Hacker News new | ask | show | jobs
by p00f 2014 days ago
You can't use a PiHole, for example
1 comments

Depends on your firewall, but yes you can (assuming your goal is to block those queries)
Which firewalls let you block DNS over HTTPS? (Without resorting to blocking random IP addresses from some list that constantly needs updating.)
pfSense - it only blocks known DNS over HTTPS servers, but generally all “smart” devices that use it use the publicly available servers. I log and periodically check TCP flow metadata, so I could identify new ones later.