dslreports logo
uniqs
18
« The war on...
This is a sub-selection from how to block

ArrayList
DevOps
Premium Member
join:2005-03-19
Mullica Hill, NJ

1 edit

ArrayList to BosstonesOwn

Premium Member

to BosstonesOwn

Re: how to block

outside dns requests are very easy to block/redirect/hijack.
BosstonesOwn
join:2002-12-15
Wakefield, MA

BosstonesOwn

Member

secure dns is not that easy to break. You just move on to one of the next on the list. Even if they block them all, you just point at a further upstream dns server.

ArrayList
DevOps
Premium Member
join:2005-03-19
Mullica Hill, NJ

ArrayList

Premium Member

you capture all packets that are using port 53 udp, redirect those requests to your own dns. the isp doesn't have to modify the zones at all. they can simply redirect the destination of the packet.
BosstonesOwn
join:2002-12-15
Wakefield, MA

BosstonesOwn

Member

not so easy with secure dns, it is designed to prevent this

»en.wikipedia.org/wiki/Do ··· gorithms

ArrayList
DevOps
Premium Member
join:2005-03-19
Mullica Hill, NJ

ArrayList

Premium Member

»www.dnsleaktest.com/what ··· roxy.php

anything short of a vpn will not prevent this.
BosstonesOwn
join:2002-12-15
Wakefield, MA

BosstonesOwn

Member

It does stop it that's why secure dns is active. The hash can't be faked yet.
« The war on...
This is a sub-selection from how to block