On Tue, Jun 11, 2013 at 10:38:52AM -0700, Steve Langasek wrote: > [...] > Not for what he's described. dig @$other_server would still work just fine, > you would merely have /etc/resolv.conf pointing at 127.0.0.1 and have the > *kernel* handle the DNS forwarding instead of using dnsmasq or another > proxy. It does have the advantage of simplicity, but there are some > important cases (such as split-DNS over a VPN) that couldn't be handled in > the kernel. Oh, I misunderstood what he meant. I thought he meant to hijack all outgoing DNS packets and redirect them to a server of choice. -- Kind regards, Loong Jin
Attachment:
signature.asc
Description: Digital signature