Hi,

Is there any project or team involved with improving encrypted DNS support in Fedora? Any movement in Red Hat corporate?

- Glibc team?
    The /etc/resolv.conf file needs some love. AFAIK it still does not verify 
DNSSEC.
- Bind team?
    Using 'stunnel' is not a real option.
- DHCP(d & c) team?
    Some sort of standard for applying DoT/DoH options to resolv.conf
- NetworkManager team?
    Same as above.

This last effort I know of was back in 2012[1] but it was limited to DNSSEC only. According to Arch's table[2] only two DNS applications have support for encrypted DNS.

IMHO, this should be our number one priority over modules, new spins, or whatever paint color the bike shed needs to be today. I would like to see DNS over TLS (DoT) with DTLS at the very least.

Regards,
Michael

[1] https://fedoraproject.org/wiki/Features/DNSSEC_on_workstations
[2] https://wiki.archlinux.org/index.php/Domain_name_resolution#DNS_servers
_______________________________________________
devel mailing list -- devel@lists.fedoraproject.org
To unsubscribe send an email to devel-le...@lists.fedoraproject.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org

Reply via email to