Networking
Intermediate
What is DNS over HTTPS (DoH)?
A protocol that encrypts DNS queries by sending them over HTTPS, preventing eavesdropping and manipulation of DNS traffic.
Traditional DNS sends queries in plaintext, allowing ISPs, network operators, and attackers to see and potentially modify what domains users resolve. DNS over HTTPS encrypts these queries within standard HTTPS traffic on port 443, making them indistinguishable from regular web traffic. Major browsers (Firefox, Chrome) and operating systems support DoH. Public resolvers like Cloudflare (1.1.1.1) and Google (8.8.8.8) offer DoH endpoints. While DoH improves privacy, critics note it centralizes DNS resolution with a few large providers and can complicate enterprise network security monitoring.