TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Why would someone use OpenDNS on a per-PC basis? I must be missing something.

4 点作者 amrith超过 15 年前

5 条评论

jsz0超过 15 年前
Primarily because client side software that serves a similar function is bulky, harder to configure, and almost never free. If your browser becomes compromised there's a fine chance its built-in phishing/malware filter will be broken or disabled. It's unlikely a browser exploit could change your DNS settings -- if it could you've got much bigger problems.<p>From a performance point of view many ISP name servers are either oversubscribed or simply not fine tuned. There are many tricks to DNS configuration on busy servers and OpenDNS does a good job keeping their servers fast and responsive. Additionally your ISP may not be giving you the best possible DNS servers. Many ISPs are getting involved in the ISP sponsored custom redirect game. While OpenDNS does indulge in this to a degree their service doesn't seem to take a hit from it which is something I cannot say about other custom redirects.
iigs超过 15 年前
<i>So, could one really do this OpenDNS thing behind a pay-for-internet-service?</i><p>Yes but it requires the pay-for-internet provider to think about their real usage scenarios and plan for them appropriately. I'm involved in the engineering of a similar system that has nearly a million users, and we've chosen to leave port 53 wide open, even though it can theoretically be used for DNS tunneling or other nefarious use.<p>Also, I disagree with the comments on the post that claim that ISP DNS is the #1 cause of slowdowns -- DNS on an ISP scale is surprisingly easy to dimension and support in the common case. The important aspects of DNS administration center around debugging misbehaving authoritative servers and management of Denial of Service attacks.
评论 #798125 未加载
amrith超过 15 年前
More on this topic and a follow-on post at <a href="http://hypecycles.wordpress.com/2009/09/01/opendns-again/" rel="nofollow">http://hypecycles.wordpress.com/2009/09/01/opendns-again/</a>
abyssknight超过 15 年前
I used OpenDNS while at Defcon to avoid my DNS servers being spoofed. The minor configuration change was totally worth it.
kuzux超过 15 年前
Well, in Turkey, it's used for accessing (most of)the censored sites