Welcome Guest ( Log In | Register )

57 Pages « < 11 12 13 14 15 > » Bottom

Outline · [ Standard ] · Linear+

 It seems TM Unifi has finally implemented, transparent DNS proxy

views
     
SUSraynman
post Sep 4 2024, 01:20 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


QUOTE(zerorating @ Sep 4 2024, 01:06 PM)
probably cyberjaya, putrajaya are affected now.
mine address is puchong, but the tm box said 'cyber'
*
So you are now affected.

How did you avoid the blocking?
zerorating
post Sep 4 2024, 01:25 PM

Miskin Adab
*****
Senior Member
975 posts

Joined: Aug 2007
From: Lokap Polis


QUOTE(raynman @ Sep 4 2024, 01:20 PM)
So you are now affected.

How did you avoid the blocking?
*
use other dns service.
anyway, i will not keep posting dns servers that i use, the less people know, the longer it can survive.
but hey feel free to use dns server on my sig (for people who are totally lost)

This post has been edited by zerorating: Sep 4 2024, 01:25 PM
smallgiant
post Sep 4 2024, 01:33 PM

New Member
*
Junior Member
49 posts

Joined: Feb 2015
QUOTE(zerorating @ Sep 4 2024, 01:25 PM)
use other dns service.
anyway, i will not keep posting dns servers that i use, the less people know, the longer it can survive.
but hey feel free to use dns server on my sig (for people who are totally lost)
*
Plain dns still works? Tm nut doesn't intercept all?
SUSraynman
post Sep 4 2024, 01:34 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


QUOTE(smallgiant @ Sep 4 2024, 01:12 PM)
Kidah affected, all browsers on my phone didn't work last night (DoH), bilibili not accessible on TV box (plain dns).
*
When did it first start to be affected? Yesterday?
zerorating
post Sep 4 2024, 01:35 PM

Miskin Adab
*****
Senior Member
975 posts

Joined: Aug 2007
From: Lokap Polis


QUOTE(smallgiant @ Sep 4 2024, 01:33 PM)
Plain dns still works? Tm nut doesn't intercept all?
*
implement transparent proxy for the whole nation scale is costly.
that is why they utilize static route change instead.

i cant brain how much cost for them to implement proxy, enterprise usually use two virtual appliance in one site. one active, one failover, if got load balanced also only two virtual appliance active. each license cost like 2000usd per year.

This post has been edited by zerorating: Sep 4 2024, 01:41 PM
smallgiant
post Sep 4 2024, 01:39 PM

New Member
*
Junior Member
49 posts

Joined: Feb 2015
QUOTE(raynman @ Sep 4 2024, 01:34 PM)
When did it first start to be affected? Yesterday?
*
Past midnight, tried to use the browser around 2 am, no go.
SUSraynman
post Sep 4 2024, 01:41 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


QUOTE(smallgiant @ Sep 4 2024, 01:39 PM)
Past midnight, tried to use the browser around 2 am, no go.
*
Thanks for sharing
Oltromen Ripot
post Sep 4 2024, 01:53 PM

👍 999999 person Likes this member
*******
Senior Member
4,034 posts

Joined: Dec 2019
sigh...
on maxis mobile internet

manual dig pornhub.com
@1.1.1.1 hijacked
@8.8.8.8 hijacked
@9.9.9.9 hijacked

so much for MSC charter
SUSraynman
post Sep 4 2024, 01:56 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


QUOTE(Oltromen Ripot @ Sep 4 2024, 01:53 PM)
sigh...
on maxis mobile internet

manual dig pornhub.com
@1.1.1.1 hijacked
@8.8.8.8 hijacked
@9.9.9.9 hijacked

so much for MSC charter
*
Quad9 also affected now?
zerorating
post Sep 4 2024, 02:00 PM

Miskin Adab
*****
Senior Member
975 posts

Joined: Aug 2007
From: Lokap Polis


QUOTE(raynman @ Sep 4 2024, 01:56 PM)
Quad9 also affected now?
*
openvpn also kena.
if someone found a loophole, keep it for yourself. i dont think TM will stop at here.
Oltromen Ripot
post Sep 4 2024, 02:02 PM

👍 999999 person Likes this member
*******
Senior Member
4,034 posts

Joined: Dec 2019
QUOTE(raynman @ Sep 4 2024, 01:56 PM)
Quad9 also affected now?
*
user posted image
mhyug
post Sep 4 2024, 02:06 PM

Regular
******
Senior Member
1,553 posts

Joined: May 2009
QUOTE(zerorating @ Sep 4 2024, 02:00 PM)
openvpn also kena.
if someone found a loophole, keep it for yourself. i dont think TM will stop at here.
*
i dont think it will be secret or can be kept secret for long. Some may share some not but eitehr way since enforcement is here they will rat it out until either side breaks.

Well heres what we do know, some isp you can still bypass stuf with the dot settings, dns etc etc etc, while some others cant. VPN is an option albeit we may need to pay for it. good time for VPN companies eh. biggrin.gif

Annoyingly kena blanket censorship of what they deem right and wrong tu yg x tahan.

This post has been edited by mhyug: Sep 4 2024, 02:06 PM
zerorating
post Sep 4 2024, 02:10 PM

Miskin Adab
*****
Senior Member
975 posts

Joined: Aug 2007
From: Lokap Polis


QUOTE(mhyug @ Sep 4 2024, 02:06 PM)
i dont think it will be secret or can be kept secret for long. Some may share some not but eitehr way since enforcement is here they will rat it out until either side breaks.

Well heres what we do know, some isp you can still bypass stuf with the dot settings, dns etc etc etc, while some others cant. VPN is an option albeit we  may need to pay for it. good time for VPN companies eh. biggrin.gif

Annoyingly kena blanket censorship of what they deem right and wrong tu yg x tahan.
*
i am currently plan to have dns server that are not using standard port 53, will like masquerade as port 443
good thing openwrt accept non standard port dns service as upstream biggrin.gif

This post has been edited by zerorating: Sep 4 2024, 02:10 PM
SUSraynman
post Sep 4 2024, 02:10 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


QUOTE(mhyug @ Sep 4 2024, 02:06 PM)
i dont think it will be secret or can be kept secret for long. Some may share some not but eitehr way since enforcement is here they will rat it out until either side breaks.

Well heres what we do know, some isp you can still bypass stuf with the dot settings, dns etc etc etc, while some others cant. VPN is an option albeit we  may need to pay for it. good time for VPN companies eh. biggrin.gif

Annoyingly kena blanket censorship of what they deem right and wrong tu yg x tahan.
*


Yes, VPN companies are going to make a killing biggrin.gif
mhyug
post Sep 4 2024, 02:12 PM

Regular
******
Senior Member
1,553 posts

Joined: May 2009
on a long run, ie change of gov, i do wonder if they will still uphold all these policies. since i think(may be wrong) it has some financial impacts since isp's have to do extra stuff ecte tc.

will we see a these censorships dropped?only time and next GE will telll la kot haha
Kadaj
post Sep 4 2024, 02:25 PM

On my way
****
Junior Member
586 posts

Joined: Mar 2006
I'm kind, who look for alternative, take it:
QUOTE
If your country has hijacked Cloudflare (1.1.1.1) and Google DNS (8.8.8.8), here are some alternative DNS services you can try:

    OpenDNS by Cisco
        Primary DNS: 208.67.222.222
        Secondary DNS: 208.67.220.220

    Quad9
        Primary DNS: 9.9.9.9
        Secondary DNS: 149.112.112.112

    AdGuard DNS
        Primary DNS: 94.140.14.14
        Secondary DNS: 94.140.15.15

    Comodo Secure DNS
        Primary DNS: 8.26.56.26
        Secondary DNS: 8.20.247.20

    CleanBrowsing
        Family Filter DNS: 185.228.168.168
        Adult Filter DNS: 185.228.168.10
        Security Filter DNS: 185.228.168.9

    Yandex.DNS
        Basic: 77.88.8.8
        Safe: 77.88.8.88
        Family: 77.88.8.7

    Verisign Public DNS
        Primary DNS: 64.6.64.6
        Secondary DNS: 64.6.65.6

    Neustar UltraDNS Public
        Primary DNS: 156.154.70.1
        Secondary DNS: 156.154.71.1

In environments where DNS hijacking is a concern, you might want to consider using DNS over HTTPS (DoH) or DNS over TLS (DoT) to encrypt your DNS queries, preventing interception or tampering. Some of the services listed above, like Cloudflare and Google, support these protocols, and others might as well. However, you should check each service's documentation for details.

---

Thanks to ChatGPT.

Just a kind reminder, it's easier for ISP to catch those who bypass the DNS blocking but still use unencrypted connection without VPN.
alpha33
post Sep 4 2024, 02:30 PM

Regular
******
Senior Member
1,010 posts

Joined: Apr 2005


anyone using 'dns.adguard.com' on their mobile to bypass ads?
it stopped working for me the same time i am affected with the block(unifi).

but it still works on my unaffected office line.

any alternative for this?
for playing games adfree on mobile.

SUSraynman
post Sep 4 2024, 02:39 PM

Look at all my stars!!
*******
Senior Member
4,333 posts

Joined: Jan 2003


My Cloudflare WARP just started not to work and I cannot access those torrent sites anymore.

Luckily I am now using ProtonVPN to circumvent the blocking.
brkli
post Sep 4 2024, 02:41 PM

On my way
****
Junior Member
592 posts

Joined: Oct 2018
QUOTE(oRoXoRo @ Sep 4 2024, 01:59 AM)
so VPN the only solution?
*
use ipv6.. owai..
junsheng
post Sep 4 2024, 02:51 PM

---> pokemon ftw <---
******
Senior Member
1,257 posts

Joined: Apr 2011
From: Penang Malaysia, sometime KL


QUOTE(mhyug @ Sep 4 2024, 02:12 PM)
on a long run, ie change of gov, i do wonder if they will still uphold all these policies. since i think(may be wrong) it has some financial impacts since isp's have to do extra stuff ecte tc.

will we see a these censorships dropped?only time and next GE will telll la kot haha
*
they will still uphold it, imagine getting all the tools implemented by others but not the hate?
this has been ongoing for quite sometimes, the situation is just like frog in boilling water.

57 Pages « < 11 12 13 14 15 > » Top
 

Change to:
| Lo-Fi Version
0.0187sec    1.00    6 queries    GZIP Disabled
Time is now: 18th December 2025 - 06:35 AM