AGD FAQ suggests keep 2 datastores. Encrypt the datastore used for Data Retention. Keep existing business/operational systems un-encrypted. Internet Australia recommends apply for an exemption from the encryption requirement for all existing systems. Make sure password/access control/access logging is robust. 12 Data Retention who, what, how, when 6

$$ Cost Recovery $$ $131 million, against estimates of up to $380 million Nobody inside or outside government has any idea how or when the funds might be distributed. Keep Receipts and Invoices. Don t Ask today.there is no answer yet. 13 $$ Cost Recovery 2 $$ consider applying for a variation or exemption from some or all requirements: 14 Data Retention who, what, how, when 7

Q AND A? Who What Where - When FAQs and Resources http://www.ag.gov.au/nationalsecurity/dataretention/pages/in dustry-implementation-of-data-retention.aspx Data Retention Overview Guidelines for Service Providers FAQs (living doc check periodically for expansions) DRIP & Exemption Application Template 16 Data Retention who, what, how, when 8

Who to call CAC - Communications Access Coordinator mailto:cac@ag.gov.au Tel: +61-2-6141-2884 Internet Australia ISPSIG mailing list mailto:isp-sig@lists.internet.org.au http://lists.internet.org.au/cgi-bin/mailman/listinfo/isp-sig 17 Thankyou George Fong President@internet.org.au Paul Brooks Paul.Brooks@internet.org.au 18 Data Retention who, what, how, when 9