Hacker News new | ask | show | jobs
by tptacek 854 days ago
Worth noting that an ISP that does this --- literally intercepting all port 53 traffic, TCP and UDP --- can just strip DNSSEC, too.