Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Comcast DNS Troubles » OPENDNS
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Comcast DNS Servers »
« dns  
AuthorAll Replies


davidu

join:2006-12-28
San Francisco, CA

reply to fcisler
Re: OPENDNS

said by fcisler See Profile :

It IS a hack as there is NO, read it, NO, means for authentication via DNS. In otherwords - when I request a result from OpenDNS - it is identical to YOUR request, with the exception of our IP address'.

Now...it IS a hack that they will then have THEIR DNS SERVER check a database to find MY IP to find that I OPTED OUT of their bogus domain forwarding.

You are completely off in your assumption - I don't see OpenDNS as having ANY OTHER WAY to "fix" the results than those steps posted. If you have any other inside info - please post it.....but I don't ever recall seeing ANY OTHER DNS do that, unless specifically designed to.
There's more than just your IP address. There's the query_id mux'd in there along with some other request-specific bits that make it hard to forge a reply from us. That said, this is NO different from the way any other DNS server works. UDP is stateless and that's the name of the game.

That said, we do base preferences on your src_addr. It works very very well. It's not at all a hack just because it's new to you. It was far from a quick job and it does the job well. So well in fact that others are trying to figure out how to emulate it, including BIND.

-david


fcisler
Premium
join:2004-06-14
Riverhead, NY


1 edit
reply to koolkid1563
Wow...way to completely misread my post. No, I don't think or assume that. I also didn't say "HACKS", as in the sense I'm going to assume that you mean - I said hack. Here's a definition:
1. Originally, a quick job that produces what is needed, but not well.
Perfect definition in this case.

It IS a hack as there is NO, read it, NO, means for authentication via DNS. In otherwords - when I request a result from OpenDNS - it is identical to YOUR request, with the exception of our IP address'.

Now...it IS a hack that they will then have THEIR DNS SERVER check a database to find MY IP to find that I OPTED OUT of their bogus domain forwarding.

You are completely off in your assumption - I don't see OpenDNS as having ANY OTHER WAY to "fix" the results than those steps posted. If you have any other inside info - please post it.....but I don't ever recall seeing ANY OTHER DNS do that, unless specifically designed to.

koolkid1563
Premium,MVM
join:2005-11-06
Powell, WY
clubs:
·Bresnan Online

reply to fcisler
said by fcisler See Profile :

and it IS a hack, as it's got to check my account to get my IP
So, what you are saying is that EVERY website (including this one) hacks into your account to grab your IP...not true


fcisler
Premium
join:2004-06-14
Riverhead, NY
reply to quatrix
Nope....i prefer not to rely on such a hack as this (and it IS a hack, as it's got to check my account to get my IP, and then put my IP on i guess a "safe list") blah blah blah....

I just run my own DNS server and cache from 4.2.2.1.
Forums » Comcast DNS TroublesComcast DNS Servers »
« dns  


Wednesday, 02-Dec 05:31:52 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [151] Comcast Releasing Promised Usage Meter
· [69] Baltimore To Ban Lazy Cable Installs
· [56] Broadband Killed The Game Console
· [55] Latest Consumer Reports Survey Not Kind To AT&T
· [52] Rogers Unveils The ISP Dream Model
· [42] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [35] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [26] Vivendi Agrees, Comcast/NBC Deal Soon
Most people now reading
· [Newsgroups] Newzleech down? [Filesharing Software]
· Windows 7 boot manager editing questions [Microsoft Help]
· Security Software Updates - 1 Dec 2009 [Security]
· [Newsgroups] Newzleech is either down or gone for good... [Filesharing Software]
· Opening a file download dialog from a JavaScript function. [Webmasters and Developers]
· Am I the only one that loves to work in IT? [No, I Will Not Fix Your #@$!! Computer]
· [Config] cisco asa 5505 with multiple outside IP addresses [Cisco]
· [CA] Very Slow Upload in San Diego (Poway) [Cox HSI]
· [WIN7] Outlook express under Windows 7? [Microsoft Help]
· [Snow Leopard] NFS Mounts - no more Directory Utility [All Things Macintosh]