[wplug] evil DNS redirection from Verizon FIOS, and how to disable it

Eric Cooper ecc at cmu.edu
Wed Jul 23 15:20:51 EDT 2008


I have my local DNS set to forward to the nameservers that Verizon
provides via DHCP when my gateway gets its IP address.  I recently
noticed that any DNS query that should result in NXDOMAIN instead gets
a valid response that lands you at Verizon's web search "service".

Of course, I could forward to a different nameserver that doesn't do
this, but the latency to Verizon's is much lower than any alternative.

The solution (actually documented on Verizon's site, but difficult to
find) is to use nameserver addresses of the form x.y.z.14 instead of
the x.y.z.12 ones that DHCP returns.

I made my DHCP client script do this automatically, but you can also
just configure the router to use static nameserver addresses.

-- 
Eric Cooper             e c c @ c m u . e d u


More information about the wplug mailing list