Re: [opennic-discuss] DNS over HTTPS?
"Daniel Quintiliani" <[email protected]> Sat, 09 Nov 2019 11:10:58 -0500 (EST)
| Newsgroups | gmane.network.opennic.general |
|---|---|
| Message-ID | <[email protected]> |
This is a multi-part message in MIME format... ------------=_1573315860-14772-5 Content-Type: text/plain; charset="utf-8" Content-Disposition: inline Content-Transfer-Encoding: quoted-printable I would imagine an ICANN domain with a normal certificate would be used for= OpenNIC DoH. Also, the servers which don't log or anonymize logs should do this. Otherwi= se there's no point to avoiding Cloudflare. -- -Dan Q On Fri, 8 Nov 2019 07:43:11 -0500, Timothy Rogers <opennic@timothyfrancisro= gers.me> wrote: > Morning, >=20 > One of my instances VA1 already supports DoH and DoT, there are some issu= es with the DoT I am still trying to work out but the DoH I use on a daily = basis. But due to requiring a valid SSL certificate, you have to use nsva1.= hack13.me as the FQDN in Firefox or whatever device you are using it with. >=20 > Timothy Francis Rogers > [email protected] > On Nov 8, 2019, 7:39 AM -0500, Rouben <[email protected]>, wrote: > > Would DoT (TLS) and DoH (HTTPS) require that we have our own CA establi= shed first? How is trust of DoH and DoT resolvers established? > > > > > On Thu, Nov 7, 2019 at 19:12 Daniel Quintiliani <[email protected]> wro= te: > > > > (note: this is a repost of a message sent two weeks ago, according = to purrdeta, the mailing list was having problems at the time) > > > > > > > > Hi, > > > > > > > > Is there any possibility in the future for OpenNIC to offer a DNS o= ver HTTPS server as a replacement for CloudFlare in Firefox? > > > > > > > > Thank you, > > > > > > > > -- > > > > > > > > -Dan Q > > > > > > > > > > > > -------- > > > > You are a member of the OpenNIC Discuss list. > > > > You may unsubscribe by emailing [email protected]= oject.org > > -- > > Rouben > > > > > > -------- > > You are a member of the OpenNIC Discuss list. > > You may unsubscribe by emailing [email protected]= t.org >=20 >=20 > -------- > You are a member of the OpenNIC Discuss list.=20 > You may unsubscribe by emailing [email protected].= org ------------=_1573315860-14772-5 Content-Type: text/plain; charset="UTF-8" Content-Disposition: inline Content-Transfer-Encoding: 8bit -------- You are a member of the OpenNIC Discuss list. You may unsubscribe by emailing [email protected] ------------=_1573315860-14772-5--