Mozilla To Add Second DNS-over-HTTPS (DoH) Provider in Firefox

Peter Reutemann <[email protected]> Wed, 18 Dec 2019 10:54:04 +1300
Newsgroups gmane.org.user-groups.linux.waikato
Message-ID <CAHoQ12LGvtSDFy-sJhs83ewfHpB6Q4zajgK3_q6A0JFzmNL_Bg@mail.gmail.com>
'Mozilla has announced that NextDNS would be joining Cloudflare as the
second DNS-over-HTTPS (DoH) provider inside Firefox. From a report:

The browser maker says NextDNS passed the conditions imposed by its
Trusted Recursive Resolver (TRR) program, and can now be added as a
second option for DoH inside Firefox. These conditions include (1)
limiting the data NextDNS collects from the DoH server used by Firefox
users; (2) being transparent about the data they collect; and (3)
promising not to censor, filter, or block DNS traffic unless
specifically requested by law enforcement.

DNS-over-HTTPS, or DoH, is a new feature that was added to Firefox
last year. When enabled, it encrypts DNS traffic coming in and out of
the browser. DNS traffic is not only encrypted but also moved from
port 53 (for DNS traffic) to port 443 (for HTTPS traffic), effectively
hiding DNS queries and replies inside the browser's normal stream of
HTTPS content. This encrypted DNS traffic reaches a so-called DoH
resolver. Here, the DoH traffic is decrypted and the DoH resolver
makes the DNS query on the user's behalf, receives the result,
encrypts it, and sends it back to the user's browser -- also disguised
inside encrypted HTTPS content.'

-- source: https://tech.slashdot.org/story/19/12/17/1922254

Cheers, Peter
-- 
Peter Reutemann
Dept. of Computer Science
University of Waikato, NZ
+64 (7) 858-5174
http://www.cms.waikato.ac.nz/~fracpete/
http://www.data-mining.co.nz/
_______________________________________________
wlug mailing list -- [email protected] | To unsubscribe send an email to [email protected]
Unsubscribe: https://list.waikato.ac.nz/postorius/lists/wlug.list.waikato.ac.nz