FINDING · DEFENSE
During Iran's near-complete February 2026 shutdown, DNS-based tunneling (dnstt over UDP port 53) was identified by the community as the only functioning circumvention method, with participants successfully sharing public dnstt server configurations to maintain connectivity.
From 2026-gusgustavo-iran-internet-shutdown — Iran: Internet shutdown from 7 UTC 28 February 2026 · Issue body / community comments · 2026 · net4people/bbs
Implications
- Maintain a hardened dnstt (or equivalent DNS-tunnel) channel as a last-resort fallback specifically for BGP-level shutdown events; DNS port 53 survived when all routed IP traffic was blocked.
- Pre-publish multiple public dnstt server addresses (ideally across diverse resolver operators) so users can quickly switch if one resolver is cut; community coordination on resolver diversity proved critical during this event.
Tags
Extracted by claude-sonnet-4-6 — review before relying.