Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed

Outline · [ Standard ] · Linear+

Unifi Official TM UniFi High Speed Broadband Thread V42, READ 1ST PAGE FOR RELEVANT WIFI INFO!

views
     
zhuoyang
post Jul 20 2024, 02:35 AM

Getting Started
**
Junior Member
197 posts

Joined: Jul 2011
QUOTE(kwss @ Jul 19 2024, 02:14 AM)
TM is poisoning DNS again. Last time they just outright block port 443, preventing DoH. This time they redirect you to their own server using their own certificate.

CODE

$ nmap -sCV -Pn -p 443 1.1.1.1
Starting Nmap 7.93 ( https://nmap.org ) at 2024-07-19 02:09 +08
Nmap scan report for 1.1.1.1
Host is up (0.0093s latency).

PORT    STATE SERVICE  VERSION
443/tcp open  ssl/http EMC Navisphere CIM Object Manager httpd
|_http-title: Site doesn't have a title.
| ssl-cert: Subject: commonName=dns.tm.net.my/organizationName=Telekom Malaysia Berhad/stateOrProvinceName=Kuala Lumpur/countryName=MY
| Subject Alternative Name: DNS:dns.tm.net.my
| Not valid before: 2024-07-09T01:22:02
|_Not valid after:  2025-04-06T04:36:03
|_ssl-date: TLS randomness does not represent time

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 33.86 seconds

*
No wonder yesterday suddenly my android private dns settings suddenly not working.
Btw this redirecting will break TLS right? Considering if we use DoH or DoT
zhuoyang
post Sep 3 2024, 11:12 AM

Getting Started
**
Junior Member
197 posts

Joined: Jul 2011
QUOTE(blackbox14 @ Sep 3 2024, 10:26 AM)
For those more knowledgeable about these things: is there a way they can block DoH without just IP blocking the DNS provider (Google, Cloudflare, quad9, etc.)?

I understand DoT can be blocked by blocking port 853.
*
Because DoH runs on HTTPS which most of the internet runs on, it is unlikely to just block DoH without IP blocking
zhuoyang
post Sep 6 2024, 08:34 AM

Getting Started
**
Junior Member
197 posts

Joined: Jul 2011
wtf, did TM just block cloudflare.com?
zhuoyang
post Sep 6 2024, 09:11 AM

Getting Started
**
Junior Member
197 posts

Joined: Jul 2011
QUOTE(soonwai @ Sep 6 2024, 08:41 AM)
cloudflare.com, no but one.one.one.one, yes. Not a block, more like they took over the IP.
*
ranting.gif this is just stupid, especially for someone who needs to use cloudflare for work
user posted image


Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0321sec    0.36    7 queries    GZIP Disabled
Time is now: 5th December 2025 - 06:24 PM