4 ms·
> If you'd like to standardise a way to require DNS-over-HTTPS in supporting software, and convince operating system distributors to generally ship it, I'm fair
by zeveb 6y ago
> If you'd like to standardise a way to require DNS-over-HTTPS in supporting software, and convince operating system distributors to generally ship it, I'm fairly sure Firefox would be up for using that rather than its current mechanism, similar to how it uses system proxy settings. As it is there is no such standard.
There already is a standard way for me to tell all the programs which run on my system which DNS servers to use: /etc/resolv.conf. Any program which does not respect the values I set there is disobeying me.
- vertex-four 6y agoThere is no way to say in /etc/resolv.conf that you want to use a DNS-over-HTTPS server.
- zeveb 6y ago> There is no way to say in /etc/resolv.conf that you want to use a DNS-over-HTTPS server. Sure there is: nameserver 127.0.0.1 where I choose to run a nameserver which uses DNS-over-HTTPS on 127.0.0.1:53.
- vertex-four 6y agoAnd so we get incredibly far away from the very laudable goal of protecting Internet users - the majority of who primarily use a web browser - by default from malicious DNS servers.
- pseudalopex 6y agoChrome automatically upgrades known DNS providers to DoH.