Merit Network
Can't find what you're looking for? Search the Mail Archives.
  About Merit   Services   Network   Resources & Support   Network Research   News   Events   Home

Discussion Communities: Merit Network Email List Archives

North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Censorship at ISP-Level / DNS-Tampering Paper

  • From: Maximillian Dornseif
  • Date: Wed Jun 04 12:35:42 2003

[link for this:]

Dear (swinog | siug | nanog),

I recently asked for input on using proxies and DNS for blocking Web content.
After some great input from listsmembers and the work of dedicated reviewers I have put an preprint online: "Government mandated blocking of foreign Web content" can be found at or directly at blocking.pdf It tries to give an technical overview about censorship at ISP level.

The relevance for network management are mainly the empirical results on DNS tampering which are summarized at . Basically providers using DNS to block Web content don't get it right and break all kinds of stuff.

Besides the technical challanges - BIND's coarse granularity allowing basically only manipulations at zone level - I think we face serious policy challenges: When once starting with DNS tampering why not use it for commercial purposes. E.g. redirect people trying to access your competitors domains to your own stuff? Possibly government mandated blocking manages to finish off, what the ICANN-wars where not able to archive: destroy DNS as an unified namespace.

Thanks again for all the input.


Max Dornseif

Maximillian Dornseif -
Dipl. Jur., University of Bonn, Germany - ars longa, vita brevis!

Discussion Communities

About Merit | Services | Network | Resources & Support | Network Research
News | Events | Contact | Site Map | Merit Network Home

Merit Network, Inc.