[187801] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Thank you, Comcast.

daemon@ATHENA.MIT.EDU (Mike Hammett)
Fri Feb 26 11:25:58 2016

X-Original-To: nanog@nanog.org
Date: Fri, 26 Feb 2016 10:15:49 -0600 (CST)
From: Mike Hammett <nanog@ics-il.net>
To: Brielle Bruns <bruns@2mbit.com>
In-Reply-To: <56D075B8.3080806@2mbit.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org

I think you'd be hard pressed to find more than a tenth of a percent of people attempt to run their own DNS server. Some do because they think it'll be better in some way. Rare is the occasion where anything user configured would outperform a local DNS server managed by the ISP that does no form of trickery. 




----- 
Mike Hammett 
Intelligent Computing Solutions 
http://www.ics-il.com 

Midwest-IX 
http://www.midwest-ix.com 

----- Original Message -----

From: "Brielle Bruns" <bruns@2mbit.com> 
To: nanog@nanog.org 
Sent: Friday, February 26, 2016 9:56:40 AM 
Subject: Re: Thank you, Comcast. 

On 2/26/16 6:27 AM, Mike Hammett wrote: 
> "you will also block legitimate return traffic if the customers run 
> their own DNS servers or use opendns / google dns / etc." 
> 
> I'm fine with that. Residential customers shouldn't be running DNS 
> servers anyway and as far as the outside resolvers to go, ehhhh... I 
> see the case for OpenDNS given that you can use it to filter (though 
> that's easily bypassed), but not really for any others. 


Except that half the time people run their own DNS resolvers because 
their provider's resolvers are 

1) Absolute garbage and either fail queries for no reason, don't respond 
at times, respond super slow, etc. 

2) Hijack NXDOMAIN for advertising / money generation 

3) Hijack responses to inject their own ads, popups, etc. 



-- 
Brielle Bruns 
The Summit Open Source Development Group 
http://www.sosdg.org / http://www.ahbl.org 


home help back first fref pref prev next nref lref last post