[Pkg-dns-devel] backporting knot-resolver 1.3.3 to stretch (DNS-over-TLS yay!)

Daniel Kahn Gillmor dkg at fifthhorseman.net
Thu Oct 19 21:29:53 UTC 2017


hey all--

knot-resolver 1.3.3 has some pretty nifty features, like easy/simple
DNS-over-TLS (see https://tools.ietf.org/html/rfc7858).  I'm going to
backport it to stretch-backports so that it can be more widely available
for folks who want to run such a service.

You can read more the rationale and mechanism for confidential DNS
resolution:

     https://dnsprivacy.org/

I plan to continue to maintain the knot-resolver backport for stretch.

If anyone has any concerns or suggestions, i'm all ears.

If you just want to *use* DNS-over-TLS, i'm serving that protocol using a
backported knot-resolver 1.3.3 already at:

    dns.cmrg.net

happy hacking,

        --dkg
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-dns-devel/attachments/20171019/b3c8a6de/attachment.sig>


More information about the pkg-dns-devel mailing list