Fedora and fallback DNS servers
Fedora and fallback DNS servers
Posted Mar 5, 2021 12:09 UTC (Fri) by kpfleming (subscriber, #23250)In reply to: Fedora and fallback DNS servers by smurf
Parent article: Fedora and fallback DNS servers
With the advent of DoH, this has gotten very hard to do well. Now you not only have to block UDP and TCP traffic to destination port 53, but you also have to block TCP traffic to port 443 on the well-known DoH servers, and hope that your users won't use a non-well-known server.
