[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-talk] TAILS uses one DNS server from OpenDNS **WARNING **



On Sun, 27 Oct 2013 14:06:35 -0400
Ted Smith <tedks@xxxxxxxxxx> allegedly wrote:
> 
> OpenDNS authenticates by IP, so anyone using the exit node can change
> the OpenDNS settings if the exit node operator hasn't made an
> account. 
> 
> The exit node operator can do all of those things, but anyone using
> Tor can do them with OpenDNS.
> 

In my view OpenDNS should never be trusted for anything. They do not
correctly reply with NXDOMAIN to a query for a non-existent host or
domain. They have also in the past specifically hijacked queries aimed
at Google.

DNS servers should not play fast and loose with replies.

Mick
---------------------------------------------------------------------

 Mick Morgan
 gpg fingerprint: FC23 3338 F664 5E66 876B  72C0 0A1F E60B 5BAD D312
 http://baldric.net

---------------------------------------------------------------------

Attachment: signature.asc
Description: PGP signature

-- 
tor-talk mailing list - tor-talk@xxxxxxxxxxxxxxxxxxxx
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk