[122408] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: dns interceptors

daemon@ATHENA.MIT.EDU (Patrick W. Gilmore)
Sun Feb 14 12:42:42 2010

From: "Patrick W. Gilmore" <patrick@ianai.net>
In-Reply-To: <1A641664-9F91-4D1D-8C04-04E1D89F308D@gmail.com>
Date: Sun, 14 Feb 2010 12:42:20 -0500
To: North American Network Operators Group <nanog@merit.edu>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Feb 14, 2010, at 12:37 PM, Jason Frisvold wrote:
> On Feb 13, 2010, at 4:58 PM, Randy Bush wrote:
>> i am often on funky networks in funky places.  e.g. the wireless in
>> changi really sucked friday night.  if i ssh tunneled, it would =
multiply
>> the suckiness as tcp would have puked at the loss rate.
>=20
> You can always run your own local resolver...  Or is there a reason =
that's unacceptable?

How does that help?  It still sends port 53 requests to the authorities, =
which will be intercepted.

--=20
TTFN,
patrick


>> smb whacked me that i should use non-tcp tunnels.
>>=20
>> randy
>>=20
>=20
> --=20
> Jason 'XenoPhage' Frisvold
> XenoPhage0@gmail.com
> http://blog.godshell.com
>=20
>=20



home help back first fref pref prev next nref lref last post