Hacker News new | ask | show | jobs
by rsync 898 days ago
Your local resolver would be configured to use DoT to Connect to whichever upstream server you choose.

This is a two line configuration in unbound and does not require creating and maintaining your own certificates.

9.9.9.9 is free or you can use nextdns as your upstream and get the benefits of a pi-hole in the cloud.

Everyone should do this.

1 comments

Or https://mullvad.net/en/help/dns-over-https-and-dns-over-tls

Has the same benefits and works Triple-A-superplusgood.