Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Comcast DNS Troubles » OPENDNS
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Comcast DNS Servers »
« dns  
AuthorAll Replies


davidu

join:2006-12-28
San Francisco, CA

reply to fcisler
Re: OPENDNS

said by fcisler See Profile :

It IS a hack as there is NO, read it, NO, means for authentication via DNS. In otherwords - when I request a result from OpenDNS - it is identical to YOUR request, with the exception of our IP address'.

Now...it IS a hack that they will then have THEIR DNS SERVER check a database to find MY IP to find that I OPTED OUT of their bogus domain forwarding.

You are completely off in your assumption - I don't see OpenDNS as having ANY OTHER WAY to "fix" the results than those steps posted. If you have any other inside info - please post it.....but I don't ever recall seeing ANY OTHER DNS do that, unless specifically designed to.
There's more than just your IP address. There's the query_id mux'd in there along with some other request-specific bits that make it hard to forge a reply from us. That said, this is NO different from the way any other DNS server works. UDP is stateless and that's the name of the game.

That said, we do base preferences on your src_addr. It works very very well. It's not at all a hack just because it's new to you. It was far from a quick job and it does the job well. So well in fact that others are trying to figure out how to emulate it, including BIND.

-david


fcisler
Premium
join:2004-06-14
Riverhead, NY


1 edit
reply to koolkid1563
Wow...way to completely misread my post. No, I don't think or assume that. I also didn't say "HACKS", as in the sense I'm going to assume that you mean - I said hack. Here's a definition:
1. Originally, a quick job that produces what is needed, but not well.
Perfect definition in this case.

It IS a hack as there is NO, read it, NO, means for authentication via DNS. In otherwords - when I request a result from OpenDNS - it is identical to YOUR request, with the exception of our IP address'.

Now...it IS a hack that they will then have THEIR DNS SERVER check a database to find MY IP to find that I OPTED OUT of their bogus domain forwarding.

You are completely off in your assumption - I don't see OpenDNS as having ANY OTHER WAY to "fix" the results than those steps posted. If you have any other inside info - please post it.....but I don't ever recall seeing ANY OTHER DNS do that, unless specifically designed to.
Forums » Comcast DNS TroublesComcast DNS Servers »
« dns  


Thursday, 10-Dec 03:37:33 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [200] Sprint Sued For Distracted Driving Death
· [116] AT&T Launching New 24 Mbps U-Verse Tier
· [82] 3G Network Test Says AT&T Is Tops
· [72] Mediacom Unveils 105 Mbps Pricing
· [66] Sprint Poised For A Turnaround?
· [66] WPA Cracker: Test WPA-PSK Networks In 20 Minutes
· [66] AT&T Hints At Usage-Based iPhone Data Pricing
· [51] The Future Of Wi-Fi Is Bright
· [47] Site Leaks Yahoo, Verizon Fed Data Share Pricing
· [45] Microwaving Your Innards Is Not 'Extreme'
Most people now reading
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Battered Hilt Delimma [World of Warcraft]
· Cross Server Dungeon Experience [World of Warcraft]
· Windows 7 boot manager editing questions [Microsoft Help]
· Comcast refused to install 400' feet. [Comcast HSI]
· [ Classes] Druid tanking: rotation and glyphs [World of Warcraft]
· Official "Invite" thread Part 3 - ALL INVITES GO HERE ! [Filesharing Software]
· Man Downloads Child Porn "Accidentally," Faces 20 Years [Security]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· The aftermath [World of Warcraft]