-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Dont forget about legal issues. Using anti-ISP filtration/censorship crypto solutions can be completely out-of-law in some countries. 01.07.2016 20:27, reinerotto пишет: > Please, don't be so cryptic in your comments. The long quotations of the org > post are also a bit annoying, but anyway: > > As you obviously do not understand the principle, how it works _without_ > cisco, lemme explain: > (assuming, all traffic from users is routed via squid box) > - iptables rules (redirect port 53) make shure, all clients only use > _local_dnsmasq for DNS. > - Squid also uses only _local_ dnsmasq > - local dnsmasq uses upstream DNS _only_ via dnscrpyt_proxy. > - dnsmasq-proxy is configured to access one of the dns-crypt-enabled DNS > servers. > cisco is just one of them. > > > > > > > -- > View this message in context: http://squid-web-proxy-cache.1019090.n4.nabble.com/Force-DNS-queries-over-TCP-tp4678324p4678350.html > Sent from the Squid - Users mailing list archive at Nabble.com. > _______________________________________________ > squid-users mailing list > squid-users@xxxxxxxxxxxxxxxxxxxxx > http://lists.squid-cache.org/listinfo/squid-users -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBCAAGBQJXdos9AAoJENNXIZxhPexGpOYIAJai5s5FTXyxw47EAFp94Pfg csElCyWbpxGWlhGOX5t75TpmAE1Aq+1tgjwOw1b+cqSdldoOSwGI+drgYMpgh89w i7L278egRf9y/d65eJQeINeIG77vnVtp6STOWceohIZt/eL9RSI+BtwLr5Y2Zns+ s7kSPv4O3C7W1+vV0wMOGA+74j+QdkYUZ+vNH7LSY3HmKOLZGY+dqs7MnK4uRy+p YGdjC+0OtP7ppspm7pEwvBHZ9S+WDMrrfXJFLOTYnUhRz6W6nYKMWOXs9uPOvnio T3+BHnrsbVFrCYksNcMsD/0pINTXB4Zazm3C75NKF+R+POg2kpolf4b9dwuweAQ= =STNm -----END PGP SIGNATURE-----
Attachment:
0x613DEC46.asc
Description: application/pgp-keys
_______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users