  人气指数: 5365 次
  编辑次数: 2 次 历史版本
  更新时间: 2013-08-04


Cyberspace美国白宫解读 发表评论(0) 编辑词条



      继Big Data之后,第二周情报分析的讨论主题是:cyberspace。这次,我选择以美国白宫的相关文件为切入点,对Cyberspace进行解读。

The white house file “international strategy for cyberspace”
"national cybersecurity center policy capture" and "commenrical/civil cyber community snapshot"

                     维基百科:“Cyberspace is the electronic medium of computer networks, in which online communication takes place.” 
cyberspace是基于computer networks
二、 The white house file “international strategy for cyberspace”
       在美国白宫的网站(http://www.whitehouse.gov/cyberreview/documents/),有一页专门叫做cyberspace Policy Review,基本上,你可以在上面找到所有美国白宫有关Cyberspace的文件。从2003年开始,美国政府就开始关注cyberspace的有关发展,并出台了一些政策。国内这一方面的研究,根据CNKI的数据,最早从事cyberspace的研究的是清华大学科学技术与社会研究所的曾国屏,而国内的关于cyberspace的政策研究则一直处于迟缓状态。
        在上面的cyberspace Policy Review中,我从美国总统办公室2011年5月发布的一个法令来看。法令的PDF可以在网上下载
        2.1 introduce
“Cybersecurity is not an end unto itself….to ensure that innovation continues to flourish, drive markets, and improve lives…free speech and association, privacy, and the free flow of information.”
This is not the first time my Administration has addressed the policy challenges surrounding these technologies, but it is the first time that our nation has laid out an approach that unifies our engagement with international partners on the full range of cyber issues. And so this strategy outlines not only a vision for the future of cyberspace, but an agenda for realizing it. 
 Together, we can work together to build a future for cyberspace that is open, interoperable, secure, and reliable.

          2.2 Table of contents
Table of Contents
I. Building Cyberspace Policy
Strategic Approach
   Building on Successes
   Recognizing the Challenges 
   Grounded in Principle
II. Cyberspace’s Future
The Future We Seek
   Open and Interoperable: A Cyberspace That Empowers 
   Secure and Reliable: A Cyberspace That Endures 
   Stability Through Norms 
Our Role in Cyberspace’s Future 
   Diplomacy: Strengthening Partnerships
   Defense: Dissuading and Deterring 
   Development: Building Prosperity and Security 
III. Policy Priorities 
Economy: Promoting International Standards and Innovative, Open Markets
Protecting Our Networks: Enhancing Security, Reliability, and Resiliency
Law Enforcement: Extending Collaboration and the Rule of Law  
Military: Preparing for 21st Century Security Challenges
Internet Governance: Promoting Effective and Inclusive Structures 
International Development: Building Capacity, Security, and Prosperity
Internet Freedom: Supporting Fundamental Freedoms and Privacy
IV. Moving Forward 
        首先,我不得不说米国佬对于国家战略层面的事是极其认真的,并且毫无纸上谈兵之势,从最开始的Strategic Approach开始,句句真刀真枪,既然我推出了,我就要这么做。

          2.3 Building Cyberspace Policy
Building on success
The United States is committed to preserving and enhancing the benefits of digital networks to our societies and economies.
Recognizing the challenges
The United States acknowledges that the growth of these networks brings with it new challenges for our national and economic security and that of the global community. 
Grounded in principle 
The United States will confront these challenges—while preserving our core principles. 
The reach of networked technology is pervasive and global. For all nations, the underlying digital infrastructure is or will soon become a national asset.
To realize fully the benefits that network technology promises the world, these system must function reliable and securely.
It must retain the openness and interoperability that have characterized its explosive growth.
The future of an open, interoperable, secure and reliable cyberspace depends on nations recognizing and safeguarding that which should endure, which confronting those who would destabilize or undermine our increasingly networked world.
In this work, we are grounded in principals essential not just to American foreign policy, but to the future of the Internet itself.
           这句话是在谈到strategy approach的第一句话。这句话本身可能有点冠冕堂皇,但是,的却,我认为人类社会是需要一批人为这样一件事去努力,这是值得的。我一直也认为,做一件事得抱着信念,正确的价值导向是信念很重要的标准。
Fundamental Freedoms 
Free Flow of Information 
our commitment to freedom of expression and association is abiding, but does not come at the expense of public safety or the protection of our citizens.
Fundamental freedoms is the ability to seek, receive and impart information and ideas through any medium and regardless of frontiers has never been more relevant.
As a nation, we are not blind to those Internet users with malevolent intentions, but recognize that exceptions to free speech in cyberspace must also be narrowly tailored
             Privacy没有什么好说的,就目前而言,信息公开与隐私权边界是说不清道不明的,而且在信息技术的发展下,这样的情况会引起越来越多的争议。在free flow of information上,我们重点关注下面三句话:
The best cybersecurity solutions are dynamic and adaptable, with minimal impact on network performance.
States do not, and should not have to choose between the free flow of information and the security of their networks.
Both supports our national security and advances our common values.
           在这一段,文件围绕free flow of information,谈了他们认为cyberspace最佳的解决方法,他们认为这种方法应该是动态性和适应性的,并且能用最小的影响换来网络的最佳表现。在这里,他谈到了国家不能以任何理由在信息的免费流通和安全上做选择,因为前者是最基本的原则,并且把目前天朝的GFW的象限称之为illusion of security,现实证明,这可能真的是一种幻觉。最后,美国人表达了他们的决心,希望在安全和普世价值上找到能相互包容的解决方法。
               2.3 Cyberspace’s Future
             The United States will work internationally to promote an open, interoperable, secure, and reliable information and communications infrastructure that supports international trade and commerce, strengthens international security, and fosters free expression and innovation. To achieve that goal, we will build and sustain an environment in which norms of responsible behavior guide states’ actions, sustain partnerships, and support the rule of law in cyberspace.
                接下来,文件又对他们所期望的目标进行了详细的解释,重点集中在:Open and Interoperable: A Cyberspace That Empowers;Secure and Reliable: A Cyberspace That Endures;Stability Through Norms。
                在提到Open and Interoperable: A Cyberspace That Empowers时,文件提到:
The collaborative development of consensus-based international standards for information and communication technology is a key part of preserving openness and interoperability, growing our digital economies, and moving our societies forward.
                可以看出,美国人在这次事件中是极其强调合作的。在谈到Secure and Reliable: A Cyberspace That Endures时,文件从Economically, politically, socially全方面的解释了为什么未来的cyberspace要安全并且可靠。
                接着,在谈到Stability through norms时,文件首先强调了范式的作用,然后阐述了美国在建设未来cyberspace时的基本范式——upholding fundamental freedoms, respect for property, valuing privacy, protection for crime, right of self-defense.
The development of norms for state conduct in cyberspace does not require a reinvention of customary international law, nor does it render existing international norms obsolete  Long-standing international norms guiding state behavior—in times of peace and conflict—also apply in cyberspace. 
In designing the next generation of these systems, we must advance the common interest by supporting the soundest technical standards and governance structures, rather than those that will simply enhance national prestige or political control.
Diplomacy: Strengthening Partnerships
Diplomatic Objective: The United States will work to create incentives for, and build consensus around, an international environment in which states—recognizing the intrinsic value of an open, interoperable, secure, and reliable cyberspace—work together and act as responsible stakeholders.
Defense: Dissuading and Deterring
Defense Objective: The United States will, along with other nations, encourage responsible behavior and oppose those who would seek to disrupt networks and systems, dissuading and deterring malicious actors, and reserving the right to defend these vital national assets as necessary and appropriate.
Development: Building Prosperity and Security
Development Objective: The United States will facilitate cybersecurity capacity-building abroad, bilaterally and through multilateral organizations, so that each country has the means to protect its digital infrastructure, strengthen global networks, and build closer partnerships in the consensus for open, interoperable, secure, and reliable networks  

               2.4 Policy Priorities 
Economy: Promoting International Standards and Innovative, Open Markets
l  Sustain a free-trade environment that encourages technological innovation on accessible, globally linked networks.
l  Sustain a free-trade environment that encourages technological innovation on accessible, globally linked networks.
l  Ensure the primacy of interoperable and secure technical standards, determined by technical experts.
Protecting Our Networks: Enhancing Security, Reliability, and Resiliency
l  Promote cyberspace cooperation, particularly on norms of behavior for states and cybersecurity, bilaterally and in a range of multilateral organizations and multinational partnerships.
l  Reduce intrusions into and disruptions of U.S. networks.
l  Ensure robust incident management, resiliency, and recovery capabilities for information infrastructure
l  Improve the security of the high-tech supply chain, in consultation with industry.
Law Enforcement: Extending Collaboration and the Rule of Law
l  Participate fully in international cybercrime policy development
l  Harmonize cybercrime laws internationally by expanding accession to the Budapest Convention
l  Focus cybercrime laws on combating illegal activities, not restricting access to the Internet
l  Deny terrorists and other criminals the ability to exploit the Internet for operational planning, financing, or attacks.
Military: Preparing for 21st Century Security Challenges
l  Recognize and adapt to the military’s increasing need for reliable and secure networks.
l  Build and enhance existing military alliances to confront potential threats in cyberspace.
l  Expand cyberspace cooperation with allies and partners to increase collective security.
Internet Governance: Promoting Effective and Inclusive Structures
l  Prioritize openness and innovation on the Internet.
l  Preserve global network security and stability, including the domain name system(DNS)
l  Promote and enhance multi-stakeholder venues for the discussion of Internet governance issues
International Development: Building Capacity, Security, and Prosperity
l  International Development: Building Capacity, Security, and Prosperity
l  Continually develop and regularly share international cybersecurity best practices.
l  Enhance states’ ability to fight cybercrime—including training for law enforcement, forensic specialists, jurists, and legislators.
l  Develop relationships with policymakers to enhance technical capacity building, providing regular and ongoing contact with experts and their United States Government counterparts.
Internet Freedom: Supporting Fundamental Freedoms and Privacy
l  Support civil society actors in achieving reliable, secure, and safe platforms for freedoms of expression and association.
l  Collaborate with civil society and nongovernment organizations to establish safeguards protecting their Internet activity from unlawful digital intrusions.
l  Encourage international cooperation for effective commercial data privacy protections.
l  Ensure the end-to-end interoperability of an Internet accessible to all.

3.  "national cybersecurity center policy capture" and "commenrical/civil cyber community snapshot" 
            Cyberspace——对美国白宫相关文件的解读 - choi - Mr.Choi
Cyberspace——对美国白宫相关文件的解读 - choi - Mr.Choi

4. 四个问题的提出 
1.  What should be the federal government’s role in protecting critical infrastructure from cyber attacks from nation-state/non-nation-state actors?   
2. What are the thresholds at which businesses/organizations report cyber security incidents to government entities like US-CERT (ostensibly beyond what’s legally mandated, such as state laws on reporting data breaches)?   
 3. What specific changes are needed to make public-private partnerships more effective and workable?  What measures are necessary to ensure an approach where “action plans” are employed which businesses/government can effectively measure progress toward a cyberspace that is “assured, reliable, and survivable”?  (What are industry roles and responsibilities?  How should we think about private sector accountability?) 
 4. How can industry and government achieve a national cyber security posture which encourages innovation and prosperity?  (How do we amplify both security and economic prosperity?  Are current government structures effective?  How can we create and maintain security in cyberspace while balancing the need for economic growth, privacy, etc.?) 



