[kwlug-disc] New Public DNS Servers

Chris Irwin chris at chrisirwin.ca
Wed Apr 4 14:35:40 EDT 2018


On Sun, Apr 1, 2018 at 7:41 PM, Chamunks <chamunks at gmail.com> wrote:

> Granted they are plaintext packets and simple "deep packet inspection" (
> as horrible as that term actually is ) can determine what you're querying
> for until we get a standard for DNS encryption.
>

There is DNS over HTTPS. Support added for Firefox 60, and will be enabled
in Firefox Nightly for testing "soon".

https://www.ghacks.net/2018/04/02/configure-dns-over-https-in-firefox/

Mozilla negotiated a specific privacy policy with Cloudflare for its use:

https://developers.cloudflare.com/1.1.1.1/commitment-to-privacy/privacy-policy/firefox/

It's one of those things that seems like it ticks all of these boxes

* Great idea to re-use existing security infrastructure (HTTPS, etc)
* A weird chicken and egg problem to resolve the https-dns url
* An odd focus of effort, as opposed to the DNS STARTLS support discussed a
few years ago.

-- 
Chris Irwin
<chris at chrisirwin.ca>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://kwlug.org/pipermail/kwlug-disc_kwlug.org/attachments/20180404/355d2849/attachment.htm>


More information about the kwlug-disc mailing list