View Single Post
  #3  
Old February 26th 20, 01:08 PM posted to alt.comp.os.windows-10,alt.comp.freeware,microsoft.public.windowsxp.general
Mayayana
external usenet poster
 
Posts: 6,438
Default Firefox to enable DNS-over-HTTPS by default to US users

"JJ" wrote

| With DNS over HTTPS, DNS queries are passed through a secure HTTP
protocol -
| where all data are encrypted. ISPs won't be able to know what host names
is
| being queried.

Then the question is, do we trust Mozilla? Will Google
want that data in exchange for their funding? And do we
trust Cloudflare, the DNS server they're using? I recently
set up Unbound, which is a DNS resolver. It's a pain to set up.
(OSS, no docs, the typical problems.) But it takes care of
DNS over HTTPS. No need to trust Firefox. DNS is a
system function that Firefox is offering to take over.

Unbound can also be set up to go to the top:
Instead of always going to one DNS server it goes to the
servers that hold the lists of servers. So it goes to server A
and asks for the address of whatever server handles acme.com,
then it goes to that server to get the Acme IP address.
(I confess I'm not an expert on this. I don't know the term
for the top-level servers.)

DNS over HTTPS is political protection in restricted countries
like Iran or Russia or China. But in the US it's still relevant.
Many ISPs will set their own servers as DNS. If they don't sell
the data now, they may in the future. Net neutrality, so far,
is not being supported. There's little support for limiting company
spying to the expectations of common decency. And most
in Congress don't even understand these issues. Of the ones
who do, the majority favor allowing the rich to exploit the
system. So it's up to us to enforce privacy to the extent that
we can.

(I recently sent a letter to my senators about privacy
issues. One is Ed Markey, who's among the most active and
literate in terms of online issues. The other is Elizabeth Warren.
I sent her a typed letter via postal mail, attempting to
outline the growing risks of corporate surveillance, using
simple examples like grocery store loyalty cards. I got back a
generic response that began, "Thank you for your interest in gun
control!" Meanwhile, Markey is being threatened by a young
Kennedy who thinks he deserves a crown for simply being a
Kennedy, and Elizabeth Warren wants to be President. What's
wrong with this picture? This is not fat cat plutocrats threatening
the Web. It's Democrats, lying to us and battling each other!)


Ads