Hacker News new | ask | show | jobs
by Darth_Hobo 2433 days ago
At first I was excited about DOH, until I realized that you are simply switching data collection from ISP to whomever you choose as your trusted resolve in DOH (most likely Google or Cloudflare). So ideally we need another machine that does DOH requests and then sends you the results, but at this point you might as well setup a full VPN.

DOH might be a good alternative in places like China, because Cloudflare knowing about your browsing history is a lot less dangerous than Chinese goverment knowing about it. Unless DOH providers will sell that data to China. Which they probably will.

1 comments

You can still use DoH with your ISP - it's about finally encrypting DNS requests in transit

The reason why ISPs are afraid is because they know that given the choice most people wouldn't opt for ISP hosted DNS since they have a history of being abusive

Most people won't care. The coming battles are about defaults.

Mozilla's motives may be pure, but with a key press they're poised to funnel the DNS requests of hundreds of millions of users to a single entity. That's power anyway you look at it.