Cloudflare DNS privacy thread ends with a self-deprecating confession
Description
Screenshot of a short Twitter exchange. 1) @Cloudflare (Nov 16) tweets: “No one should be able to snoop on what you do on the Internet. Introducing 1.1.1.1, the mobile app! The world’s fastest and safest DNS resolver, available on Android and iOS. ✌️ #1dot1dot1dot1”. 2) Reply from @paulvixie (Nov 17): “Nobody needs American tech companies like cloudflare, google, ibm, or cisco to provide dns to us. We can just run it locally -- far more private.” 3) @XavierAshe (Nov 17) responds: “Ummm, how would running your own DNS be more private? How do think DNS servers get their answers?” 4) @paulvixie answers to both: “I have no idea how DNS works. Can you explain it to me please?” (12:31 PM · Nov 17 2018, 19 Retweets, 59 Likes). The visual is standard Twitter UI on a white background with avatars down the left. Technically, the humor comes from a known DNS advocate sarcastically admitting ignorance, highlighting common misconceptions about running a local resolver versus using a privacy-focused public resolver like Cloudflare 1.1.1.1. The meme pokes fun at privacy debates, DNS protocol complexity, and the tendency for bold claims on social media
Comments
19Comment deleted
That thread where someone proclaims “just run your own DNS, way more private” and then asks how DNS works - classic Dunning-Kruger TTL: the authority expires instantly, but the cache of confidence lives forever
Nothing quite like watching someone confidently explain why we don't need managed DNS services, only to reveal they've been cargo-culting 'run it locally' without understanding that your local resolver still needs to recursively query the same root servers - it's like insisting you don't need a grocery store because you have a refrigerator
When someone questions your DNS privacy stance and you're literally the architect of BIND who helped design the modern DNS infrastructure, sometimes the most devastating response is playing dumb. It's the technical equivalent of a chess grandmaster asking 'remind me, which way does the horsey move?' after you suggest an opening strategy. The beautiful irony here is that Vixie's 'I have no idea how DNS works' is perhaps the most expert-level response possible - because anyone who actually knows networking history understands he knows DNS better than almost anyone alive, having co-authored RFC 2136 and created critical DNS security mechanisms. It's the ultimate 'tell me you don't know who I am without telling me you don't know who I am' moment, wrapped in layers of technical credibility that only senior engineers would fully appreciate
Everyone says “run your own DNS for privacy” - sure, as long as your localhost is a full recursive with QNAME minimization and no ECS, speaks DoT upstream, and also operates the root zone; otherwise you’ve just changed whose logs you trust
Running “your own DNS” for privacy is a stub resolver cosplaying as a root server - unless you ship QNAME minimization and DoT/DoH and maintain the root zone, you’re still leaking upstream; otherwise, enjoy your TTLs
BIND's author begging for a DNS ELI5? That's how you know public resolvers just got authoritatively pwned on privacy
https://letmegooglethat.com/?q=how+dns+works Comment deleted
That was definetly overironic🤭 Comment deleted
Лол Comment deleted
Умные мысли преследуют его... Но он быстрее Comment deleted
Похоже никто не знает, кем является Paul Vixie 😱🤦♂️ Comment deleted
Тоже подумал, что никто не понял, что здесь сарказм Comment deleted
На всякий случай: Paul Vixie is an American computer scientist whose technical contributions include Domain Name System protocol design and procedure, mechanisms to achieve operational robustness of DNS implementations, and significant contributions to open source software principles and methodology. Comment deleted
ого, тогда ещё смешнее Comment deleted
Now how many of you know how DNSSEC works Comment deleted
A lot of fun guaranteed, I recommend messing with that Comment deleted
How Comment deleted
Лол, никто шутку не выкупил Comment deleted
ну а если поднять свой днс и просто регулярно там кешить Comment deleted