Last updated: 
2 months 2 days ago
Blog Manager
One of Jisc’s activities is to monitor and, where possible, influence regulatory developments that affect us and our customer universities, colleges and schools as operators of large computer networks. Since Janet and its customer networks are classified by Ofcom as private networks, postings here are likely to concentrate on the regulation of those networks. Postings here are, to the best of our knowledge, accurate on the date they are made, but may well become out of date or unreliable at unpredictable times thereafter. Before taking action that may have legal consequences, you should talk to your own lawyers. NEW: To help navigate the many posts on the General Data Protection Regulation, I've classified them as most relevant to developing a GDPR compliance process, GDPR's effect on specific topics, or how the GDPR is being developed. Or you can just use my free GDPR project plan.

Group administrators:

.ch and .li domains promoting malware clean-up

Monday, April 29, 2013 - 13:06

An interesting news item from SWITCH, the Swiss NREN and also operator of the .ch and .li TLD registries, on how they are alerting website owners to malware and, if necessary, taking action to protect customers from being infected.

Swiss law allows the registry to suspend a domain for five days, or longer if the need to do so is confirmed by the national information assurance reporting centre. A few months ago, SWITCH began scanning websites within their domains to determine if they had been infected by malware (malicious code that can be downloaded to a PC along with the rest of the content of a website) and informing the site owners if problems were identified. If the site owner does not respond within one working day then the domain is temporarily suspended so browsers attempting to visit it get an error page instead. The domain is restored as soon as the owner confirms that it has been cleaned or after five days if the reporting centre does not authorise a longer period. Even if the website is not disinfected, the five day suspension should allow time for users to (auto-)install updates to anti-virus and web browser blocklists to protect themselves.

The process resulted in the prompt removal of 88% of the website infections discovered.

[UPDATE: A report on the first six months of the project has been published]