• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / infosec
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
home / tweaks / Firefox enable DNS-over-HTTPS (DoH)

Firefox enable DNS-over-HTTPS (DoH)

30/11/2018 11:24 by giorgos

Firefox with DNS-over-HTTPS: In June, the Mozilla Foundation announced that it is investigating the addition of DNS-over-HTTPS (or DoH) functionality to Firefox at a limited level (for Nightly users).

firefox - Firefox enable DNS-over-HTTPS (DoH)

This feature uses the Cloudflare DNS service to encrypt both requests and responses to any DNS queries to increase the privacy of application users.

The Mozilla Foundation has so far been very happy with DoH's performance and said that even the slowest links have made tremendous performance improvements. So Mozilla extends the mood to allow more users to test the DNS-over-HTTPS feature.

"Our initial DoH tests looked at the time it takes to get a response from Cloudflare's DoH resolve," says Mozilla.

"The results were very positive, and the slower users show a huge improvement in performance. A recent test in the Beta channel confirmed that DoH is fast and does not cause problems for our users. "

So if you want to try the new feature, we'll see below how to enable it in your Firefox.

How to enable DNS-over-HTTPS (DoH) in Firefox

DoH is currently being tested, but if you want to use it right away, you can do it by setting it to about: config.

To enable DoH, follow these steps:

Type about: config in the Firefox address bar and press enter. Click the button indicating that you accept the risks.
In the search box, type network.trr to display all settings for Firefox's Trusted Recursive Resolver.
Double-click network.trr.mode, and type 2 in the box. Press OK as shown below. This will trigger DoH in Firefox.

doh - Firefox enable DNS-over-HTTPS (DoH)

Then you need to make sure that network.trr.uri is set to https://mozilla.cloudflare-dns.com/dns-query as it is the Cloudflare DoH DNS resolver used by Firefox for testing. If this URL is not set, double-click the setting and enter the URL.
Now you can close the page about: config.

To check if you are using DoH for DNS queries, visit the page Cloudflare Browsing Security Control and click the "Check my browser" button.

cf - Firefox enable DNS-over-HTTPS (DoH)

The site will perform various tests to determine if you are using Secure DNS, DNSSEC, TLS 1.3, or encrypted SNI.

If the DoH is properly enabled, it should indicate that Secure DNS and TLS 1.3 are enabled as shown below.

scf - Firefox enable DNS-over-HTTPS (DoH)

So your Firefox will use DoH to resolve the browser's DNS queries.

___________________

  • Firefox: block ad trackers by default
  • 5 best free translator programs for foreign languages
  • Mozilla: doubles Don Project donations
  • Firefox Monitor available for everyone
  • Dell hacked: attention leakage data
Firefox enable DNS-over-HTTPS (DoH) was last modified: 30 November, 2018, 11: 25 am by giorgos

Subscribe to our newsletter

no spam

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: tweakstag: browser, I'm sure, Mozilla, network, URL

You May Also Like

Mozilla has added a cookie jar to Firefox
Browser for site testing
The Flash Player Ruffle emulator is also a standalone program

About Us giorgos

George still wonders what he's doing here ...

Previous Post: « CCleaner 5.50 new version from Piriform
Next Post: WordCamp Thessaloniki 2018 Speakers »

Reader Interactions

Comments
  1. Nikolas

    09/09/2019 19:56

    Thanks for the information, and congratulations
    but..
    That way you don't even put one on watch and record you, and sell you?
    whether it is cloudflare or google or a more "private" dns provider.
    Anyway your ISP will download that page you requested eg. so ..
    can still monitor and record ..
    and any third party

    Απάντηση
  2. Terminator

    25/03/2019 13:02

    Taking care of the guys,
    Doh = Firefox Bypasses Hosts file

    Απάντηση
  3. Dimitris

    30/11/2018 19:39

    Good evening my friends.
    Initial congratulations to both the subject and the presentation.
    On the occasion of this article I would like your "lights". After following the steps of the map you give, in the check I did in the link that leads us to Cloudflare shows me that my browser does not use the TLS 1.3 protocol or Encrypted SNI encryption

    The Firefox I have is version 63.0.3 (64bit) The windows of my computer are the "7 PRO" 64 bit. with all the latest updates… and the Cloudflare DNS network settings.

    What error or omission can I do?

    Απάντηση
    • giorgos

      30/11/2018 22:03

      in about: config look for tls.version.max and change the value from 3 to 4, do
      restart in Firefox.
      For the encrypted sni, read:

      https://blog.cloudflare.com/encrypt-that-sni-firefox-edition/

      Απάντηση
      • Dimitris

        30/11/2018 22:19

        Thanks for immediate response.
        The specific setting you suggest me has already been 4. I changed it to 3 and then again to 4, but in my control it again returns the same results.

        The whole computer may need to be restarted…

        Anyway, thanks for the response.

        Απάντηση

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loadingCancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.