Live data from Hacker News

Can't trust any VPN these days

blog.orhun.dev

11–20 of 85 posts

Re: Can't trust any VPN these days

#11
post #7

I would say that the title is misleading. The author set up their own VPN, but didn't delve into what the config options they used actually do until they ran into problems. Everything else follows from that.

It still looks like it'll be useful to some people.

DNS leaks are easy to miss.

Re: Can't trust any VPN these days

#13
Clicking the link, it bought this was going to be about the issue identified in Mullvad discussed here; https://news.ycombinator.com/item?id=41856883 but this isn't even a bug or about trust.

A VPN (in this context) is hardly a VPN if it doesn't traffic dns requests, and it's probably the false advertising by the "you need a vpn to securely access the internet" companies that misinformed OP what type of VPN they were setting up.

The title should be more like "can't trust not reading the manual these days", or "can't trust sane defaults"

Re: Can't trust any VPN these days

#15
post #7

I would say that the title is misleading. The author set up their own VPN, but didn't delve into what the config options they used actually do until they ran into problems. Everything else follows from that.

So much work just because someone is using advertised dns from pppoe

Re: Can't trust any VPN these days

#18

What if the the author simply used 1.1.1.1 / 8.8.8.8 / any other public DNS outside of their country for all traffic? It's an easier solution (yeah, with some drawbacks)

It would be intercepted at the ISP level and the false results would still be received. There are lots of DNS intercepting tools ISPs buy these days.

DNS isn't authenticated.

Post reply on HN