Hacker News new | ask | show | jobs
by mukti 2465 days ago
I suppose its good that DoH is addressing the privacy issues with DNS, but I think I agree with the point this article is making overall. If its only one vector of privacy, making it a default this early on (less than a year old?) seems a bit presumptuous. If someone is looking for your DNS traffic, but you're using DoH; they'll likely find what they're looking for using another method.

In my opinion, this kind of goes against what I would expect a browser to do as well. I don't like the idea that it just bypasses the OS settings. I understand that there are guidelines for enterprise users, and people who want to disable it; but I feel that a prompt when they globally enable the setting isn't enough. Most average users will probably just click "Yes" on the dialog that asks if they want it enabled.

The idea of DoH seems like a good one, but I would prefer if they figured out a better way to implement it. Probably a huge majority of people are just using their ISP's DNS servers, but I don't know that pointing them to Cloudflare's DoH implementation is necessarily better.