Is there an existing issue for this?
- I have searched the existing issues
Current behaviour
Bitcoin Core has a DNS seed policy.
There are concerns about @luke-jr’s security practices and control over the server: #33723 (comment) @luke-jr was hacked and posted on his website that his server has been compromised. As of this morning, the warning is still there:
We also learned of an investigation following the hack and are unsure whether Luke has shared access to the server with investigators. It would be helpful if @luke-jr can clarify this point.
There are also concerns that @luke-jr is purposefully filtering nodes based on user agent, attempting to stop users from running or connecting to recent versions of Bitcoin Core. #33723 (comment) #33723 (comment) #33723 (comment) #33723#pullrequestreview-3390131426
Expected behaviour
The current behavior appears to violate the DNS seed policy.
A DNS seed operating organization or person is expected to follow good host security practices, maintain control of applicable infrastructure, and not sell or transfer control of the DNS seed. Any hosting services contracted by the operator are equally expected to uphold these expectations.
The DNS seed results must consist exclusively of fairly selected and functioning Bitcoin nodes from the public network to the best of the operator’s understanding and capability.
Solutions
Typically when a DNS seed is not operating properly, an issue is opened and we wait for the operator to respond (for example, see #29911)
Ideally, the problems are addressed. If not, the DNS seed can be removed (see #33723).
Alternatively, we may determine that there is no violation. Discuss here.