Open Resolver Problems

Nick Hilliard nick at foobar.org
Wed Mar 27 12:47:46 UTC 2013


On 27/03/2013 12:40, Rich Kulawiec wrote:
> It's necessary because many operations are screwing with DNS results in
> order to advance/suppress political agendas, impose their moral code
> via censorship, profit via redirection to search portals, etc.  If we
> could actually trust that J. Random Hotel would not do so, then yes,
> whatever DNS servers are assigned via DHCP would suffice.

then use a vpn and/or provide that service to your users.  Sure, hotels and
public access wifi does all sorts of stupid and obnoxious stuff, but the
way to work around this is not by hardwiring your dns to some open resolver.

Nick






More information about the NANOG mailing list