Jump to content

Great Firewall of China: Difference between revisions

From Wikipedia, the free encyclopedia
Content deleted Content added
No edit summary
Line 1: Line 1:
The '''Golden Shield Project''' ({{zh-c|金盾工程}}; {{zh-p|jīndùn gongcheng}}) started in 1998, began the process in November of 2003, the first part of the project passed the national inspection on November 16, 2006 in [[Beijing]].
The '''Golden Shield Project''' ({{zh-c|金盾工程}}; {{zh-p|jīndùn gongcheng}}) is owned by China’s Ministry of Public Security (MPS). It started in 1998, began the process in November of 2003, the first part of the project passed the national inspection on November 16, 2006 in [[Beijing]]. According to MPS, it is to construct a communication network and computer information system for police to improve their capability and efficiency.

It is known outside [[mainland China]] as the '''Great Firewall of China''' (in reference both to its role as a network [[firewall (networking)|firewall]] and to the ancient [[Great Wall of China]]). A major part of the project includes the ability to block content by preventing [[IP address]]es from being routed through and consists of standard firewall and [[proxy server]]s at the [[Internet]] [[gateway (telecommunications)|gateways]]. The system also selectively engages in [[DNS poisoning]] when particular sites are requested. The government does not appear to be systematically examining Internet content, as this appears to be technically impractical.<ref>{{cite web|url=http://www.guardian.co.uk/china/story/0,,1713317,00.html|title=War of the words |publisher=[[The Guardian]]}}</ref>


==History==
==History==

The Golden Shield project ; it was started in 1998 and will be completed in 2006. [2] In September 2002, Li Runsen, the technology director at MPS and member of the Golden Shield leadership, further explained this broad definition to thousands of police nationwide at a meeting in Beijing called “Information Technology for China’s Public Security”. He said:

The first part of the project lasted three years. According to [[China Central Television]]'s report, the project has already spent 64 billion [[RMB]], about 8 billion US dollars.
The first part of the project lasted three years. According to [[China Central Television]]'s report, the project has already spent 64 billion [[RMB]], about 8 billion US dollars.


The second part began in 2006. It will last for two years.
The second part began in 2006. It will last for two years.

It was formally known as the '''Great Firewall of China''' (in reference both to its role as a network [[firewall (networking)|firewall]] and to the ancient [[Great Wall of China]]). A major part of the project includes the ability to block content by preventing [[IP address]]es from being routed through and consists of standard firewall and [[proxy server]]s at the [[Internet]] [[gateway (telecommunications)|gateways]]. The system also selectively engages in [[DNS poisoning]] when particular sites are requested. The government does not appear to be systematically examining Internet content, as this appears to be technically impractical.<ref>{{cite web|url=http://www.guardian.co.uk/china/story/0,,1713317,00.html|title=War of the words |publisher=[[The Guardian]]}}</ref>


==Technical information==
==Technical information==

Revision as of 01:51, 31 December 2006

The Golden Shield Project (Chinese: 金盾工程; Chinese: jīndùn gongcheng) is owned by China’s Ministry of Public Security (MPS). It started in 1998, began the process in November of 2003, the first part of the project passed the national inspection on November 16, 2006 in Beijing. According to MPS, it is to construct a communication network and computer information system for police to improve their capability and efficiency.

History

The Golden Shield project ; it was started in 1998 and will be completed in 2006. [2] In September 2002, Li Runsen, the technology director at MPS and member of the Golden Shield leadership, further explained this broad definition to thousands of police nationwide at a meeting in Beijing called “Information Technology for China’s Public Security”. He said:

The first part of the project lasted three years. According to China Central Television's report, the project has already spent 64 billion RMB, about 8 billion US dollars.

The second part began in 2006. It will last for two years.

It was formally known as the Great Firewall of China (in reference both to its role as a network firewall and to the ancient Great Wall of China). A major part of the project includes the ability to block content by preventing IP addresses from being routed through and consists of standard firewall and proxy servers at the Internet gateways. The system also selectively engages in DNS poisoning when particular sites are requested. The government does not appear to be systematically examining Internet content, as this appears to be technically impractical.[1]

Technical information

Some commonly used methods for censoring content are:[2]

  • IP blocking. The access to a certain IP address is denied. If the target website is hosted in a shared hosting server, all websites on the same server will be blocked. This affects all TCP protocols such as HTTP, FTP or POP. A typical circumvention method is to find proxies that have access to the target websites, but proxies may be jammed or blocked, and some websites such as Wikipedia also block proxies. Some large websites such as Google have allocated additional IP addresses to circumvent the block, but later the block was extended to cover the new IPs.
  • DNS filtering and redirection. Don't resolve domain names, or return incorrect IP addresses. This affects all TCP protocols such as HTTP, FTP or POP. A typical circumvention method is to find a domain name server that resolves domain names correctly, but domain name servers are subject to blockage as well, especially IP blocking. Another workaround is to bypass DNS if the IP address is obtainable from other sources and is not blocked. Examples are modifying the Hosts file or typing the IP address instead of the domain name in an Web browser.
  • URL filtering. Scan the requested Uniform Resource Locator (URL) string for target keywords regardless of the domain name specified in the URL. This affects the HTTP protocol. Typical circumvention methods are to use escaped characters in the URL, or to use encrypted protocols such as VPN and SSL.[3]
  • Packet filtering. Terminate TCP packet transmissions when a certain amount of controversial keywords are detected. This affects all TCP protocols such as HTTP, FTP or POP, but Search engine pages are more likely to be censored. Typical circumvention methods are to use encrypted protocols such as VPN and SSL, to escape the HTML content, or reducing the TCP/IP stack's size thus reduce the amount of text contained in a given packet.
  • Connection reset. If a previous TCP connection is blocked by the filter, future connection attempts from both sides will also be blocked for up to 30 minutes. Depending on the location of the block, other users or websites may be also blocked if the communication are routed to the location of the block. A circumvention method is to ignore the reset packet sent by the firewall.[4]

Censored content

Research into mainland Chinese Internet censorship has shown that censored websites include:

Blocked websites are indexed to a lesser degree, if at all, by some Chinese search engines, such as Baidu and Google China. This sometimes has considerable impact on search results.[6]

According to the New York Times, Google has set up computer systems inside China that try to access Web sites outside the country. If a site is inaccessible, then it is added to Google China's blacklist.[7] However, once unblocked, the websites will be reindexed.

References

  1. ^ "War of the words". The Guardian.
  2. ^ Empirical Analysis of Internet Filtering in China.
  3. ^ For an example, see Wikipedia:Advice to users using Tor to bypass the Great Firewall
  4. ^ zdnetasia.com
  5. ^ Marquand, Robert (2006-02-04). "China's media censorship rattling world image". Christian Science Monitor. {{cite web}}: Cite has empty unknown parameters: |accessyear=, |month=, |accessmonthday=, and |coauthors= (help)
  6. ^ "controlling information: you can't get there from here -- filtering searches". The tank man. Frontline (pbs.org).
  7. ^ Google's China Problem (and China's Google Problem), p8

See also

External Links