Our great sponsors
-
libcurl
A command line tool and library for transferring data with URL syntax, supporting DICT, FILE, FTP, FTPS, GOPHER, GOPHERS, HTTP, HTTPS, IMAP, IMAPS, LDAP, LDAPS, MQTT, POP3, POP3S, RTMP, RTMPS, RTSP, SCP, SFTP, SMB, SMBS, SMTP, SMTPS, TELNET, TFTP, WS and WSS. libcurl offers a myriad of powerful features
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
As I mentioned before, encrypted DNS ensures others can't manipulate the response you get. But they still can just block the DNS servers (lists of known DoH servers are regularly parsed by blocking software) or port (DoT and DoQ by default use their own ports), redirect traffic to the blacklisted IP (in which case HSTS steps up to stop the page from loading) or block it. It's trivial to have your own DoH server if only known DoH servers are blocked (DoH traffic looks like normal HTTPS traffic without statistic analysis).
As I mentioned before, encrypted DNS ensures others can't manipulate the response you get. But they still can just block the DNS servers (lists of known DoH servers are regularly parsed by blocking software) or port (DoT and DoQ by default use their own ports), redirect traffic to the blacklisted IP (in which case HSTS steps up to stop the page from loading) or block it. It's trivial to have your own DoH server if only known DoH servers are blocked (DoH traffic looks like normal HTTPS traffic without statistic analysis).