> On 23 Feb 2015, at 14:20, Phillip Hallam-Baker <[email protected]> wrote:
> 
> Busting the DNS middleboxen provided by ISPs to residential users is a very 
> different matter. They are selling Internet connectivity and their customer 
> has a right to get what they paid for, not a walled garden controlled by the 
> ISP. But in practice it isn't the walled gardens that are the problem so much 
> as clueless gateways that the ISPs often don't even know are doing DNS 
> interception.
> 


Whilst I don’t deny that ISPs are using middelboxes for things like advertising 
etc, it should also be pointed out that many ISPs are concerned about security, 
and may be using middleboxes to protect users from things like hijacking, 
detecting C&C in the DNS stream, detecting lookups to known phishing/malware 
sites etc. 

Assuming what users want or saying that they aren’t getting what they paid for 
is quite dangerous IMO. For example, many users sign up to third-party DNS 
services like OpenDNS, because they effectively *are* are a walled garden, or 
they may choose an ISP because it filters adult sites using DNS (such as 
happens here in the UK).

Neil

_______________________________________________
dns-privacy mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dns-privacy

Reply via email to