• Hey, guest user. Hope you're enjoying NeoGAF! Have you considered registering for an account? Come join us and add your take to the daily discourse.

[ZDNET] UK ISP group names Mozilla "Internet Villain" for supporting "DNS-over-HTTPS"

PSlayer

Member
The trade association for internet service providers in the UK has nominated Mozilla for this year's award of "Internet Villain" because of the browser maker's plans to support the DNS-over-HTTPS (DoH) protocol in its Firefox browser.

What is DoH and why do ISPs hate it?
The DNS-over-HTTPS protocol (IETF RFC8484) works by sending DNS requests via an encrypted HTTPS connection, rather than using a classic plaintext UDP request, as classic DNS works.
The other difference is that besides being encrypted, the DoH protocol also works at the app level, rather than the OS level.

All DoH traffic is basically just HTTPS. DoH domain name queries are encrypted and then hidden in regular web traffic sent to the DoH DNS resolver, which then replies with a domain name's IP address, also in encrypted HTTPS.

This protocol design means that a user's DNS requests are invisible to third-party observers, such as ISPs; and all DoH DNS queries and responses hidden inside a cloud of encrypted connections, indistinguishable from the other HTTPS traffic.

UK fears DoH will cripple its national web blocking scheme
In the UK, ISPs are legally forced to block certain types of websites, such as those hosting copyright-infringing or trademarked content. Some ISPs also block other sites at their discretion, such as those that show extremist content, adult images, and child pornography. These latter blocks are voluntary and are not the same across the UK, but most ISPs usually tend to block child abuse content.
By planning to support DNS-over-HTTPS, Mozilla is throwing a monkey wrench in many ISPs' ability to sniff on customers' traffic and filter traffic for government-mandated "bad sites."


Source:
https://www.zdnet.com/article/uk-is...ternet-villain-for-supporting-dns-over-https/

For those who want to use DoH on Firefox:
https://www.ghacks.net/2018/04/02/configure-dns-over-https-in-firefox/
 
If the UK does not want a modern, security-focused internet, it is best to give them a choice of getting the fuck over it or crippling their internet infrastructure under their own idiotic laws. If they figure out that porn loicenses and focusing police on wrongthink rather than pedophile rings were not worth it, they will be all the better.
 
Top Bottom