Quantcast
Channel: /dev/posts/
Viewing all articles
Browse latest Browse all 104

DNS aggregation over TLS

$
0
0

In a previous post, I tried different solutions for tunnelling DNS over TLS. One of those solutions was using a dedicated DNS-over-UDP fake service replying to all queries with the truncate flag set: this was causing the stub resolvers to retry the query using a TCP-based virtual-circuit. This solution is interesting because it is dead simple (it fits in a few line of codes) but it is clearly a hack. Here, I am using a dedicated DNS forwarder aggregating all the incoming DNS-over-UDP requests over a single persistent TCP virtual-circuit.


Viewing all articles
Browse latest Browse all 104

Trending Articles