NetBSD-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Securing DNS traffic



On Fri, 22 May 2020 20:05:40 -0400
Jeffrey Walton <noloader%gmail.com@localhost> wrote:

> On Fri, May 22, 2020 at 5:38 PM Sad Clouds
> <cryintothebluesky%gmail.com@localhost> wrote:
> >
> > ...
> > What I'm not sure about is this - unbound(8) has "root-hints" that
> > points to root DNS servers and it will handle recursive queries,
> > but it can also specify "forward-zone" where it can forward to
> > Cloudflare or Google recursive DNS servers. Both of these solution
> > would resolve DNS names. So which one of them takes precedence and
> > under what conditions? Why have both active at the same time? Is
> > one option better/more secure than the other?
> 
> Another option for DNS over HTTPS is Mozilla's servers:
> https://support.mozilla.org/en-US/kb/firefox-dns-over-https.
> 
> Jeff

OK thanks for the link. Sounds like this is specific to Firefox, i.e.
they bundle their own DoH resolver. Still useful to know.


Home | Main Index | Thread Index | Old Index