Hacker News new | ask | show | jobs
by armitron 3135 days ago
Why would you use Google/OpenDNS/whatever when you can use dnscrypt [1]?

[1] https://dnscrypt.org/

2 comments

Which still requires you to pick a resolver you trust to send your (then encrypted) traffic to, and if the parent wants DNSSEC it still requires them to find one that supports that (DNSCrypt is not a replacement for DNSSEC)

The list of resolvers they have there it's not exactly obvious why I should trust any of those more? (and OpenDNS is on that list) https://dnscrypt.org/dnscrypt-resolvers.html

Could be wrong but it is my understanding that the Omnia either does not support it or it needs additional configuration, which I wasn't interested in performing. Since I was using Pi-hole anyway I stuck with that. Fair question though, not sure about the down-votes you've received.

Here's the Turris documentation on how it handles DNS: https://www.turris.cz/doc/en/howto/dns