Skip to content

hdais/edns-query-target-info

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

17 Commits
 
 

Repository files navigation

edns-query-target-info

enables “name-based” virtual hosting for DNS authoritative server

tl;dr

$ dig _acme-challenge.algorithm13.net TXT @8.8.8.8 +short
"hijacked"

$ dig _esni.algorithm13.net TXT @8.8.8.8 +short
"legitimate delagation"
$ dig _acme-challenge.algorithm13.net TXT @res-eqt.hdais.net | grep status
... status: NXDOMAIN ...

$ dig _esni.algorithm13.net TXT @res-eqt.hdais.net +short
"legitimate delagation"

Implementation

Authoritative server

Full service resolver

git clone -b edns-query-target https://github.com/hdais/unbound/

Use res-eqt.hdais.net

dig _acme-challenge.algorithm13.net TXT @res-eqt.hdais.net

(This is a rate-limited open-resolver, which returns TC=1 on receiving UDP queries and accepts TCP queries only)

About

enables “name-based” virtual hosting for DNS authoritative server

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors