Whilst concurring on the abuse statement I am not sure why DNS tunnel users should actually be wary of caching. The caching related to the DNS tunnelling is bloating the cache, especially NULL records not serving any legitimate purpose in DNS. But to detect such users I would reckon that analytics are not looking at the resolver's cache but rather the resolver's log (dnstap)?

> On 23.11.2018,  Unbound-users wrote:

> Fully agree. What is funny : tunnel "vendors" advertises it quite often as anonymization mechanism:-)

>> On 23.11.2018,  Unbound-users wrote:

>> i think dns tunnels are an abuse of the service, and that users of dns tunnels should have a real and rational fear of caching.

    


Reply via email to