fre, 2002-03-08 kl. 14:13 skrev Ted Fines:

> Maybe I wasn't clear...

Yeah. Well. 'T weren't you what were not clear. 'T was me what did
misunderstand the question.

I understood it as 'traffic in', not 'traffic out'.

> Exactly!  But you can control which DNS server your users use.  When you 
> set up this 'fakey' DNS server--as in, it doesn't communicate with 
> others--that thinks it is authoritative, you can tell it that it is 
> authoritative for anything you want, including Microsoft.com!

That works, 127.0.0.1 is now authoritative for microsoft.com and
redirects to the Junkbuster proxy on 127.0.0.1. Develish grin.

On my laptop, that is.

> > 2: You cannot filter out access from given domains to other domains with
> > a DNS server.

> I'm not sure what you're saying here.

Traffic in vs. traffic out again. My mistake.

This time, my principal objection is, that this is misuse of DNS. Which
also prompted my previous reply, actually. I've seen too many
misconfigured DNS servers in my time to want such a thing.

With Junkbuster as proxy (actually designed to filter ads and other
Internet shit) you can accomplish this well for socks4 and socks4a -
though not for socks5 or ftp.

Nec's socks5 would give you ftp and other possibilities, ANYTHING rather
than DNS: DNS is holy and a well configured DNS hierarchy is a thing of
beauty and wonder to behold.

Tony

-- 

Tony Earnshaw

e-post:         [EMAIL PROTECTED]
www:            http://www.billy.demon.nl
www:            http://tony_earnshaw.freelancers.net

Telefoon:       (+31) (0)172 530428
Mobiel:         (+31) (0)6 51153356

GPG/PGP Fingerprint: 3924 6BF8 A755 DE1A 4AD6  FA2B F7D7 6051 3BE7 B981

Attachment: signature.asc
Description: Dette er en digitalt signert meldingsdel

Reply via email to