<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: whatsapp not blocked on smartphone in OpenDNS</title>
    <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174167#M879</link>
    <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;Digging more into the phone I discovered that Android is adding a second DNS to smartphone IP config which is a Google DNS (8.8.4.4.) as my wi-fi router is distributing only one DNS. As my NATed network is 10.0.0.0 I modifyed the network mask to avoid routing to 8.8.4.4 (mask /6 instead of mask /8). But whatsapp is still managing to connect despite this trick. It does not seem to be an IPv6 access so the last hypothesis is that there is a hardcoded DNS address in whatsapp. Unfortunately I do not have a monitor capable wi-fi card to sniff the wifi network and the access port is old and ... basic, it does not allow logging.&lt;/P&gt;
&lt;P&gt;If someone knows the whatsapp DNS adresses I'm interssested in.&lt;/P&gt;&lt;/DIV&gt;</description>
    <pubDate>Sun, 31 Jan 2021 17:33:17 GMT</pubDate>
    <dc:creator>54789123</dc:creator>
    <dc:date>2021-01-31T17:33:17Z</dc:date>
    <item>
      <title>whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174165#M877</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I try to block whatsapp on my network using OpenDNS.&lt;/P&gt;
&lt;P&gt;Web filtering is up. whatsapp.com and whatsapp.net are "always blocked" (see image).&lt;/P&gt;
&lt;P&gt;Smartphone is in "plane mode", no data activated and only using the local wi-fi connection.&lt;/P&gt;
&lt;P&gt;However, whatsapp application is working on the smartphone !?!? The web address whatsapp.com is indeed bloocked if opened with a networks browser but the whatsapp application working like a charm.&lt;/P&gt;
&lt;P&gt;Does someone know if the smartphone application is using another domain (than whatsapp.com or .net) ? I do not see any other explanaition (alternatibely the IP noumber might be harcoded in the application but that sounds dumb).&lt;/P&gt;
&lt;P&gt;best&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 09:33:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174165#M877</guid>
      <dc:creator>54789123</dc:creator>
      <dc:date>2021-01-31T09:33:18Z</dc:date>
    </item>
    <item>
      <title>Re: whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174166#M878</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;“Does someone know if the smartphone application is using another domain (than whatsapp.com or .net) ?”&lt;/P&gt;
&lt;P&gt;Yes, you got the right domains. But theoretically the WhatsApp app could use another DNS service or IP addresses if it sees that domains may be blocked.&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 16:25:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174166#M878</guid>
      <dc:creator>rotblitz</dc:creator>
      <dc:date>2021-01-31T16:25:59Z</dc:date>
    </item>
    <item>
      <title>Re: whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174167#M879</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;Digging more into the phone I discovered that Android is adding a second DNS to smartphone IP config which is a Google DNS (8.8.4.4.) as my wi-fi router is distributing only one DNS. As my NATed network is 10.0.0.0 I modifyed the network mask to avoid routing to 8.8.4.4 (mask /6 instead of mask /8). But whatsapp is still managing to connect despite this trick. It does not seem to be an IPv6 access so the last hypothesis is that there is a hardcoded DNS address in whatsapp. Unfortunately I do not have a monitor capable wi-fi card to sniff the wifi network and the access port is old and ... basic, it does not allow logging.&lt;/P&gt;
&lt;P&gt;If someone knows the whatsapp DNS adresses I'm interssested in.&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 17:33:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174167#M879</guid>
      <dc:creator>54789123</dc:creator>
      <dc:date>2021-01-31T17:33:17Z</dc:date>
    </item>
    <item>
      <title>Re: whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174168#M880</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;You go through your domain stats and raise an nslookup for those.&lt;/P&gt;

&lt;P&gt;By the way, the network mask does not have impact on the DNS server addresses which can be any. &lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 17:39:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174168#M880</guid>
      <dc:creator>rotblitz</dc:creator>
      <dc:date>2021-01-31T17:39:57Z</dc:date>
    </item>
    <item>
      <title>Re: whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174169#M881</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;There are blocked requests to whatsapp domains in the stats (but phone application still workings). I guess that I have to set un a network tap and sniff all the traffic between the wi-fi AP and router.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;gt; By the way, the network mask does not have impact on the DNS server addresses which can be any.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Not as a DNS but you can trick the IPs. Assume that computer IP is 10.0.0.1 and mast is 252.0.0.0.&lt;/P&gt;
&lt;P&gt;In that case the IP number 8.8.4.4. will appear as being on the local network to the PC. Then it will attemp to communicate directly without routing. It is a dirty networking trick. Not to use unless you know what you are doing.&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 17:52:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174169#M881</guid>
      <dc:creator>54789123</dc:creator>
      <dc:date>2021-01-31T17:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: whatsapp not blocked on smartphone</title>
      <link>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174170#M882</link>
      <description>&lt;DIV class="opendns-migrated-content"&gt;&lt;P&gt;Ah good, I understand.&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Sun, 31 Jan 2021 20:47:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/opendns/whatsapp-not-blocked-on-smartphone/m-p/5174170#M882</guid>
      <dc:creator>rotblitz</dc:creator>
      <dc:date>2021-01-31T20:47:42Z</dc:date>
    </item>
  </channel>
</rss>

