buffrr / letsdane

🔒 Let's DANE is an experimental way to enable the use of DANE/TLSA in browsers and other apps using a lightweight proxy.
Apache License 2.0
111 stars 11 forks source link

Discord doesn't connect even with -skip-icann #5

Closed rithvikvibhu closed 3 years ago

rithvikvibhu commented 3 years ago

I use letsdane on android (well, the proxy runs on a raspi). All apps and browsers work fine. DANE for Handshake names also works. But the Discord app doesn't. It's always on connecting. Could be a websocket thing or some kind of pinning, but I thought -skip-icann doesn't modify anything.

Will try to debug this more, just wanted to post it here first if you had any ideas.

buffrr commented 3 years ago

even if you don't use -skip-icann it should work. letsdane only modifies requests that have a TLSA record otherwise it just forwards the request. Do you see any errors in the logs? you can also use -verbose to see if there is anything else from discord.

rithvikvibhu commented 3 years ago

Sorry, turns out it was Resolvr (https://resolvr.info) not responding properly. Which is weird because that's the first thing I tested with dig and it worked.

Anyway, discord worked fine when letsdane used hnsd and hsd.