<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
Whilst concurring on the abuse statement I am not sure why DNS
tunnel users should actually be wary of <i>caching</i>. The caching
related to the DNS tunnelling is bloating the cache, especially NULL
records not serving any legitimate purpose in DNS. But to detect
such users I would reckon that analytics are not looking at the
resolver's cache but rather the resolver's log (dnstap)?<br>
<br>
> On 23.11.2018, Unbound-users wrote: <br>
<br>
> Fully agree. What is funny : tunnel "vendors" advertises it
quite often as anonymization mechanism:-)<br>
<br>
>> On 23.11.2018, Unbound-users wrote: <br>
<br>
>> i think dns tunnels are an abuse of the service, and that
users of dns tunnels should have a real and rational fear of
caching.
<pre class="moz-quote-pre" wrap="">
</pre>
<blockquote type="cite"
cite="mid:CABPjrMUBNekDsoys-=LfbqVs=XT2rwDNYvdq5ScwrNNVLYSYaw@mail.gmail.com"
style="border:none !important; margin-left:0px !important;
margin-right:0px !important; margin-top:0px !important;
padding-left:0px !important; padding-right:0px !important">
<pre class="moz-quote-pre" wrap="">
</pre>
</blockquote>
<br>
</body>
</html>