[ogWiFi] Restrictions to public sites via ogWifi

Michael Richardson mcr at sandelman.ottawa.on.ca
Fri May 15 20:50:39 EDT 2009


Doing filtering by DNS is inhierently insecure.

The moment that DNSSEC is turned on (.gov is signed, .se is signed, .ca
will be this year), then things like OpenDNS will appear like attacks on
DNS. 

I don't think ogwifi should endorse it.  Some may want to use it, and we
shouldn't stop them, but they should be aware that it does not provide
any actual protection against DNS attacks. In fact, it makes them
easier.

-- 
]     Y'avait une poule de jammé dans l'muffler!!!!!!!!!        |  firewalls  [
]   Michael Richardson, Sandelman Software Works, Ottawa, ON    |net architect[
] mcr at sandelman.ottawa.on.ca http://www.sandelman.ottawa.on.ca/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [




More information about the Ogwifi mailing list