Skip to Content.
Sympa Menu

dns-operations - Re: [opennic-dns-operations] Whitelist functions are now ready

dns-operations AT lists.opennicproject.org

Subject: Dns-operations mailing list

List archive

Re: [opennic-dns-operations] Whitelist functions are now ready


Chronological Thread 
  • From: Guillaume Parent <gparent AT gparent.org>
  • To: dns-operations AT lists.opennicproject.org
  • Subject: Re: [opennic-dns-operations] Whitelist functions are now ready
  • Date: Wed, 12 Feb 2014 14:49:49 -0500

I agree with most of this, but there are some rather obvious lies:

>Users should also realize that a whitelisted server will be *faster* because they will have more bandwidth free to answer legitimate queries.

It will be faster than *the same server not using whitelisting*. That's all. Whitelisted servers are never going to be inherently better than non-whitelisted servers.

>Eventually opennic may go to only using whitelisting because of the benefits from attacks.

This will never happen unless you intend on kicking me out of the project or forcibly remove my server from the list, FYI.


On Tue, Feb 11, 2014 at 11:57 AM, Jeff Taylor <shdwdrgn AT sourpuss.net> wrote:
I didn't realize there was a discussion going on already!  Sorry I'm late to the party...

If a server only allows whitelisting, then the bots will go away over time.  Eventually opennic may go to only using whitelisting because of the benefits from attacks.  Users should also realize that a whitelisted server will be *faster* because they will have more bandwidth free to answer legitimate queries.

Regarding the matter of distinguishing the servers using whitelisting... There should definitely be a flag on the wiki page signifying if a server is using whitelisting or not, and that flag could be used for sorting the list.  Additionally, we will have to revise our listings of 'nearest servers' to allow users to make a choice between whitelisted and fully-open servers (with the full-open servers being the default view).

And of course we will need to write some wiki how-to pages to show people how to register their IP on various platforms.  This project is still getting off the ground, it will take some time to get everything set up.  However for anyone wondering how they can contribute, it would be great if anyone wants to start working on documentation.  Linux and Mac users should be easy... simply adding a cron job that runs hourly or at boot...  Windows will be more involved, installing wget and setting up a scheduled task (or if anyone has alternate ideas?) and will require screenshots of the various steps.  We also need a front page in the wiki to lay out the benefits of whitelisting, and discuss the measures put in place to protect a user's privacy.



On 02/10/2014 07:24 PM, Quinn Wood wrote:
On Mon, Feb 10, 2014 at 7:37 PM, Guillaume Parent <gparent AT gparent.org> wrote:
The point is not to punish people who wish to protect their servers, but to
not confuse users who are sometimes already so technically challenged that
they have no idea what to do with the IP in the first place.

I guess at this junction, it's a question of whether or not we value a
large userbase more than educating a small userbase.

----
To unsubscribe, email dns-operations-unsubscribe@lists.opennicproject.org


----
To unsubscribe, email dns-operations-unsubscribe@lists.opennicproject.org




Archive powered by MHonArc 2.6.19.

Top of Page