nanog mailing list archives

Re: dns interceptors


From: Jason Frisvold <xenophage0 () gmail com>
Date: Sun, 14 Feb 2010 12:53:52 -0500

On Feb 14, 2010, at 12:42 PM, Patrick W. Gilmore wrote:
How does that help?  It still sends port 53 requests to the authorities, which will be intercepted.

Hrm..  Maybe I misunderstood.  Are the packets being intercepted, or is the problem the local resolvers?

Well, in either case, another option would be to use something like openvpn, cisco vpn, etc. with very limited routes.  
Set it up so only your dns traffic is sent over the tunnel.  Then you can still use the local network, crappy as it may 
be, without having to deal with the added overhead of ssh and the like.

-- 
TTFN,
patrick

-- 
Jason 'XenoPhage' Frisvold
XenoPhage0 () gmail com
http://blog.godshell.com



Current thread: