
On Mon, 9 Sep 2019 08:57:51 +1200, Peter Reutemann wrote:
'This month Firefox will make DNS over encrypted HTTPS the default for the U.S., with a gradual roll-out starting in late September, reports Engadget'
Google Chrome will be following suit <https://www.theregister.co.uk/2019/09/10/chrome_78_dnsoverhttps/>, but only for a small fraction of users among those who are already using one of a set of supported DNS services. This is in contrast to the Mozilla approach, which works exclusively through the Cloudflare DNS. Long-time Unix luminary Paul Vixie is not keen on DNS-over-HTTPS (which is what both these browsers are implementing). He prefers DNS-over-TLS, because it can be selectively blocked at firewalls, giving more control to local admins.