NetBSD-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Securing DNS traffic



On Sat, May 23, 2020 at 3:08 AM Sad Clouds <cryintothebluesky%gmail.com@localhost> wrote:
>...
> > > What I'm not sure about is this - unbound(8) has "root-hints" that
> > > points to root DNS servers and it will handle recursive queries,
> > > but it can also specify "forward-zone" where it can forward to
> > > Cloudflare or Google recursive DNS servers. Both of these solution
> > > would resolve DNS names. So which one of them takes precedence and
> > > under what conditions? Why have both active at the same time? Is
> > > one option better/more secure than the other?
> >
> > Another option for DNS over HTTPS is Mozilla's servers:
> > https://support.mozilla.org/en-US/kb/firefox-dns-over-https.
>
> OK thanks for the link. Sounds like this is specific to Firefox, i.e.
> they bundle their own DoH resolver. Still useful to know.

You might also be interested in John Levine's
https://jl.ly/Internet/dohsofar.html.

Jeff


Home | Main Index | Thread Index | Old Index