EU reconsiders new data retention laws
IDG News Service -
European Union justice ministers are rethinking measures to force telecommunications companies and Internet service providers to retain data to use in the fight against crime and terrorism. ISPs are still warning that current plans could devastate the industry.
Late last week, EU justice and home affairs ministers debated plans to force electronic communications providers to retain information for up to three years. Under draft legislation proposed by the U.K., Ireland, Sweden and France in April, operators would have to keep for at least 12 months all data concerning the source, routing, destination, time, date and duration of communications as well as the location of the telecom device used in a particular transmission.
The data to be stored would be that obtained by operators for billing and other commercial purposes. The move is part of the EU's drive to combat terrorism. Rules would apply to providers of fixed-line services, mobile phones, SMS operators and ISPs, including VoIP providers.
But both ISPs and telecommunications companies have insisted that the proposal is unworkable and would hit operators with enormous costs, massive security issues and, in some cases, impossible technical difficulties in collecting and storing the data.
"Data retention is one of the most important issues ever faced by the Internet services industry," according to a position paper issued by the European ISP association EuroISPA in September. It warned that the implications of the proposed measures could be "devastating" for the industry.
At last week's meeting, ministers indicated they were prepared to consider another approach to the collection of data, since not all operators collected information in the same way. For example, some service providers apply a flat-rate system, where the relevant data is simply erased after communication has been terminated.
Instead, ministers considered a different approach where operators would be required to supply a common list of data. Richard Nash, EuroISPA secretary-general, said the fact that the ministers were examining an alternative approach showed that there was "some recognition of serious flaws in the original proposal".
But he argued that the fundamental problems remain. The proposal was "so far-reaching as to destroy the industry," he said. There is a perception among EU legislators that an ISP could "flick a button and the data will be on a disc, ready cataloged. But it's just not possible to do that," Nash said.
Ministers have referred the legislation back to experts and have set themselves a deadline of June 2005 to finalize new rules.
Reprinted with permission from
Story copyright 2009 International Data Group. All rights reserved.
Security
Additional Resources



White Papers & Webcasts
Share our Strength
Download Now
Lower the Cost and Complexity of a Mobile Workforce through Automation
Download This Resource Now!
Top 10 Things to Know about Data Protection
Download Now
Managing Mobility: Improve Data Security, Compliance and Manageability
Download This Resource Now!
Managing Secure File Transfer to Save Time, Money and IT Resources
Learn how companies are using innovative technology to overcome these challenges and improve user productivity by offloading e-mail attachments and replacing FTP with...
Ponemon Study: The Business Risk of a Lost Laptop
Download Now
Security Convergence Equals Network Security Cost Savings
Listen to IBM Internet Security Systems' take on network security convergence.
Airport Insecurity: The Case of Lost Laptops
Download Now
Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...
