home.social

#doq — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #doq, aggregated by home.social.

fetched live
  1. @bortzmeyer @woody @littlesnitch

    It's great to see commercial products embracing #DoQ as a protocol for #DNS delivery! More of this, please! 🙏

    #infosec

  2. Как проверить скорость DNS прямо в браузере: тест через DoH

    Во про какую штуку узнал 🧐 Это намного информативнее, чем пинговать тыкать каждый адрес вручную в консоли

    Браузерный DNS Speed Test позволяет проверить скорость DNS прямо во вкладке через DoH – без установки утилит и с учётом реального сетевого окружения

    Проверка проводится на основании отклика самых посещаемых ресурсов, доступ к которым ограничен может быть.

    comss

    DNS Speed Test
    страница у меня не загружается без подорожника, с ним выдёт результаты иные, тк не для моей физической локации, а для ip прокси, поэтому перед тестом отключил, по этой причине некоторые тесты провалены (красные)

    #DNS #DOH #DOT #DOQ #comss

  3. Bon du coup question pour les fedigens utilisant Unbound et Pihole, vous fait quoi-comment pour du DoH ou DoQ (d’ailleurs c'est quoi le mieux ?)
    Parce que du coup faut que je foute ça sur Unbound ou PiHole ?
    Et je vois que sur
    Unbound faut compiler mais compiler sur les VM de la Freebox ... ça pique un peu.

    Pour Pihole y a
    dnscrypt mais du coup ça remplace Unbound ??

    Et hors des questions de passer par un service tiers bien sûr.

    #Unbound #Pihole #DoH #DoQ #DNS

  4. @duxsco @fosdem We deprecated that support because of too many operational issues and not enough adoption.

    ffmuc.net/services/dns/2026/01

    We prefer to offer #DoT, #DoQ, #DoH which many people use.

    We also suppport #RFC9462 so clients auto upgrade from Plaindns to encryption if possible.

    ffmuc.net/services/dns/2026/01

  5. You want a secure encrypted no-logs DNS server while you are at #39c3?

    Or need a #DNS server for experiments while there?

    You are very welcome to test all the #DoQ, #DoH, #DoT etc stuff

    IPv4: 185.150.99.255 / 5.1.66.255
    IPv6: 2001:678:e68:f000:: / 2001:678:ed0:f000::

    DoH: doh.ffmuc.net/dns-query
    DoT/DoQ: dot.ffmuc.net / doq.ffmuc.net Port 853

    Stats:
    stats.ffmuc.net/d/tlvoghcZk/do

    #Freifunk #Privacy #EU

  6. Reaching out to anyone who configured their DNS transport protocol. If you intentionally configured your home router's or your devices DNS service, what did you pick, and why?

    Please retoot for reach.

    #DNS #Survey #AskMastodon #AskFedi #AskInfosec #DoT #DoH #DoQ #TLS #QUIC #TCP #UDP #HTTPS

  7. We are adding support for #DoQ!

    IPv4: 185.150.99.255 / 5.1.66.255
    IPv6: 2001:678:e68:f000:: / 2001:678:ed0:f000::
    DoH: doh.ffmuc.net/dns-query
    DoT/DoQ: dot.ffmuc.net Port 853

    Live stats:
    stats.ffmuc.net/d/tlvoghcZk/do

  8. We updated DNS-over-QUIC in Unbound #DNS resolver to use the latest release of ngtcp2, version 1.13.0. It now also supports OpenSSL 3.5.0.

    In addition, this change now calls the new performance increase init for the ngtcp2 crypto library. #DoQ #OpenSource

    github.com/NLnetLabs/unbound/i

  9. 🚧 Buscamos Beta Testers para nuestro DNS cifrado y libre 🚧

    ¿Quieres ayudarnos a calentar la caché y poner a prueba un servidor DNS alternativo, privado y sin rastreo?

    👉 Estamos en fase de pruebas públicas con rocksdns.ovh

    🧪 Resolución directa desde raíz, sin pasar por Google, Cloudflare ni terceros

    🛡️ Sin logs, sin cookies, sin tracking

    📡 Compatible con DoH / DoT / DoQ

    📜 Instrucciones aquí: https://rocksdns.ovh/site

    Cualquier uso real ayuda a mejorar el rendimiento y comprobar estabilidad.

    ¡Gracias por ayudarnos a construir una alternativa ética y descentralizada! 💪

    #DNSLibre #DoH #DoQ #PrivacidadDigital #Descentraliza #rocksdns #Fediverso

  10. @cR0w ... I may not have family members locally to worry about, but I like to keep myself from tripping over my own feet. :)

    Now you've got me thinking about #DoQ (DNS over QUIC). It's something I just read about in a very general outline, so there's more to read up on. I've yet to finish doing certs for #DoT, so now would be the time to explore alternate encryption options.

  11. @jinna until you use any form of encrypted DNS, your ISP can read everything. No matter what server you choose. Use or or . But in the free world you should order a new ISP contract, if possible. They may still know something, but they should not be able to tamper with responses at least. You want also in you browser enabled.

  12. With released in Unbound 1.22.0, we turn our attention to finalizing the review to deploy Fast Reload. As the name suggests it allows reloading the resolver configuration with no noticeable interruption of the service. github.com/NLnetLabs/unbound/p

  13. It's been a long road, but we're happy that over is now merged into the main branch of Unbound resolver. We’re now preparing a release. github.com/NLnetLabs/unbound/p

  14. Ah bah finalement pas de #DoH3 et #DoQ pour @DNS_Shaftinc 😢

    Je pensais que quiche, la bibliothèque de Cloudflare pour faire du Quic, était dans le tarball de #dnsdist, mais après vérif, il y a plutôt un script qui télécharge quiche et compile le truc.

    Meh :/

  15. Since last November, we've been quite busy with security releases for Unbound. Now, with this latest bug fix release out the door, our aim is to get some features released we've been preparing, such as DNS-over-QUIC and upstream cookies. 🍪🍪 github.com/NLnetLabs/unbound/m

  16. I decided to add #DoQ support to my check_soa script (because it's easy to add as #dnspython supports it pretty much out of the box) so I'm looking for #DNS zones using authoritative nameservers accessible with DoQ. Does anyone knows any?

    I know a few recursive servers using #QUIC but I haven't found authoritative servers yet :/

    (I'd love to have some myself (my NS can be already be queried using #DoT) but I use #NSD (which has no QUIC support yet) and Debian so...)

  17. The three most popular DNS protocols with transit encryption are DNS-over-HTTPS (DoH), DNS-over-TLS (DoT), and DNS-over-QUIC (DoQ). This should help you choose what to use:

    1. Do you actually need to override OS DNS support? If not, or if you’re unsure, go to 6.
    2. Are you ready to implement DNS protocols correctly, or add a dependency that does so? If you’re not, go to 5.
    3. Does the network filter DNS traffic? If it does, go to 5.
    4. Do you already have QUIC support? If not, use DoT. If you do, use DoQ.
    5. Do you have an HTTPS stack? If you do, use DoH.
    6. Give up and delegate to the OS.

    Let your HTTPS stack handle HTTP/1.1 vs. HTTP/2 vs. HTTP/3 support; don’t treat DNS-over-HTTP/3 as a separate protocol. I don’t know enough about DNSCrypt to make an informed recommendation about it, but DoQ and DoH meet my needs well enough.

    Originally posted on https://seirdy.one/notes/2023/11/18/choosing-an-encrypted-dns-proto/ (POSSE).

    #DNS #DoQ #DoH

  18. Quali DNS privati utilizzare?

    Una lunga lista di alternative: quali DNS privati utilizzare? Vi proponiamo anche molti DNS per bloccare pubblicità e traccianti!

    https://www.lealternative.net/2022/07/13/quali-dns-privati-utilizzare/