that's a topic change. we were discussing single points of failure. centralized dns offers many more points of failure.
-
-
fwiw, I have given up debating with Tavis for this reason - it is not an actual discussion that could lead to results.
1 reply 1 retweet 2 likes -
i try not to give up on anybody unless they seem purposeful (intellectually dishonest) rather than confused (self deception and ignorance). my jury is still out on tavis, though i admit i'm close to the point of ignoring him.
3 replies 0 retweets 6 likes -
Heh, the benefits of DoH are so obvious, the arguments against it so weak, and the motivations of the opponents so transparent that the writing is on the wall. DoH is a certainty, does that tip the scale?
3 replies 0 retweets 9 likes -
Replying to @ljean @paulvixie and
How can I possibly force anything down anyone's throats? I just believe in it, and think it's so obviously beneficial for society that it will certainly be adopted. In 10 years, they'll look like th people arguing against HTTPS adoption.
1 reply 0 retweets 0 likes -
inb4 someone charicturizes this argument as Google Employee vs DNS protocol contribs Malware traffic over DoH with TLS1.3 eSNI doesn't outweigh "benefits for society"? Losing the ability to filter out traffic on the xport layer is better for society? Am I missing something?
1 reply 0 retweets 1 like -
You need to explain the problem, because if it's your endpoint you can filter anything you want with or without DoH. If it's not your endpoint, then you should ask the owner for permission, at which point you can still filter anything you want.
1 reply 0 retweets 1 like -
Replying to @ljean @paulvixie and
Disabling DoH for an entire fleet via group policy is trivial, and you can filter away to your heart's content. Nobody is proposing deploying DoH in such a way that the owner can't disable it, but I'm proposing that blindly trusting whatever is in the DHCP options is bad default.
1 reply 0 retweets 0 likes
I guess you only ever visit privacy respecting coffee shops with your laptop, only stay at hotels with excellent privacy policies, and have a wonderful ISP. That's great, and you can disable DoH, but that is rare, most people are like me and just go to regular cafes and airports.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.