I have run DNS spooefability with classic useful website GRC , and surprisingly the test showed that most of the servers not really very top level secured some of them moderate , many of them missed one or more setting for better result. i dunno how Tor would love to solve this but it might be good idea to check and see that.
To run the test is very simple, visit: https://www.grc.com/dns/dns.htm then go to the end of the page and click Initiate Standard DNS Spoofability Test.(it will take time like 15 to 20 minutes) -- tor-talk mailing list - tor-talk@lists.torproject.org To unsubscribe or change other settings go to https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk