broken DNS proxying at public wireless hotspots

Joe Abley jabley at ca.afilias.info
Sun Feb 4 06:30:58 UTC 2007



On 4-Feb-2007, at 00:58, Trent Lloyd wrote:

> The flaw here is that DNS operates over 53(UDP), last time I  
> checked SSH
> doesn't do UDP port forwarding?

In the interests of dispelling a common myth, DNS operates over both  
53/udp and 53/tcp. However, given that a substantial portion of most  
clients' queries will likely use UDP transport, your fundamental  
point stands.


Joe





More information about the NANOG mailing list