But theoretically if I had TikTok, Facebook or insta, I would still be able to use it on the wifi.

That is all. Just thought it was interesting

    • SevenSkalls [he/him]@hexbear.net
      link
      fedilink
      English
      arrow-up
      7
      ·
      edit-2
      4 months ago

      What does that do? I thought DNS was just the friendly name for sites other than their IP address.

      EDIT: so the Ai overview for Google just told me DNS over HTTPS encrypts that bar so no one can see what sites you’re visiting? That sounds very useful. Can IT departments turn that off?

        • MizuTama [he/him, any]@hexbear.net
          link
          fedilink
          English
          arrow-up
          7
          ·
          edit-2
          4 months ago

          They could block DNS over HTTPS by blocking common servers that provide it, making it difficult to implement but putting them in an infinite whack-a-mole game, or with deep packet inspection, I think, but I’m fuzzy on the details for the latter, so I can’t say much.

        • darkcalling [comrade/them, she/her]@hexbear.net
          link
          fedilink
          English
          arrow-up
          3
          ·
          4 months ago

          By default Firefox and other browsers that implement DNS over HTTPS check a canary domain and if they can’t reach it they assume they’re in an enterprise and act respectfully and fall back to the suggested DNS server pushed by their gateway. That canary domain is obviously part of all encrypted DNS blocklists. On desktop you can choose to try and override but lists of the common DOH providers are readily available for free. I block them myself on my network because I run my own DNS resolver with ad blocking and don’t want anything bypassing it to phone home its analytics.

      • peeonyou [he/him]@hexbear.net
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        4 months ago

        it encrypts your dns requests over https so it can’t be inspected by whoever your ISP is or whatever router you’re connected to