Alex313031 / thorium

Chromium fork named after radioactive element No. 90. Windows and MacOS/Raspi/Android/Special builds are in different repositories, links are towards the top of the README.md.
https://thorium.rocks/
BSD 3-Clause "New" or "Revised" License
4.68k stars 145 forks source link

ECS EDNS Client Subnet in DNS Queries #192

Closed trimechee closed 1 week ago

trimechee commented 1 year ago

Hello, DNS Client Subnet EDNS (ECS) makes DNS connections much faster, does our beloved Thorium enable by default EDNS Client Subnet?

I use the best secure dns in the earth, quad9 with ECS EDNS enabled which blocks 97% of malware according to a study and even quad9 blocks miners crypto hijacking....

but I was stupid thinking my dns connection will be faster but I find out today firefox disables DNS Client Subnet EDNS, so I set firefox's "network.trr.disable-ECS" value to false to enable DNS Client Subnet EDNS in Firefox , is there an equivalent option for Thorium Browser to enable by default DNS Client Subnet EDNS please ?

trimechee commented 1 year ago

Hello @Alex313031 @gz83 , in the New Features of Waterfox, it says :

" Waterfox now uses Oblivious DNS by default, a privacy preserving method for DNS queries." Can Thorium add this new feature please ?

I read that activating ECS makes it possible to circumvent geolocation and censorship of ip addresses based on geopgraphical location....apparently the old ECS is replaced by EDNS ....i think activating EDNS is one of the most great functions to bypass surveillance and censorship and we would no longer need vpn, the ISP and the state can no longer monitor us apparently

so what do you think about my discover ? is that really tre and it really works please ?

"Firefox – Blind your ISP & keep your data safe!

Today I will guide you How to Blind your ISP & keep your data safe!

Protect your privacy. Defend yourself against network surveillance and traffic analysis and stop your isp from spying on you.

It’s simple and can be done via Firefox. When you enable this, you don’t need a VPN to browse blocked websites, It will unlock all domains worldwide.

about:config esni.enabled trr.mode 5) Search for “trr.mode”

Double click on it or right click and select Modify.

Set network.trr.mode to 2 to make DNS Over HTTPS. It will secure your connection and unlock all blocked domain names.

Enter 2 and Click OK!

Note: Try 2 first, if you get error, set trr.mode to 1."

i make new researches and it seems that ESNI becomes ECH, wu hope that Thorium will add option to enable ECH please :

Encrypted Client Hello: the future of ESNI in Firefox https://blog.mozilla.org/security/2021/01/07/encrypted-client-hello-the-future-of-esni-in-firefox/