Open JeremyRand opened 5 years ago
Note that we should apply a limit on recursive CNAME
s in order to avoid infinite loop issues.
Would be useful to check what the limit is set to in recursive DNS servers such as Unbound.
Hmm, this might make more sense to solve on the StemNS layer rather than the ncprop279 layer. That way we can handle the case of one naming plugin redirecting to another.
We don't recursively follow
CNAME
s, which means that anyCNAME
record that points to another.bit
domain will end up leaking to the Tor exit relay. We should recursively followCNAME
records to fix this.