[ Panta_ @ 26.02.2020. 13:52 ] @
Citat:
The current insecure DNS system leaves billions of people around the world vulnerable because the data about where they go on the internet is unencrypted. We’ve set out to change that. In 2017, Mozilla began working on the DNS-over-HTTPS (DoH) protocol to close this privacy gap within the web’s infrastructure. Today, Firefox is enabling encrypted DNS over HTTPS by default in the US giving our users more privacy protection wherever and whenever they’re online.

DoH will encrypt DNS traffic from clients (browsers) to resolvers through HTTPS so that users’ web browsing can’t be intercepted or tampered with by someone spying on the network. The resolvers we’ve chosen to work with so far – Cloudflare and NextDNS – have agreed to be part of our Trusted Recursive Resolver program. The program places strong policy requirements on the resolvers and how they handle data. This includes placing strict limits on data retention so providers- including internet service providers – can no longer tap into an unprotected stream of a user’s browsing history to build a profile that can be sold, or otherwise used in ways that people have not meaningfully consented to. We hope to bring more partners into the TRR program.


https://blog.mozilla.org/blog/...https-by-default-for-us-users/

Kao što piše u citiranom, za USA korisnike je ova opcija od juče podrazumevano omogućena, dok ostali mogu da je omoguće u Preferences -> Network Settings -> Settings -> Enable DNS over HTTPS

Da testirate da li je pomenuta opcija omogućena: https://www.cloudflare.com/ssl/encrypted-sni/
[ Branimir Maksimovic @ 26.02.2020. 14:57 ] @
Ja sam to resio sa dnscrypt na ruteru, tako da svi uredjaji na mrezi imaju enkriptovane dns upite.
[ Panta_ @ 27.02.2020. 08:19 ] @
Evo kako da omogućite DoH na ostalim browserima: https://www.zdnet.com/article/...owsers-despite-isp-opposition/

Za Chrome na Linux OS ovo opcija nije dostupna.

Citat:
chrome://flags/#dns-over-https

Secure DNS lookups
Enables DNS over HTTPS. When this feature is enabled, your browser may try to use a secure HTTPS connection to look up the addresses of websites and other web resources. Mac, Windows, Chrome OS, Android
#dns-over-https

Not available on your platform.