Maintained by: NLnet Labs

[Unbound-users] Captive portal question

Paul Wouters
Fri Apr 23 17:42:10 CEST 2010


On Fri, 23 Apr 2010, Ondřej Surý wrote:

> Isn't it easier to mess with tcp then to mess with dns? It's just few lines 
> in your firewall configuration.

It's better too. You don't "screw up" the one DNS/webpage the user tried to go to.
Especailly in browsers with fast-flux protection that cache the DNS answer despite
any minimum TTL from the DNS answer.

Paul