Adguard Letter of Support to Quad9
adguard.com
adguard.com
That said this is still terrible and I hope the German court reconsiders their decision. The free flow of information is more valuable than protecting copyrights, because the former benefits many more people. Most of the copyright holders who feel threatened by piracy are not even German! The court is protecting big American businesses over individual Germans.
I run one such small public DNS (DoH-only) resolver (primarily popular in countries where censorship is low to moderate), and know several other folks who do. Just the other day we were discussing the implications of this ruling, but coming from a country with dismal digital/internet freedom track-record, this made me sit back and contemplate for a bit (unblocking access to censored web properties may soon be a crime as the government here bids to criminalise VPNs):
I believe, the inevitable over-regulation and insurmountable legal threats are going to ruin it for the hobbyists who thrive at the fringes. Internet may soon go the way of the telecom industry. Controlled by a few, regulated to oblivion, with high barriers to entry.
I hope I am wrong.
Governments have abused their control of DNS. A distributed system (with trust and safeguards) is the better way.
On top of the above, the likes of Google are enforcing their DNS servers. For example, I run AdGuard Home with it's DHCP functionality. I am unable to rely on the DHCP settings on my Android phone because Google forces the first DNS server to be 8.8.8.8 with (as far as I can tell) no way to disable this.
I think at least for the foreseeable future the solution is to run Unbound and stop relying on DNS resolvers combined with a firewall that redirects all DNS records AdGuard Home/PiHole. This is obviously not a solution to the general public.
For DoH, you either have to block port 443 (bad idea), or block the IPs of all known DoH providers.
Then you can run for example a Pi-Hole and add a firewall rule to allow outgoing DNS traffic only for that.
And of course that will not stop device/app makers from using nonstandard ports or even tunnelling their DNS traffic through other protocols.
Which Android version and skin? I'm on an Android 10, MIUI12 device and the DHCP-provided DNS server is the one used ( AdGuard successfully blocks ads on websites, apps when on my phone, until i disable it).
I love the idea in principle but it didn't seem to work for me in reality.
There's not much that can be done when governments fiddle with the root DNS servers, but methods could be developed to retain historical records, and revert to them in the event of censorship.
This would be like a German court ordering Yellowbook to stop listing the phone number for a DVD store because they were known to sell bootleg copies of Sony movies. What a joke.
https://www.forbes.com/sites/moorinsights/2021/06/15/ibm-and...