• @[email protected]
    link
    fedilink
    English
    107 months ago

    DNS based blocking only works for regular DNS requests.

    At this point, any app that wanted to bypass that could use DoH/DoT+ECH to completely bypass your DNS and thus the blocking it provides. With these tools, all you’d see is an outgoing TLS connection to a remote IP; all other data is encrypted.