25th March 2010
|
Administrator
|
|
Join Date: May 2008
Location: Budel - the Netherlands
Posts: 4,155
|
|
China censorship leaks outside Great Firewall via DNS root server
From http://arstechnica.com/tech-policy/n...oot-server.ars
Quote:
On Wednesday, someone from the Chilean domain registry .cl noticed that one of the DNS root servers was responding in a very strange way to queries for domain names like facebook.com, youtube.com, and twitter.com. Normally, root servers only provide a pointer to the correct set of Top Level Domain servers—in this case, the .com servers operated by Verisign. But here, the "I" root server responded with (apparently fake) addresses.
|
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
|