• @[email protected]
    link
    fedilink
    69 months ago

    While this is good for survielience circumventing… It is looking like the beginning of the end of DNS filtering and the popularization of encrypted telemetry.

    • Rikudou_Sage
      link
      fedilink
      English
      99 months ago

      You can always set up a MITM on your network. But yeah, DNS filtering is doomed in the not so far future.

      • @Cheradenine
        link
        English
        29 months ago

        Does this preclude on device DNS filters?

        • Rikudou_Sage
          link
          fedilink
          English
          19 months ago

          I think it doesn’t, though I’m not really a network guy.

          • @Cheradenine
            link
            English
            19 months ago

            I read through it, to me, it seems like on/device piHole etc. Would still be fine. But I am not a network guy either

            • Rikudou_Sage
              link
              fedilink
              English
              19 months ago

              PiHole might be a different story than your local device, I think that one might be affected.

      • @[email protected]
        link
        fedilink
        19 months ago

        That’s an option, but its a lot of work and all you get in return is broken apps/websites and not being able to tell if someone is mitm-ing you mitm.

        I’m sure some engineer out there is going to find a workaround, hopefully without breaking encryption.

    • @[email protected]
      link
      fedilink
      29 months ago

      You can do filtering and monitoring in the DNS server itself in corpo environment, like umbrella or AD DNS.