BlendIT BSD Cafe - FreeBSD
Welcome to the "FreeBSD" community at the BSD Cafe BlendIT server!
Join us in our bustling virtual cafe, where we savor the finest virtual pastries and discuss all things FreeBSD. We're thrilled to have you here, and we hope this place becomes your go-to spot for all matters concerning FreeBSD. Whether you're a seasoned FreeBSD enthusiast, a curious newcomer, or simply intrigued by the world of BSD operating systems, this space is open for discussions, questions, and knowledge exchange. Feel free to introduce yourself, pose questions, share your experiences, or engage in conversations about FreeBSD's robustness, performance, and its thriving community. We foster a warm and respectful environment where everyone can learn and contribute. So, take a seat in our bustling cafe, treat yourself to a virtual pastry, and let's dive into the exciting world of FreeBSD together! Your insights and questions are highly valued, and we eagerly anticipate enlightening conversations within this community.
view the rest of the comments
@lw @BastilleBSD to be honest, I don't love that, too. And I'm not a fan of DNS over https - but they're open to suggestions, so we could maybe suggest to change this
I see others comment that they dislike DoH too, but nobody offers viable alternatives. How else do you recommend encrypting DNS queries other than DoT? (DoH and DoT being similar implementations. I have reasons for selecting DoH over DoT, but open to hearing alternate solutions if you have any).
Stubby for DoT as an option to choose during the Install..
@BastilleBSD in general, I prefer to treat dns as dns, not as a https request. But it's my personal preference and I see use cases for that.
I'd personally install unbound locally and ask the root servers, but this won't be encrypted
@stefano
personally, i think DoT/DoH is a great idea, but i run my own DNS servers that support DoT and DoH.
but i think you're referring to the trend of software that ignores the administrator's preferences and forces all DNS traffic to an *external* DoH server (like Quad9), and yes, this is not great.
@BastilleBSD
I don't think it is for power users so I am fine with this choice.