Yet another Quadruple DNS?


intercept/inject? why. an ISP can just run its own standard DNS
servers on and and point
their customers to those - they own their routing space, they can just
route to those locally....so anyone thinking they
can avoid their ISP by choosing some other addresses are mistaken....
the only way to avoid is through encrypted lookups
to a known/trusted/and signed endpoint etc