Hacker News new | ask | show | jobs
by piaste 1489 days ago
I disagree: delegating to a cache isn't a major problem, when the single source of truth is public and relatively easily accessible. A DNS server censoring or tampering with DNS requests is already trivially detectable now by comparing it to other servers, and it would be even easier to detect when anybody can operate a "full" DNS node with a $50 hard drive and a fiber connection.