README Suggestion: mention cloudflared as DNS-Over-HTTPS
jdkang opened this issue · 1 comments
I would just like to make a suggestion on perhaps the README that an additional alternative setup using resolvconf
with PIA's DNS would be using clouldflared
's DoH option as outlined here.
It's pretty easy to setup and ostensibly mitigates ISPs from snooping.
There is actually no need for doing DNS requests before establishing the VPN connection, and after the VPN connection gets established, the DNS requests are encrypted via VPN. The PIA DNS has no logs (the same as the DNS service), and all requests are anonymized before they reach the DNS service.
I personally set the PIA DNS up so I know it is secure. As I never saw the server configs from the 3rd party your recommended, I can not officially suggest that people use it for privacy-focused projects.
That being said, if you route 0.0.0.0/0
through the VPN, you can use any DNS server you want after the DNS connection is established, as your DNS requests will originate from the VPN server so they will be anonymous.