NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
While it's great that we can designate our own DNS servers on the routers, instead of just using the ones provided by our ISPs, it would be even better if you could integrate DNS-over-TLS and/or DNS-over-HTTPS into the firmware. This would allow us to query DNS servers (e.g., Cloudflare's 1.1.1.1 or Google's 8.8.8.8) without our ISPs being able to monitor our requests, giving us confidentiality from our ISPs and anyone along the path between our LAN and the DNS server; without our requests being able to be changed, ensuring integrity in the replies; and without having to run a separate service or piece of hardware on our networks for this purpose, increasing availability, at least from a certain perspective, as not everyone has the resources or ability to run their own local DNS server capable of using one of these two standards.
33 Comments
- dlrossFollowerThis would be a great feature to have on my R7000
- This is a feature that would cause me to replace my Orbi setup with something newer from Netgear. Please add it!
- AnamAspirantPlease add this to R9000 firmware
- deguzInitiate
Another vote for encrypted DNS capability.
Agreed, please add the functionality!
- novafirstFledglingAgreed, this is necessary function.
- StateMachineNoviceI would also like to request the DNS-over-HTTPS feature.
- kc6108Luminary
Please add DNSCrypt-Proxy 2 support, which supports the aforementioned DoH protocol, DNSSEC, etc.
I don't really agree with the description above regarding confidentiality/monitoring/etc and our ISP.
What's important is that we are protected from man in the middle attacks. We aren't really gaining any privacy from our ISP (after all, they are getting us from point A to point B, lol). What we are gaining is security.
- DougB628Apprentice
Agreed!
- Oolong__TAspirant
This feature is a must!