Anonymized EDNS Client Subnet is across the country from my IP

I tried enabling Anonymized EDNS Client Subnet, but it seems the subnet being used is across the country, which means any domains using ECS experience higher latency.

; <<>> DiG 9.18.16 <<>> CHAOS google.com
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 56217
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 9

; EDNS: version: 0, flags:; udp: 1232
;google.com. CH A

google.com. 149 IN A

device-name.nextdns.io. 0 CH TXT "<REDACTED>"
client-name.nextdns.io. 0 CH TXT "unknown-doh3"
server.nextdns.io. 0 CH TXT "anexia-ewr-1"
profile.nextdns.io. 0 CH TXT "<REDACTED>"
client.nextdns.io. 0 CH TXT "173.68.117.<REDACTED>"
device-id.nextdns.io. 0 CH TXT "<REDACTED>"
proto.nextdns.io. 0 CH TXT "DOH3"
smart-ecs.nextdns.io. 0 CH TXT ""

;; Query time: 10 msec
;; WHEN: Sat Aug 12 00:50:17 EDT 2023
;; MSG SIZE  rcvd: 323


I used https://www.iplocation.net/ip-lookup for IP Geo lookups.


Based on that, my actual subnet resolves to Verizon FiOS in the NYC area.

However, the ECS subnet resolves to Washington state, which is all the way across the country from me.

2 replies

    • cursedZerox
    • 1 yr ago
    • Reported - view

    I get the same ECS subdomain when connecting from another location in NYC.

    ; <<>> DiG 9.18.16 <<>> CHAOS google.com ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 54757 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 9 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 1232 ;; QUESTION SECTION: ;google.com. CH A ;; ANSWER SECTION: google.com. 118 IN A ;; ADDITIONAL SECTION: server.nextdns.io. 0 CH TXT "anexia-ewr-1" profile.nextdns.io. 0 CH TXT "<REDACTED>" client-name.nextdns.io. 0 CH TXT "unknown-doh3" proto.nextdns.io. 0 CH TXT "DOH3" client.nextdns.io. 0 CH TXT "108.30.158.<REDACTED>" device-name.nextdns.io. 0 CH TXT "<REDACTED>" device-id.nextdns.io. 0 CH TXT "<REDACTED>" smart-ecs.nextdns.io. 0 CH TXT "" ;; Query time: 10 msec ;; SERVER: (UDP) ;; WHEN: Sat Aug 12 11:07:23 EDT 2023 ;; MSG SIZE  rcvd: 324


    My actual subnet again resolves to NYC.

    • Clayton_Gee
    • 10 hrs ago
    • Reported - view

    And no one ever replied! I am finding the same thing in Sydney Australia. My EDNS is routing my via Melbourne (a city in a different state). 

Content aside

  • 10 hrs agoLast active
  • 2Replies
  • 177Views
  • 2 Following