QUOTE(aniq8676 @ Sep 7 2024, 09:10 PM)
When someone asked about the DNS issue,
their response

.
https://forum.lowyat.net/index.php?showtopi...ost&p=110410164 -
It seems TM Unifi has finally implemented, transparent DNS proxy QUOTE(lurkingaround @ Sep 6 2024, 11:36 PM)
.
Officially, it was TM Unfi Fibre who unilaterally imposed additional DoH and DoT hijacking of the common Public DNS servers, eg Google8888, Cloudflare1111 and Quad9999, 2 days ago, not MCMC, who only mandated/ordered the ISPs to impose Tansparent DNS Proxy blocking, as per .......
https://www.malaymail.com/news/malaysia/202...roviders/146480 -
2024 Aug 9 - MCMC responds to allegations of DNS tampering by Malaysian internet service providers KUALA LUMPUR, Aug 9 — The Malaysian Communications and Multimedia Commission (MCMC) has issued a statement following recent reports that Malaysian internet service providers (ISP) had quietly forced all internet traffic to their local DNS servers. As reported earlier, several ISPs have implemented Transparent DNS Proxy, which prevents Malaysian users from accessing blocked sites even if they use alternative DNS such as Google Public DNS and Cloudflare. ...
Following the report by Sinar Project, we verified the claims by testing several blocked websites on several ISPs while using Google and Cloudflare DNS. We noticed that the forced redirection to local DNS was in effect for Time, Maxis, U Mobile, CelcomDigi and Unifi. .... It's likely that TM Unifi Fibre has realized their mistake and inadvertent negative impact on many businesses/enterprises = undo their DoH/DoT hijacking.
In the first place, why did TM Unifi Fibre did all that and U-Turned, when the other ISPs did not.?, ie imposed DoH/DoT hijacking.
....... Will TM Unifi Fibre do it again by a certain date after informing all their Business subscribers of their intention to impose DoH/DoT hijacking.?
.
P S - This reminds me of the Crowdstrike fiasco.
.
QUOTE((lurkingaround @ Sep 7 2024, 12:32 AM)
.
CHRONOLOGY: .......
- since PM6 Najib era - MCMC mandated all the ISPs to block blacklisted or undesirable (eg prawn) websites through their DNS servers which are the default DNS servers for their subscribers. This blocking could be bypassed by tech-savvy subscribers manually selecting their own Public DNS server, either in their OS or browser Setting, eg Google8888, Cloudflare1111, etc. Alternately tech-savvy subscribers could encrypt their DNS traffic by manually selecting Secure DNS (= DoH or DNS over HTTPS) for privacy and security purposes. ISPs can't see encrypted/Secure Public DNS servers.
....... IT admins could even set up their own Secure Private DNS server.
- Early Aug 2024 - PMX's MCMC quietly mandated all the ISPs to impose Transparent DNS Proxy blocking (= DNS blocking) to stop subscribers from using their own (unencrypted) common Public DNS server, eg Google8888, Cloudflare1111, etc. DoH and DoT (= DNS over TLS) were unaffected by this type of blocking. Eg .......
https://imap.sinarproject.org/news/internet...lic-dns-servers -
Internet Censorship Update: Transparent DNS Proxy Implemented by Malaysian ISPs on Cloudflare and Google Public DNS Servers
Transparent DNS Proxy Implemented by Malaysian ISPs on Cloudflare and Google Public DNS Servers
6th August 2024 - how to bypass the blocking with DoH - 2 days ago - TM Unifi Fibre quietly started to impose additional (IP) blocking by hijacking the IP addresses of the commonly used encrypted/Secure Public DNS servers of DoH and DoT, eg Google8888, Cloudflare1111, Quad9999 and Adguard. This was done by TM region by region starting with Klang Valley. Yesterday night, more regions were affected. This sudden move by TM negatively affected many Business subscribers who employ tech-savvy IT admins, eg to secure their DNS servers with DoH or DoT from Cloudflare1111.
- Last night, ie around 10.30pm Friday 06 Sep, TM U-Turned and undid their additional IP blocking of the common Public DNS servers of DoH and DoT. ....
.
.
MCMC ordered TM to U-turn or undo their IP blocking.?
.
This post has been edited by lurkingaround: Sep 7 2024, 11:23 PM