378 karma · joined January 16, 2012
Apart from the weirdly misleading subject line, the advice in the mail is really misguided IMO. If your ISP fails to update their trust anchor, disabling DNSSEC entirely for your domain will indeed let you access it again, but it won't do anything for other sites that you can't access, and it rather defeats the purpose of enabling DNSSEC in the first place if your first troubleshooting step is to turn it off again.
I find it interesting that Google doesn't care enough to add the most recent several metro lines in (for example) Beijing or Shanghai, considering that many people try to use Google Maps in China when visiting and usually seem to end up switching to Apple Maps as a result of the complete trash the Google Maps experience is there. I wonder if they switch back when they go home.
In 11 years of self-hosting my mail I've had one deliverability problem, which was when outlook.com users stopped receiving our mail. I wrote to outlook.com, and it was resolved within 24 hours. This is possibly because my server is located in a reputable, but relatively small, datacentre, and not on the likes of AWS.
I use the zen.spamhaus.org DNS blacklist to reject connections from spammers outright, and do SPF checks. These two methods alone (no Bayesian or similar filtering) mean I get about one spam message per two days on average, which I just delete.
I estimate that I spend about half an hour a month on keeping the server up-to-date etc.
I consider the downsides extremely small in comparison to the benefits of controlling your own email setup. I encourage anyone with even basic server administration skills to try it. Email is a fantastically decentralised system and we should take advantage of that.
It doesn't happen often, but it's easy to tell when it does because none of the first page results have "google" next to them, while of course normally most of them would.
Since searx doesn't store cookies returned by the search engines, and I'm using it through Tor, I think this is a significant improvement over sending all my search queries to Google directly from my laptop.
It should be self-evident that neither of these is "secure" for some level of "security", but they might be perfectly fine for the level of threat that you face, which is not likely to be particularly high. But I don't know you, so maybe you face a higher-than-average level of threat, in which case, yes, a sufficiently long password/passphrase that you memorise is probably the best option for your mobile device.
(Edit to add: I agree with everything in your second paragraph.)