wirehole icon indicating copy to clipboard operation
wirehole copied to clipboard

DNS over HTTPS (DoH) support

Open jimaldon opened this issue 3 years ago • 0 comments

Incoming DoH With the current configuration it looks like DoH requests (default in Firefox iirc) will completely bypass pihole.

Is there a solution that could decrypt DoH from clients in network, pass it through wirehole and potentially encrypt them again (cloudflared, stubby etc)?

Or is the solution simply to manually ensure every client on the network has DoH disabled?

Outgoing DoH This should be possible with unbound. It would be a good effort to dockerize it, with auto cert generation on docker-compose.

jimaldon avatar Nov 20 '22 18:11 jimaldon