0

Anonymized EDNS Amsterdam servers broken

Using Anonymized EDNS Client Subnet Amsterdam servers is not working anymore for more then 2 week now. Can this be fixed?

5 replies

null
    • BigDargon
    • 2 days ago
    • Reported - view

    Source: https://medium.com/nextdns/how-we-made-dns-both-fast-and-private-with-ecs-4970d70401e5

    To test ECS, use the dig command (Linux) with CHAOS

    dig help.nextdns.io CHAOS

    Result

    ; <<>> DiG 9.16.28 <<>> help.nextdns.io CHAOS
    ;; global options: +cmd
    ;; Got answer:
    ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12848
    ;; flags: qr rd ra; QUERY: 1, ANSWER: 3, AUTHORITY: 0, ADDITIONAL: 7
    ;; OPT PSEUDOSECTION:
    ; EDNS: version: 0, flags:; udp: 1232
    ;; QUESTION SECTION:
    ;help.nextdns.io.               CH      A
    ;; ANSWER SECTION:
    help.nextdns.io.        176     IN      CNAME   nextdns.forumbee.com.
    nextdns.forumbee.com.   1106    IN      CNAME   forumbee.com.
    forumbee.com.           1106    IN      A       35.165.247.157
    ;; ADDITIONAL SECTION:
    server.nextdns.io.      0       CH      TXT     "greencloud-sgn-1"
    profile.nextdns.io.     0       CH      TXT     "XXX"
    client.nextdns.io.      0       CH      TXT     "115.76.XXX.XXX"
    client-name.nextdns.io. 0       CH      TXT     "nextdns-windows"
    proto.nextdns.io.       0       CH      TXT     "DOH"
    smart-ecs.nextdns.io.   0       CH      TXT     "23.36.145.0/24"
    ;; Query time: 7 msec
    ;; SERVER: 192.168.1.1#53(192.168.1.1)
    ;; WHEN: Tue Aug 26 14:34:10 SE Asia Standard Time 2025
    ;; MSG SIZE  rcvd: 435
    • Samplex
    • yesterday
    • Reported - view

    As i told you ECS is broken in the Amsterdam servers using the Linked IP's

    dig help.nextdns.io CHAOS

    ; <<>> DiG 9.10.6 <<>> help.nextdns.io CHAOS
    ;; global options: +cmd
    ;; Got answer:
    ;; ->>HEADER<<- opcode: QUERY, status: REFUSED, id: 33896
    ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1

    ;; OPT PSEUDOSECTION:
    ; EDNS: version: 0, flags:; udp: 1232
    ;; QUESTION SECTION:
    ;help.nextdns.io.               CH      A

    ;; Query time: 19 msec
    ;; SERVER: 192.168.0.1#53(192.168.0.1)
    ;; WHEN: Tue Aug 26 18:27:48 CEST 2025
    ;; MSG SIZE  rcvd: 44

      • BigDargon
      • yesterday
      • Reported - view

      What is output at https://test.nextdns.io ?

      • Samplex
      • yesterday
      • Reported - view

       

      {
      "status": "ok",
      "protocol": "UDP",
      "profile": "fp4c8c87a3a4a955c6",
      "client": "188.90.2XX.XXX",
      "srcIP": "188.90.2XX.XXX",
      "destIP": "45.90.30.90",
      "anycast": true,
      "server": "vultr-ams-1",
      "clientName": "unknown"
      }
      
      I redacted my public, so as you can see no ECS.
      
      
      
      • BigDargon
      • 7 hrs ago
      • Reported - view

       Some routers/modems will not support CHAOS records. I query the records when installing NextDNS on the device (eg linux operating system).

Content aside

  • 7 hrs agoLast active
  • 5Replies
  • 54Views
  • 2 Following