[tor-relays] Let's increase the amount of exit relays doing DNSSEC validation

Dear Tor Exit Relay Operator,

thanks for operating tor exit relays!

In addition to forwarding packets exit relays also do DNS hostname resolution
on behalf of tor clients.

DNSSEC [1] is a standard that allows DNS clients to validate the authenticity of
DNS records (if the domain owner choose to enable DNSSEC). By enabling DNSSEC 
on your exit relay DNS resolver you (and therefore also tor clients) are less prone to DNS-based attacks.

A test of the tor network showed that only 74% of exit relay capacity does DNSSEC validation,
please help us increase that number to >90% by enabling DNSSEC validation on your exit.

Bellow is a list of tor ContactInfo strings from operators that currently do not 
enable DNSSEC validation yet. 
(The list is ordered by provided exit capacity - bigger operators are on the top)

If you wonder "how do I enable DNSSEC?"
I recommend a local caching unbound (https://unbound.net/) DNS resolver
without using an upstream DNS forwarder.

thanks for considering DNSSEC,
twitter: @nusenu_

[1] https://en.wikipedia.org/wiki/Domain_Name_System_Security_Extensions

