#doq — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #doq, aggregated by home.social.
-
It's the silent changes... A #refactor of literally every moving part of https://github.com/madnuttah/unbound-docker took place!
Also implemented @renovatebot.com #renovate, @step_security #hardenrunners, #zizmor, #codeql & #Linting all the things.
CC @nlnetlabs 💚
#dns #dnssec #doq #quic #selfhosting #homelab #foss #opensource
-
@bortzmeyer @woody @littlesnitch
It's great to see commercial products embracing #DoQ as a protocol for #DNS delivery! More of this, please! 🙏
-
Как проверить скорость DNS прямо в браузере: тест через DoH
Во про какую штуку узнал 🧐 Это намного информативнее, чем пинговать тыкать каждый адрес вручную в консоли
Браузерный DNS Speed Test позволяет проверить скорость DNS прямо во вкладке через DoH – без установки утилит и с учётом реального сетевого окружения
Проверка проводится на основании отклика самых посещаемых ресурсов, доступ к которым ограничен может быть.
DNS Speed Test
страница у меня не загружается без подорожника, с ним выдёт результаты иные, тк не для моей физической локации, а для ip прокси, поэтому перед тестом отключил, по этой причине некоторые тесты провалены (красные) -
Bon du coup question pour les fedigens utilisant Unbound et Pihole, vous fait quoi-comment pour du DoH ou DoQ (d’ailleurs c'est quoi le mieux ?)
Parce que du coup faut que je foute ça sur Unbound ou PiHole ?
Et je vois que sur Unbound faut compiler mais compiler sur les VM de la Freebox ... ça pique un peu.
Pour Pihole y a dnscrypt mais du coup ça remplace Unbound ??
Et hors des questions de passer par un service tiers bien sûr.
#Unbound #Pihole #DoH #DoQ #DNS -
@duxsco @fosdem We deprecated that support because of too many operational issues and not enough adoption.
https://ffmuc.net/services/dns/2026/01/03/dnscrypt-abschaltung/#en
We prefer to offer #DoT, #DoQ, #DoH which many people use.
We also suppport #RFC9462 so clients auto upgrade from Plaindns to encryption if possible.
https://ffmuc.net/services/dns/2026/01/09/rfc9462-rfc9463-support/#en
-
You want a secure encrypted no-logs DNS server while you are at #39c3?
Or need a #DNS server for experiments while there?
You are very welcome to test all the #DoQ, #DoH, #DoT etc stuff
IPv4: 185.150.99.255 / 5.1.66.255
IPv6: 2001:678:e68:f000:: / 2001:678:ed0:f000::DoH: https://doh.ffmuc.net/dns-query
DoT/DoQ: dot.ffmuc.net / doq.ffmuc.net Port 853 -
You should see another Performance improvement now for #DoH, #DoT and #DoQ 🚀
DoH: https://doh.ffmuc.net/dns-query
DoQ: doq.ffmuc.net:853
DoT: dot.ffmuc.net:853Support us at: https://spende.ffmuc.net
Live Stats:
https://stats.ffmuc.net/d/tlvoghcZk/doh-dot?orgId=1&from=now-2d&to=now&timezone=browser&refresh=1m -
We are adding support for #DoQ!
IPv4: 185.150.99.255 / 5.1.66.255
IPv6: 2001:678:e68:f000:: / 2001:678:ed0:f000::
DoH: https://doh.ffmuc.net/dns-query
DoT/DoQ: http://dot.ffmuc.net Port 853Live stats:
https://stats.ffmuc.net/d/tlvoghcZk/doh-dot?orgId=1&from=now-2d&to=now&timezone=browser&refresh=1m -
We updated DNS-over-QUIC in Unbound #DNS resolver to use the latest release of ngtcp2, version 1.13.0. It now also supports OpenSSL 3.5.0.
In addition, this change now calls the new performance increase init for the ngtcp2 crypto library. #DoQ #OpenSource
-
🚧 Buscamos Beta Testers para nuestro DNS cifrado y libre 🚧
¿Quieres ayudarnos a calentar la caché y poner a prueba un servidor DNS alternativo, privado y sin rastreo?
👉 Estamos en fase de pruebas públicas con rocksdns.ovh
🧪 Resolución directa desde raíz, sin pasar por Google, Cloudflare ni terceros
🛡️ Sin logs, sin cookies, sin tracking
📡 Compatible con DoH / DoT / DoQ
📜 Instrucciones aquí: https://rocksdns.ovh/siteCualquier uso real ayuda a mejorar el rendimiento y comprobar estabilidad.
¡Gracias por ayudarnos a construir una alternativa ética y descentralizada! 💪#DNSLibre #DoH #DoQ #PrivacidadDigital #Descentraliza #rocksdns #Fediverso
-
@cR0w ... I may not have family members locally to worry about, but I like to keep myself from tripping over my own feet. :)
Now you've got me thinking about #DoQ (DNS over QUIC). It's something I just read about in a very general outline, so there's more to read up on. I've yet to finish doing certs for #DoT, so now would be the time to explore alternate encryption options.
-
We have a canary build of our @nlnetlabs #unbound #docker image with #quic support available for testing, yay! 💚
➡️ madnuttah/unbound:canary-quic ⬅️
https://github.com/madnuttah/unbound-docker/
https://hub.docker.com/r/madnuttah/unbound
#selfhosting #homelab #opensource #foss #dnssec #doq #dnsoverquic #quictls #distroless
-
@jinna until you use any form of encrypted DNS, your ISP can read everything. No matter what server you choose. Use #DoT or #DoH or #DoQ. But in the free world you should order a new ISP contract, if possible. They may still know something, but they should not be able to tamper with responses at least. You want also #ECH in you browser enabled.
-
With #DNSoverQUIC released in Unbound 1.22.0, we turn our attention to finalizing the review to deploy Fast Reload. As the name suggests it allows reloading the #DNS resolver configuration with no noticeable interruption of the service. #OpenSource #DoQ #QUIC https://github.com/NLnetLabs/unbound/pull/1042
-
It's been a long road, but we're happy that #DNS over #QUIC is now merged into the main branch of Unbound resolver. We’re now preparing a release. #DoQ #OpenSource https://github.com/NLnetLabs/unbound/pull/871
-
Ah bah finalement pas de #DoH3 et #DoQ pour @DNS_Shaftinc 😢
Je pensais que quiche, la bibliothèque de Cloudflare pour faire du Quic, était dans le tarball de #dnsdist, mais après vérif, il y a plutôt un script qui télécharge quiche et compile le truc.
Meh :/
-
Since last November, we've been quite busy with security releases for Unbound. Now, with this latest bug fix release out the door, our aim is to get some features released we've been preparing, such as DNS-over-QUIC and upstream #DNS cookies. 🍪🍪 #DoQ https://github.com/NLnetLabs/unbound/milestone/3
-
I decided to add #DoQ support to my check_soa script (because it's easy to add as #dnspython supports it pretty much out of the box) so I'm looking for #DNS zones using authoritative nameservers accessible with DoQ. Does anyone knows any?
I know a few recursive servers using #QUIC but I haven't found authoritative servers yet :/
(I'd love to have some myself (my NS can be already be queried using #DoT) but I use #NSD (which has no QUIC support yet) and Debian so...)
-
📬 Mullvad VPN – der schwedische Maulwurf im Interview
#Datenschutz #Interviews #BastionHost #DoQ #JanJonsson #Mullvad #Tailscale #vpnanbieter https://sc.tarnkappe.info/9e3256 -
📬 Mullvad VPN – an interview with the Swedish mole
#Datenschutz #Interviews #BastionHost #DoQ #JanJonsson #Mullvad #Tailscale #vpnanbieter https://sc.tarnkappe.info/739d44 -
The three most popular DNS protocols with transit encryption are DNS-over-HTTPS (DoH), DNS-over-TLS (DoT), and DNS-over-QUIC (DoQ). This should help you choose what to use:
- Do you actually need to override OS DNS support? If not, or if you’re unsure, go to 6.
- Are you ready to implement DNS protocols correctly, or add a dependency that does so? If you’re not, go to 5.
- Does the network filter DNS traffic? If it does, go to 5.
- Do you already have QUIC support? If not, use DoT. If you do, use DoQ.
- Do you have an HTTPS stack? If you do, use DoH.
- Give up and delegate to the OS.
Let your HTTPS stack handle HTTP/1.1 vs. HTTP/2 vs. HTTP/3 support; don’t treat DNS-over-HTTP/3 as a separate protocol. I don’t know enough about DNSCrypt to make an informed recommendation about it, but DoQ and DoH meet my needs well enough.
Originally posted on https://seirdy.one/notes/2023/11/18/choosing-an-encrypted-dns-proto/ (POSSE).
-
Quali DNS privati utilizzare?
Una lunga lista di alternative: quali DNS privati utilizzare? Vi proponiamo anche molti DNS per bloccare pubblicità e traccianti!
https://www.lealternative.net/2022/07/13/quali-dns-privati-utilizzare/