LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 03-25-2020, 05:33 AM   #16
JZL240I-U
Senior Member
 
Registered: Apr 2003
Location: Germany
Distribution: openSuSE Tumbleweed-KDE, Mint 21, MX-21, Manjaro
Posts: 4,629

Rep: Reputation: Disabled

Quote:
Originally Posted by redneonglow View Post
If you don't trust Cloudflare you can always use "Custom" with OpenNIC's non-logging DoH:

https://doh.hack13.me/dns-query
I didn't get that one. The link produces
Code:
no dns query parameter found
 
Old 03-25-2020, 03:01 PM   #17
redneonglow
Member
 
Registered: Feb 2020
Location: PA
Distribution: Gentoo, Slackware
Posts: 75

Rep: Reputation: 24
Post

Quote:
Originally Posted by JZL240I-U View Post
I didn't get that one. The link produces
Code:
no dns query parameter found
You have to make it the custom DoH server in Firefox settings.

Preferences->General->Network Settings

Check "Enable DNS over HTTPS"
Use provider: "Custom"
Custom: https://doh.hack13.me/dns-query

More info on the server from OpenNIC:

https://servers.opennicproject.org/e...s.opennic.glue
https://servers.opennicproject.org/e...s.opennic.glue
 
1 members found this post helpful.
Old 03-25-2020, 04:28 PM   #18
sevendogsbsd
Senior Member
 
Registered: Sep 2017
Distribution: FreeBSD
Posts: 2,252

Rep: Reputation: 1011Reputation: 1011Reputation: 1011Reputation: 1011Reputation: 1011Reputation: 1011Reputation: 1011Reputation: 1011
The URL depicted is a DNS query and needs a parameter so isn't going to return anything unless it gets one. It is intended to be used in a DoH query.
 
1 members found this post helpful.
Old 03-26-2020, 10:49 AM   #19
JZL240I-U
Senior Member
 
Registered: Apr 2003
Location: Germany
Distribution: openSuSE Tumbleweed-KDE, Mint 21, MX-21, Manjaro
Posts: 4,629

Rep: Reputation: Disabled
Okay, understood and thanks .

P.S.: Works like a charm .

Last edited by JZL240I-U; 03-26-2020 at 10:54 AM.
 
Old 04-23-2020, 08:45 AM   #20
jem777
LQ Newbie
 
Registered: Apr 2020
Distribution: Ubuntu, Debian, Devuan, Raspbian, Armbian, Parrot OS
Posts: 11

Rep: Reputation: Disabled
Not me. When Firefox introduced it, it defaulted to Cloudflare. No thanks. They're as evil as Facebook, if not worse.

These days, I use a Pi-Hole with Unbound as the resolver. It's resolves my DNS requests throught root and authoritative servers only, so no single party has a log of my DNS requests. It also uses DNSSEC for extra security.
 
3 members found this post helpful.
Old 04-23-2020, 11:57 AM   #21
JZL240I-U
Senior Member
 
Registered: Apr 2003
Location: Germany
Distribution: openSuSE Tumbleweed-KDE, Mint 21, MX-21, Manjaro
Posts: 4,629

Rep: Reputation: Disabled
Quote:
Originally Posted by jem777 View Post
Not me. When Firefox introduced it, it defaulted to Cloudflare. No thanks. They're as evil as Facebook, if not worse.

These days, I use a Pi-Hole with Unbound as the resolver. It's resolves my DNS requests throught root and authoritative servers only, so no single party has a log of my DNS requests. It also uses DNSSEC for extra security.
Yep, that is next on my todo list. In autumn or so I hope my setup will be similar.
 
Old 04-23-2020, 01:13 PM   #22
jem777
LQ Newbie
 
Registered: Apr 2020
Distribution: Ubuntu, Debian, Devuan, Raspbian, Armbian, Parrot OS
Posts: 11

Rep: Reputation: Disabled
Quote:
Yep, that is next on my todo list. In autumn or so I hope my setup will be similar.
I installed one on Raspberry Pi 3B (using Raspbian), and one on Orange Pi Zero (with Armbian). Both work well!
You might find this guide useful: https://docs.pi-hole.net/guides/unbound/

One potentential pitfall: If you enable DNSSEC, it's important that your system keeps proper time, otherwise DNS lookups will fail. This can of course be an issue with SBC's that have no hardware RTC.

Last edited by jem777; 04-23-2020 at 01:14 PM.
 
Old 04-24-2020, 03:26 AM   #23
JZL240I-U
Senior Member
 
Registered: Apr 2003
Location: Germany
Distribution: openSuSE Tumbleweed-KDE, Mint 21, MX-21, Manjaro
Posts: 4,629

Rep: Reputation: Disabled
Okay, thanks for the link and information.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Firejail DNS over HTTPS Proxy Server LXer Syndicated Linux News 0 12-19-2019 02:40 AM
LXer: DNS-over-HTTPS will eventually roll out in all major browsers, despite ISP opposition LXer Syndicated Linux News 0 11-09-2019 02:27 AM
Native Linux support for DoH (DNS over HTTPS) MirceaKitsune Linux - Networking 1 05-19-2019 12:10 PM
redirect https://www.domain.com to https://domain.com decenter Linux - Server 4 09-13-2011 10:05 AM
apache 2.0 https to https redirect struct Linux - Software 1 04-22-2011 05:43 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:28 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration