On Thu, 16 Jul 2009, Florian Weimer wrote:
>
> If you want to address the issue with hotspot doorway pages, you need
> protocol changes.

Better to use an intercepting proxy in that case, and for quarantining
infected hosts.

Protocol changes aren't sufficient because if you just extend DNS
without adding restrictions then cunning people can obtain connectivity
via your resolver.

I think these cases are qualitatively different from the main goal of this
draft. A captive portal completely blocks normal connectivity, whereas
this draft talks about selective blocks.

Tony.
-- 
f.anthony.n.finch  <d...@dotat.at>  http://dotat.at/
GERMAN BIGHT HUMBER: SOUTHWEST 5 TO 7. MODERATE OR ROUGH. SQUALLY SHOWERS.
MODERATE OR GOOD.
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to