[squid-users] Force DNS queries over TCP?

Alex Crow acrow at integrafin.co.uk
Thu Jun 30 18:55:52 UTC 2016



On 30/06/16 19:40, brendan kearney wrote:
>
> Nscd or name server caching daemon may be of help.  I believe you can
> run your own bind instqnce and point it at the roots, instead of using
> your isp's broken implementation
>
> On Jun 30, 2016 2:21 PM, "Chris Horry" <zerbey at gmail.com
> <mailto:zerbey at gmail.com>> wrote:

If the ISP is intercepting and redirecting all connections to UDP/53,
which seems to be the case, I'm not sure this would help, unless the
roots support TCP access.

Chris, can you confirm this seems to be your ISP's behaviour? If so,
avoiding sending *any* queries in cleartext via UDP/53 is the only way
to do it.

Alex



--
This message is intended only for the addressee and may contain
confidential information. Unless you are that person, you may not
disclose its contents or use it in any way and are requested to delete
the message along with any attachments and notify us immediately.
This email is not intended to, nor should it be taken to, constitute advice.
The information provided is correct to our knowledge & belief and must not
be used as a substitute for obtaining tax, regulatory, investment, legal or
any other appropriate advice.

"Transact" is operated by Integrated Financial Arrangements Ltd.
29 Clement's Lane, London EC4N 7AE. Tel: (020) 7608 4900 Fax: (020) 7608 5300.
(Registered office: as above; Registered in England and Wales under
number: 3727592). Authorised and regulated by the Financial Conduct
Authority (entered on the Financial Services Register; no. 190856).
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20160630/e10753c2/attachment.html>


More information about the squid-users mailing list