[tor-relays] HOW-TO: Simple DNS resolver for tor exit operators

Ralph Seichter m16+tor at monksofcool.net
Tue Sep 12 20:25:15 UTC 2017


On 12.09.17 22:11, jpmvtd261 at laposte.net wrote:

> My idea is designed to protect the exit node against a DNS attack from
> the owner of the DNS server. Not from the ISP or an attacker monitoring
> the traffic going in and out of the ISP data center.

I'm not certain what you consider a "DNS attack".

Many exit node operators run a caching DNS resolver on their exits,
which is easily done. Lacking that, you can use the resolvers run by
your ISP, who can monitor all outbound traffic anyway, as I mentioned.

-Ralph


More information about the tor-relays mailing list