<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Saragiotis Blog</title>
	<atom:link href="http://www.saragiotis.gr/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.saragiotis.gr</link>
	<description>An every day adventure</description>
	<lastBuildDate>Sat, 02 Apr 2011 09:21:06 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
		<item>
		<title>Εργασίες του ΟΤΕ για την εγκατάσταση δικτύου VDSL Στην Ξάνθη</title>
		<link>http://www.saragiotis.gr/posts/vdslinxanthi/</link>
		<comments>http://www.saragiotis.gr/posts/vdslinxanthi/#comments</comments>
		<pubDate>Thu, 31 Mar 2011 08:21:22 +0000</pubDate>
		<dc:creator>pssara</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[VDSL]]></category>
		<category><![CDATA[ΜΔΟΙ]]></category>
		<category><![CDATA[Ξάνθη]]></category>
		<category><![CDATA[ΟΤΕ]]></category>
		<category><![CDATA[Σχολεία]]></category>

		<guid isPermaLink="false">http://www.saragiotis.gr/?p=76</guid>
		<description><![CDATA[Διάβασα στην Xanthi press ότι ο ΟΤΕ ο ΟΤΕ «εγκαθιστά το πρώτο δικτύο οπτικών ινών νέας γενιάς VDSL στην Ξάνθη». Καταρχήν δεν είναι το πρώτο δίκτυο οπτικών ινών και δεν είναι δίκτυο οπτικών ινών με την έννοια του ότι η ίνα δεν φτάνει ούτε στο χρήστη ούτε στο κτίριο του. Ο χρήστης συνδέεται με χαλκό [...]]]></description>
			<content:encoded><![CDATA[<div class="wp-caption alignleft" style="width: 370px"><img title="Εργασίες του ΟΤΕ για το δίκτυο VDSL" src="http://www.xanthipress.gr/images/stories/NEWS/ote_vdsl.jpg" alt="Εργασίες του ΟΤΕ για το δίκτυο VDSL" width="360" height="270" /><p class="wp-caption-text">Εργασίες του ΟΤΕ για το δίκτυο VDSL</p></div>
<p>Διάβασα στην <a href="http://www.xanthipress.gr/eidiseis/koinonia/7118-vdsl-xanthi-ergasiew-pilotika-.html">Xanthi press </a>ότι ο ΟΤΕ ο ΟΤΕ «εγκαθιστά το πρώτο δικτύο οπτικών ινών νέας γενιάς VDSL στην Ξάνθη». Καταρχήν δεν είναι το πρώτο δίκτυο οπτικών ινών και δεν είναι δίκτυο οπτικών ινών με την έννοια του ότι η ίνα δεν φτάνει ούτε στο χρήστη ούτε στο κτίριο του. Ο χρήστης συνδέεται με χαλκό με την μόνη διαφορά ότι ο εξοπλισμός xDSL βρίσκεται στο ικρίωμα (ΚΑΦΑΟ) του ΟΤΕ σε σχετικά κοντινή απόσταση με τον χρήστη.</p>
<p>Σε όλη την Ευρώπη οι τηλεπικοινωνιακοί πάροχοι με δεσπόζουσα θέση στην αγορά, όπως ο ΟΤΕ, εγκαθιστούν δίκτυα FTTx με την οπτική ίνα στο χρήστη. Ακόμα χειρότερα, ενώ έσκαψαν όλη την πόλη, η τεχνολογία των σωληνώσεων που εγκατέστησαν και των οπτικών ινών δεν επιτρέπει την περαιτέρω αναβάθμιση σε FTTx. Δεν εγκατέστησαν μικροσωλήνια συστήματα παρά μια ή δύο σωλήνες Φ40 με ένα καλώδιο οπτικών ινών με σκληρό περίβλημα να περνάει μέσα από αυτές.</p>
<p>Όσο, για το πρώτο δίκτυο οπτικών ινών στην Ξάνθη, και αυτό είναι λάθος. Στην Ξάνθη έχει εγκατασταθεί εδώ και χρόνια το ΜΔΟΙ (Μητροπολιτικό δίκτυο οπτικών ινών) του Δήμου Ξάνθης. Το ΜΔΟΙ συνδέει όλα τα κτίρια δημοσίου ενδιαφέροντος με οπτικές ίνες και ενεργό εξοπλισμό, προσφέροντας συμμετρικές ταχύτητες μέχρι 1Gbps (20πλάσια από την μέγιστη ταχύτητα που θα προσφέρει το VDSL του ΟΤΕ). Εδώ και αρκετούς μήνες τα σχολεία της Ξάνθης είναι συνδεδεμένα στο internet με αυτές τις ταχύτητες.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.saragiotis.gr/posts/vdslinxanthi/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Wikis complemented by mind maps in education</title>
		<link>http://www.saragiotis.gr/posts/wikis-mindmaps/</link>
		<comments>http://www.saragiotis.gr/posts/wikis-mindmaps/#comments</comments>
		<pubDate>Tue, 29 Mar 2011 22:14:13 +0000</pubDate>
		<dc:creator>pssara</dc:creator>
				<category><![CDATA[Education]]></category>
		<category><![CDATA[Wikis]]></category>
		<category><![CDATA[Διαδικτυακά εκπαιδευτικά περιβάλλοντα]]></category>
		<category><![CDATA[Συνεργατική Μάθηση]]></category>

		<guid isPermaLink="false">http://www.saragiotis.gr/?p=53</guid>
		<description><![CDATA[Οι εκπαιδευτικές κοινότητες προσπαθούν, το τελευταίο διάστημα, να βρουν τρόπους για να συμπληρώνουν τις παραδοσιακές μεθόδους διδασκαλίας και μάθησης, χρησιμοποιώντας διδακτικά σενάρια που εκθέτουν τους μαθητές τους σε υλικό του μαθήματος που βρίσκεται στο διαδίκτυο. Μια διαδικτυακή πλατφόρμα που έχει χρησιμοποιηθεί ευρέως για τη στήριξη της συνεργατικής μάθησης είναι το Wiki, το οποίο επιτρέπει την [...]]]></description>
			<content:encoded><![CDATA[<iframe src="http://prezi.com/9b3upsjeu0y9/view/" width="545" height="320"></iframe>
<p>Οι εκπαιδευτικές κοινότητες προσπαθούν, το τελευταίο διάστημα, να βρουν τρόπους για να συμπληρώνουν τις παραδοσιακές μεθόδους διδασκαλίας και μάθησης, χρησιμοποιώντας διδακτικά σενάρια που εκθέτουν τους μαθητές τους σε υλικό του μαθήματος που βρίσκεται στο διαδίκτυο.</p>
<p>Μια διαδικτυακή πλατφόρμα που έχει χρησιμοποιηθεί ευρέως για τη στήριξη της συνεργατικής μάθησης είναι το Wiki, το οποίο επιτρέπει την εύκολη δημιουργία και επεξεργασία οποιουδήποτε αριθμού αλληλένδετων ιστοσελίδων με μια εξαιρετικά συνεργατική μέθοδο. Ως αποτέλεσμα, τα Wikis αποδεδειγμένα παρουσιάζουν ιδιαίτερο ενδιαφέρον για τη συμπλήρωση και επέκταση των διδακτικών σεναρίων.</p>
<p>Ωστόσο, η χρήση των Wikis από τους μαθητές χωρίς περαιτέρω καθοδήγηση έχει αποδειχθεί ότι δεν παράγει τα επιθυμητά αποτελέσματα. Στα εκπαιδευτικά περιβάλλοντα, τα κομμάτια της γνώσης πρέπει να εντοπίζονται εύκολα και να είναι καλά δομημένα.</p>
<p>Στην εργασία αυτή, προτείνουμε τη συμπληρωματική χρήση εργαλείων Νοητικής Χαρτογράφησης για να ξεπεραστούν τα μειονεκτήματα των συστημάτων Wiki και την ενίσχυση της χρήσης των Wiki σε εκπαιδευτικά περιβάλλοντα.</p>
<p>Ο κύριος στόχος της εργασίας μας είναι να παρέχει στους μαθητές ένα τρόπο για να δομούν συγκροτημένες σχέσεις ανάμεσα στα θέματα, όταν χρησιμοποιούν Wikis. Επιπλέον, παρουσιάζονται τα  διαφορετικά επίπεδα αλληλεπίδρασης μεταξύ των Wikis και των Νοητικών Χαρτών μέσα από τη μελέτη περίπτωσης του διδακτικού σεναρίου εργασίας «Ελληνική μυθολογία»</p>
<blockquote><p>Εργασία που θα παρουσιαστεί στο 5ο Συνέδριο Καθηγητών Πληροφορικής.</p></blockquote>
<div id="_mcePaste" class="mcePaste" style="position: absolute; left: -10000px; top: 0px; width: 1px; height: 1px; overflow: hidden;"><!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:TrackMoves /> <w:TrackFormatting /> <w:PunctuationKerning /> <w:ValidateAgainstSchemas /> <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid> <w:IgnoreMixedContent>false</w:IgnoreMixedContent> <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText> <w:DoNotPromoteQF /> <w:LidThemeOther>EL</w:LidThemeOther> <w:LidThemeAsian>X-NONE</w:LidThemeAsian> <w:LidThemeComplexScript>X-NONE</w:LidThemeComplexScript> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> <w:DontGrowAutofit /> <w:SplitPgBreakAndParaMark /> <w:DontVertAlignCellWithSp /> <w:DontBreakConstrainedForcedTables /> <w:DontVertAlignInTxbx /> <w:Word11KerningPairs /> <w:CachedColBalance /> </w:Compatibility> <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel> <m:mathPr> <m:mathFont m:val="Cambria Math" /> <m:brkBin m:val="before" /> <m:brkBinSub m:val=" " /> <m:smallFrac m:val="off" /> <m:dispDef /> <m:lMargin m:val="0" /> <m:rMargin m:val="0" /> <m:defJc m:val="centerGroup" /> <m:wrapIndent m:val="1440" /> <m:intLim m:val="subSup" /> <m:naryLim m:val="undOvr" /> </m:mathPr></w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml> <w:LatentStyles DefLockedState="false" DefUnhideWhenUsed="true"   DefSemiHidden="true" DefQFormat="false" DefPriority="99"   LatentStyleCount="267"> <w:LsdException Locked="false" Priority="0" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Normal" /> <w:LsdException Locked="false" Priority="9" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="heading 1" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 2" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 3" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 4" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 5" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 6" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 7" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 8" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 9" /> <w:LsdException Locked="false" Priority="39" Name="toc 1" /> <w:LsdException Locked="false" Priority="39" Name="toc 2" /> <w:LsdException Locked="false" Priority="39" Name="toc 3" /> <w:LsdException Locked="false" Priority="39" Name="toc 4" /> <w:LsdException Locked="false" Priority="39" Name="toc 5" /> <w:LsdException Locked="false" Priority="39" Name="toc 6" /> <w:LsdException Locked="false" Priority="39" Name="toc 7" /> <w:LsdException Locked="false" Priority="39" Name="toc 8" /> <w:LsdException Locked="false" Priority="39" Name="toc 9" /> <w:LsdException Locked="false" Priority="35" QFormat="true" Name="caption" /> <w:LsdException Locked="false" Priority="10" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Title" /> <w:LsdException Locked="false" Priority="1" Name="Default Paragraph Font" /> <w:LsdException Locked="false" Priority="11" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtitle" /> <w:LsdException Locked="false" Priority="22" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Strong" /> <w:LsdException Locked="false" Priority="20" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Emphasis" /> <w:LsdException Locked="false" Priority="59" SemiHidden="false"    UnhideWhenUsed="false" Name="Table Grid" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Placeholder Text" /> <w:LsdException Locked="false" Priority="1" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="No Spacing" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 1" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 1" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 1" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 1" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 1" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Revision" /> <w:LsdException Locked="false" Priority="34" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="List Paragraph" /> <w:LsdException Locked="false" Priority="29" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Quote" /> <w:LsdException Locked="false" Priority="30" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Quote" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 1" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 1" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 1" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 1" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 1" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 1" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 1" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 2" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 2" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 2" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 2" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 2" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 2" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 2" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 2" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 2" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 2" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 2" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 3" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 3" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 3" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 3" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 3" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 3" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 3" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 3" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 3" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 3" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 3" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 3" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 3" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 4" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 4" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 4" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 4" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 4" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 4" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 4" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 4" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 4" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 4" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 4" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 4" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 4" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 4" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 5" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 5" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 5" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 5" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 5" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 5" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 5" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 5" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 5" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 5" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 5" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 5" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 5" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 5" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 6" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 6" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 6" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 6" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 6" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 6" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 6" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 6" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 6" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 6" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 6" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 6" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 6" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 6" /> <w:LsdException Locked="false" Priority="19" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Emphasis" /> <w:LsdException Locked="false" Priority="21" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Emphasis" /> <w:LsdException Locked="false" Priority="31" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Reference" /> <w:LsdException Locked="false" Priority="32" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Reference" /> <w:LsdException Locked="false" Priority="33" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Book Title" /> <w:LsdException Locked="false" Priority="37" Name="Bibliography" /> <w:LsdException Locked="false" Priority="39" QFormat="true" Name="TOC Heading" /> </w:LatentStyles> </xml><![endif]--><!--[if gte mso 10]> <mce:style><!   /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Κανονικός πίνακας"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-qformat:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin:0cm; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:"Times New Roman"; 	mso-fareast-theme-font:minor-fareast; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman"; 	mso-bidi-theme-font:minor-bidi;} --> <!--[endif]-->&nbsp;</p>
<p class="MsoNormal" style="text-align: justify;"><span style="font-size: 10pt;">Οι εκπαιδευτικές κοινότητες προσπαθούν, το τελευταίο διάστημα, να βρουν τρόπους για να συμπληρώνουν τις παραδοσιακές μεθόδους διδασκαλίας και μάθησης, χρησιμοποιώντας διδακτικά σενάρια που εκθέτουν τους μαθητές τους σε υλικό του μαθήματος που βρίσκεται στο διαδίκτυο. Μια διαδικτυακή πλατφόρμα που έχει χρησιμοποιηθεί ευρέως για τη στήριξη της συνεργατικής μάθησης είναι το Wiki, το οποίο επιτρέπει την εύκολη δημιουργία και επεξεργασία οποιουδήποτε αριθμού αλληλένδετων ιστοσελίδων με μια εξαιρετικά συνεργατική μέθοδο. Ως αποτέλεσμα, τα Wikis αποδεδειγμένα παρουσιάζουν ιδιαίτερο ενδιαφέρον για τη συμπλήρωση και επέκταση των διδακτικών σεναρίων. Ωστόσο, η χρήση των Wikis από τους μαθητές χωρίς περαιτέρω καθοδήγηση έχει αποδειχθεί ότι δεν παράγει τα επιθυμητά αποτελέσματα. Στα εκπαιδευτικά περιβάλλοντα, τα κομμάτια της γνώσης πρέπει να εντοπίζονται εύκολα και να είναι καλά δομημένα. Στην εργασία αυτή, προτείνουμε τη συμπληρωματική χρήση εργαλείων Νοητικής Χαρτογράφησης για να ξεπεραστούν τα μειονεκτήματα των συστημάτων Wiki και την ενίσχυση της χρήσης των Wiki σε εκπαιδευτικά περιβάλλοντα. Ο κύριος στόχος της εργασίας μας είναι να παρέχει στους μαθητές ένα τρόπο για να δομούν συγκροτημένες σχέσεις ανάμεσα στα θέματα, όταν χρησιμοποιούν Wikis. Επιπλέον, παρουσιάζονται τα<span> </span>διαφορετικά επίπεδα αλληλεπίδρασης μεταξύ των Wikis και των Νοητικών Χαρτών μέσα από τη μελέτη περίπτωσης του διδακτικού σεναρίου εργασίας «Ελληνική μυθολογία»</span></p>
<p class="MsoNormal"><strong><span style="font-size: 10pt;">Λέξεις κλειδιά: </span></strong><em><span style="font-size: 10pt;">Συνεργατική Μάθηση, Διαδικτυακά εκπαιδευτικά περιβάλλοντα, Wikis, Νοητικοί Χάρτες.</span></em></p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.saragiotis.gr/posts/wikis-mindmaps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Becoming a Seconded National Expert</title>
		<link>http://www.saragiotis.gr/posts/becoming-a-seconded-national-expert/</link>
		<comments>http://www.saragiotis.gr/posts/becoming-a-seconded-national-expert/#comments</comments>
		<pubDate>Sun, 27 Sep 2009 19:31:34 +0000</pubDate>
		<dc:creator>pssara</dc:creator>
				<category><![CDATA[Public Administration]]></category>
		<category><![CDATA[EU]]></category>
		<category><![CDATA[Seconded National Expert]]></category>

		<guid isPermaLink="false">http://www.saragiotis.gr/?p=7</guid>
		<description><![CDATA[If you are working in the public administration in Greece or in any other EU Member State, you have the opportunity to be seconded to an EU Institution or Agency. This is a How-To guide for becoming an SNE, when you are working for the Greek Public Administration. The procedures that have to be followed [...]]]></description>
			<content:encoded><![CDATA[<p>If you are working in the public administration in Greece or in any other EU Member State, you have the opportunity to be seconded to an EU Institution or Agency.</p>
<p>This is a How-To guide for becoming an SNE, when you are working for the Greek Public Administration. The procedures that have to be followed and the permits that have to be obtained by a candidate are documented. While some of them apply to a candidate from any Member State, the particularities of the Greek Public Administration are followed and explained.</p>
<p>Besides of a guide for candidates, this post aims to be an <span style="text-decoration: underline;">incentive for the Greek Government to simplify</span> this rather <span style="text-decoration: underline;">complex and time consuming procedure</span>.</p>
<p><em>Resources: <a href="http://ec.europa.eu/civil_service/job/sne/index_en.htm" target="_blank">EU's official site for Seconded National Experts</a>, <a href="http://ec.europa.eu/civil_service/docs/regime_end_en.pdf" target="_blank">Secondment Rules</a>.</em></p>
<p><span id="more-7"></span></p>
<h2>Qualifications and experience required</h2>
<p>You must have at least three years work experience at an appropriate level and your employer will need to supply the Commission with a statement of the nature of your employment over the previous year. You should have a satisfactory knowledge of a second Community language in addition to your native language. The EU institution or the Agency that offers the post, usually takes geographical and gender balance into account when considering Seconded National Experts.</p>
<p>Additionally to these requirements, for each post, specific selection criteria will apply. These selection criteria can be a University degree and experience on specific professional areas.</p>
<h2>The application procedure</h2>
<p>The Seconded National Experts are recruited from EU countries via their Permanent Representations to the EU. The Greek Permanent Representation forwards these requests to the Ministry of Interiors, General Secreteriat of Public Administration. Usually, each month a document is posted with the open calls and adequate time is given for applicants. You can obtain this document from the <a title="General Secreteriat of Public Administration" href="http://www.gspa.gr/%289608523255776253%29/eCportal.asp?id=1459&amp;nt=19&amp;pID=235&amp;lang=1&amp;lang=1" target="_blank">secretariat's page</a>. Most of the Agencies and Institutions also post the vacancies in their web sites.</p>
<p>You must then complete a <a title="EU CV" href="http://www.cedefop.eu.int/transparency/cv.asp" target="_self">European CV</a>, preferably in English, and forward it to the Greek Permanent Representation, Mrs. V. Skalistira, by both mail (admin@rp-grece.be) and fax (003225515619). Pay attention in filling in the field of "DESIRED EMPLOYMENT / OCCUPATIONAL FIELD". Several Agencies and Institutions require that you also submit a custom made application form and / or a motivation letter. You should obtain this form from  their web site.</p>
<p>At some point in time, the General Secretariat of Public Administration, required that you submitted these applications through your employer, so that he is aware of your actions. This, of course, can create problems with your career development inside your organisation, specially when this has to happen in such an early stage. While this is not currently the case, it might return in the future.</p>
<h2>Selection Procedure</h2>
<p>The applications from the permanent representations of all EU member states, will end up at the Human Resources section of the Agency or the Directorate General (DG) of the vacancy. There, a (three person)  selection committee will be appointed. You are not allowed to contact any member of this committee.</p>
<p>The work flow for the committee is the following:</p>
<ul>
<li>They create a list of about 10 candidates to be interviewed, based on their CV's, Applications and Motivation Letters;</li>
<li>Conduct the interviews and assess the candidates;</li>
<li>Propose to the director of the agency or the DG a short list of successful candidates.</li>
</ul>
<p>When you are called for an interview, you will be asked to provide supporting documents to your CV. Also, you have to prepare yourself about the Agency or Unit of the vacancy, it's operation and mandate and the requested expertise. The interview will be held in the working language of the post. During the interview you should expect detailed questions about those subjects as well as a written exam to both assess your knowledge and your drafting skills. Also, any knowledge of third languages will be assessed.</p>
<h2>Appointment Procedure</h2>
<p>If you made it to the short list of the successful candidates, you might be selected by the director of the Agency or the DG, to be seconded to their service. This will happen through a letter from the agency or DG to your employer through the Greek Permanent Representation, mentioning a <span style="text-decoration: underline;">starting date usually one month ahead</span>. Your employer should reply to this letter by appointing you or declining the request. While most of the Member States of the EU are more than willing to have public servants of their country seconded to the EU, Greece makes the procedure very painful and time consuming. <strong>While in Greece you need approximately 4 months to get the approval for the secondment, in other EU countries this takes 15 days.</strong> Where in the case of declining, there might never be a response, which of course is rude.</p>
<p>According to the <a href="http://www.dsanet.gr/Epikairothta/Nomothesia/n3320_05.htm" target="_blank">article 7 of the Greek Law 3320/2005 (FEK 48/A)</a> the following procedure has to be applied:</p>
<ol>
<li>You should send a request petition to your employer's Human Resources Department  in addition to the letter from the Greek Permanent Representation.</li>
<li>The documents are forwarded to the staff committee that has to give its approval. The staff committees usually convene once a month.</li>
<li>On the positive outcome, the decision for the secondment is scribed and forwarded for approvals through the chain of hierarchy up to the level of the minister, if you are a national public servant. This can take from 10 to 20 days.</li>
<li>If nobody stops the procedure (and the invent numerous ways to at least lag it), the decision returns to the HR. Then they have to forward it to two other ministries to obtain the approval of the minister of interiors and the minister of economics. This can only happen in sequence and not in parallel.</li>
<li>For the ministry of interior, your HR has to forward the decision to the ministries "Human Resources Directorate, Changes Department (Δ/νση Διοίκησης Ανθρώπινου Δυναμικού, Τμήμα μεταβολών)", Vasilis Sofias 15, Athens.</li>
<li>The decision will get approvals of the chain of hierarchy up to the vice-minister of interiors. This can take from 10 to 20 days. If the hierarchy discovers problems in the preparation of the document, they will return it for edits back to the HR of your ministry. Of course, this adds time. Generally speaking, you should not have any problems obtaining the authorisation from the ministry of interiors.</li>
<li>The decision is returned to your ministries HR department to be then forwarded to the ministry of economics.</li>
<li>Fo the ministry of economics, your HR has to forward the decision to the "General Accounting Office, Directorate D21, Section C (Γενικό Λογιστήριο του Κράτου, Διευθύνση Δ21, Τμήμα Γ)", Panepistimiou 37, Athens.</li>
<li>Again, the same procedure as in step six (6) is applied. The vice-minister is again the one that authorises.</li>
<li>The decision is returned to your ministries HR department, where they should put through the decision and forward it to the agency or the DG through the Greek Permanent Representation. This will also take 10 days.</li>
</ol>
<p>This procedure can be slightly different if you are an regional or local civil servant or a servant in a authority or organisation that is either independent (e.x. Data Protection Authority) or loosely related to the public administration (e.x. Managing Authority of the Operational Program). This means that you might need the authorisation of more or less roles.</p>
<p>When, the letter is received by the Agency or DG, they will officially ask you for a new staring date. Before you start your secondment, they will ask you to provide several documents:</p>
<ul>
<li>A letter from your social security, that you will remain under the social security and pension schemes provided by the Greek public administration.</li>
<li>A certificate of permanent residence that you have to obtain from your Municipality.</li>
<li>Forms that have to be filled and signed from you and your employer.</li>
</ul>
<p>Please note that the duration of the secondment, as will be noted in the decision that you will obtain by your employer will by backdated. Meaning that it would have started before the date that the decision is issued or forwarded to the Greek Permanent Representation. This means that your secondment time will be effectively shorter than you expected.</p>
<p>Please provide me with your feedback on the procedures that were followed for your cases, so I can amend and correct the document.</p>
<h2>Events that might hinder your secondment</h2>
<p>In the (likely) event where an election procedure happens to take place during the period that the decision for your secondment is being processed. The procedure has to be paused and resumed after the elections.</p>
<p>In the (also likely) event where one of the three authorising ministers changes having signed the authorisation, the new minister taking office has to re-authorise it.</p>
<h2>Conclusions</h2>
<p>Its is obvious that the procedure followed by the Greek Administration is inefficient. Thus, the relevant law should change. Specifically, as this law applies to seconding Greek Public Servants to all International Organisations where Greece participates and given the fact that Greece as all other EU member states wants to have Greek public Servants Seconded to EU Agencies and Institutions, a new simple procedure has to be applied for this case. This has to be amended either by law or as a clarification to this law.</p>
<p>This procedure for secondment to an EU Agency or institution, where the Agency or Institution pays all the foreseen allowances :</p>
<ul>
<li>Should require only the endorsement of the Staff committee of your organisation</li>
<li>and the authorisation should be given by the General Directorate for Human Resources.</li>
</ul>
<p>Please, give me your feedback on the feasibility of such a procedure.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.saragiotis.gr/posts/becoming-a-seconded-national-expert/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Protecting the Domain Name System</title>
		<link>http://www.saragiotis.gr/posts/protecting-the-domain-name-system/</link>
		<comments>http://www.saragiotis.gr/posts/protecting-the-domain-name-system/#comments</comments>
		<pubDate>Fri, 27 Feb 2009 16:56:39 +0000</pubDate>
		<dc:creator>pssara</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[DNSSEC]]></category>
		<category><![CDATA[Domain]]></category>
		<category><![CDATA[resilience]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.saragiotis.gr/?p=12</guid>
		<description><![CDATA[This article was published in ENISA's EQR. What is DNS? In our modern way of living we are using digital identifiers to perform a number of tasks. We use digital identifiers to visit a web page, i.e. we enter the unified resource locator (URL) in the address bar of a web browser, to send an [...]]]></description>
			<content:encoded><![CDATA[<p><em>This article was published in <a href="http://enisa.europa.eu/doc/pdf/publications/enisa_quarterly_12_08.pdf" target="_blank">ENISA's EQR</a>.</em></p>
<h2>What is DNS?</h2>
<p>In our modern way of living we are using  digital identifiers to perform a number of tasks. We use digital identifiers to  visit a web page, i.e. we enter the unified resource locator (URL) in the  address bar of a web browser, to send an email, to login at page or program, to  dial a number and in plenty more circumstances. In most of the cases, these  digital identifiers are used to lookup up a secondary or another format of  information. When we are visiting a web page the URL is used to lookup among  other things the IP address of the internet server that hosts the page. The IP  address is used by our client to connect to the server.</p>
<p>
<a href="http://www.saragiotis.gr/wp-content/gallery/protecting-the-domain-name-system/1.jpg" title="" class="shutterset_singlepic2" >
	<img class="ngg-singlepic ngg-left" src="http://www.saragiotis.gr/wp-content/gallery/cache/2__320x240_1.jpg" alt="The DNS zones" title="The DNS zones" />
</a>
The  Domain Name System (DNS) is the protocol and the worldwide system that  associates a category of digital identifiers, called domains, to a variety of  data. DNS is a distributed, hierarchical system. There are a lot of islands of  information, each authoritative for a number of domains. These islands are  called zones. The authority for each subdomain is delegated by referrals to  other islands of information, i.e. other servers, possible remote and under  another authority’s control. It is clear that no authority has or can acquire  full knowledge of the available data. It should also be noted that any  authority could host any zone it wishes, but this will only be accessible if a  parent zone delegates authority to it.</p>
<p>Today the DNS is used widely in looking up  IP addresses from domains and the reverse, application servers, i.e. mail  servers, and hosting tables of hosts, i.e. hosts that are known to generate SPAM  and we wish not to receive mail from. Other, emerging uses of DNS include the  association of phone numbers with IP addresses to use it with VoIP and RFID’s  code lookup to sources of information. Plenty other DNS uses are foreseen in  sensor and peer to peer networks. The frequency of use of DNS is also very  high. Every email sent creates 3 or more DNS lookups, while every web page  needs a few lookups as well.</p>
<p>DNS is a widely deployed system. It is  estimated that there are more than 2 million DNS servers on the internet. But,  DNS is also used in the private intranets and local LANs. The estimated number  of DNS servers in such private networks is more than 10 million.</p>
<h2>How does DNS work?</h2>
<p>
<a href="http://www.saragiotis.gr/wp-content/gallery/protecting-the-domain-name-system/2.jpg" title="" class="shutterset_singlepic4" >
	<img class="ngg-singlepic" src="http://www.saragiotis.gr/wp-content/gallery/cache/4__570xfloat=_2.jpg" alt="The lookup of a domain name" title="The lookup of a domain name" />
</a>
There  are several entities involved in DNS and a lot of interactions occur during the  lookup of the data associated to a domain, as shown in Figure 2. The stub  client (<img src="/wp-content/plugins/nextgen-gallery/nggshow.php?pid=5" align="middle">) that wants to get the associated data of a domain sends the  request to a recursive resolver (<img src="/wp-content/plugins/nextgen-gallery/nggshow.php?pid=6" align="middle">). The  recursive resolver, which is usually provided by the user’s ISP, will traverse  the DNS authoritative servers (<img src="/wp-content/plugins/nextgen-gallery/nggshow.php?pid=8" align="middle">),  starting from the root, to retrieve the data and return them to the stub  client. Each recursive resolver is configured with an entry point to the DNS  which is the root zone.</p>
<h2>What are the known threats?</h2>
<p>There are three different types of  communications in DNS. The obvious ones are the communication between the stub  client and the recursive resolver and the communication between the recursive  resolver and the authoritative servers. The third type of communications is the  one used between authoritative servers to synchronise the zones, after zone  changes. Most of these communications are performed by exchanging User Datagram  Protocol (UDP) packets that are being matched and essentially protected by the  UDP source port and an application defined query ID.</p>
<p>The identified threats to DNS  communications and components are being listed in <a href="http://www.ietf.org/rfc/rfc3833.txt">RFC 3833</a> and they are:</p>
<ul>
<li>Packet Interception -  man-in-the-middle attacks</li>
<li>ID Guessing and Query  Prediction</li>
<li>Name Chaining - Cache Poisoning</li>
<li>Betrayal By Trusted Server</li>
<li>Denial of Service</li>
<li>Wildcards insertion</li>
</ul>
<p>The most dangerous attacks are those by  which the attacker gains control of a zone, meaning that he is presented as  authoritative server for that zone to a part of the internet and can modify the  data returned to the user. In most of the cases this is used to impersonate a  web site. There are plenty of web pages explaining how this attack can be  performed, but in principle it affects a recursive resolver at a time by  guessing the source port of its query to an authoritative server and the  corresponding query ID and installing a false delegation for that zone, as  shown in Figure 3. This kind of attacks, which are called cache poisoning  attacks, where observed first in 1989 and variations of it come to light  continuously.</p>
<h2>Ellaborating on the cache  poisoning attacks</h2>
<p>
<a href="http://www.saragiotis.gr/wp-content/gallery/protecting-the-domain-name-system/3.jpg" title="" class="shutterset_singlepic3" >
	<img class="ngg-singlepic" src="http://www.saragiotis.gr/wp-content/gallery/cache/3__570xfloat=_3.jpg" alt="Cache poisoning attack illustrated. At step 4 a request is made to grdns.ics.forth.gr from a UDP source port with a QID. The attacker floods responses with random or guessed sPorts and QIDs" title="Cache poisoning attack illustrated. At step 4 a request is made to grdns.ics.forth.gr from a UDP source port with a QID. The attacker floods responses with random or guessed sPorts and QIDs" />
</a>
A variation of  this attack, the <a href="http://www.kb.cert.org/vuls/id/800113">fast poisoning  attack</a>, by which an attacker can gain control of a zone in a matter of  seconds, was discovered in July 2008. The industry reacted fast and in  coordination and a patch released that randomised the Query ID and UDP source  port for each request, decreasing the possibility for success of each packet in  this attack from 1 in 2^16 (roughly 66 thousand) to 1 in 2^32 (more than 4  billion). This patch has been installed in the majority of recursive resolvers  and solved the problem temporarily. It is proven that with gigabit connectivity  someone can still succeed in this cache poisoning attack in 10 hours. This  limits the problem at this point of time in enterprise networks, which of course  can be accessed by attackers through some other security flaw or an infected  laptop or a disgruntled employee. Furthermore, it is only a matter of time for  the increase of speed in internet connectivity to allow these attacks to be  performed through the public internet. So, another permanent solution to the  problem is needed.</p>
<p>If a cache poisoning attack succeeds, then  there are several types of attacks that the users of that recursive resolver  are prone too. The simplest attack is redirecting the traffic to another  malicious server. This can influence:</p>
<ul>
<li>web traffic, by displaying  other content than the intended, performing phishing attacks or installing  malicious software;</li>
<li>mail traffic,  by eavesdropping on confidential mail without  leaving any traces;</li>
<li>voice conversations, by  eavesdropping and obtaining credentials to services, and plenty more.</li>
</ul>
<p>Even Secure  Sockets Layer (SSL) protected traffic is prone to attacks if further to traffic  redirection a SSL weakening attack is performed that could accomplish cipher  specification weakening.</p>
<h2>How can we be protected?</h2>
<p>Against this background it is clear that  the DNS is still far from being secure. The existing flaws can affect the  public internet users as well as the enterprise users. The ISP’s recursive  resolvers as well as those used by enterprises have to be secured. For the  communications that occur between the DNS entities, widely deployed and proven  solutions exist for those between stub clients and recursive resolvers and  between authoritative servers. A solution has to be established for verifying  the authenticity and protect the integrity of the DNS  data in the communications between the recursive resolvers and the  authoritative servers. This solution will definitely <strong>involve digital signatures and a form of Public Key Infrastructure  (PKI)</strong>. One such solution is the use of DNSSEC. DNSSEC is a security  extension to the DNS that, if deployed, can solve the cache poisoning problem.</p>
<p>Before its widespread deployment DNSSEC has  to overcome several obstacles. First of all is the issue of <strong>trust of authority</strong>. It has to be  decided if the entire internet trusts a single authority to sign the root zone  of the DNS or another distributed approach has to be followed. Whatever  solution is chosen, <strong>the supporting  security architecture has to be defined</strong>. Another obstacle is the <strong>scarcity of automation tools</strong> for  handling DNSSEC zone operations. In DNS, an error in the syntax of a zone can  have a small or no impact at all in the reachability of the zone while in a  DNSSEC enabled zone, an error can mark the zone bogus and unreachable.  Moreover, <strong>tools have to become available  for the end users</strong>. Enabling DNSSEC on stub clients and notifying end users  about the authenticity of the data will raise their awareness on the dangers  and help them make educated decisions on trusting a content provider.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.saragiotis.gr/posts/protecting-the-domain-name-system/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

