Fedi, what DNS servers do you use?
(Please also provide info on whether the DNS server you use has DNSSEC, if you know this info)
1
@star I use blog.uncensoreddns.org and quad9 when on the go. In my own network i just use a local knot-resolver.
All 3 options do DNSSEC validation.
@star quad9 DoT. Port forwarding in home router LAN so all regular DNS traffic is trapped and upgraded
@star unbound recursive resolved cause it's what came with OPNsense but looking at bind for authoritative also
@star i host my authoritative DNS server with Knot, which supports DNSSEC but it is not configured on my network
aura
@aura@gts.foxsnuggl.es
4w
@star uh, as a recursive resolver or authoritative?
aura
@aura@gts.foxsnuggl.es
4w
@star coredns, but only because it's easy to write plugins for (for me)
(i maintained a homebrew DNS using the same library once)
@star desec.io, with DNSSEC ofc :)
1
@star I use quad9, they do DNSSEC :)
as a fallback I just default back to Cloudflare, but most queries I make use Quad9
@star I use adguardhome with unbound as recursive resolver behind it (three deployments, for home and elsewhere)