[dnsdist] DoT / DoH as downstream

Remi Gacogne remi.gacogne at powerdns.com
Fri Nov 22 13:13:15 UTC 2019


On 11/22/19 2:07 PM, Bjoern Franke wrote:
> is it possible to use DoT / DoH servers as downstream? Simply using
> "newServer('<ip>:853')" e.g. for DoT did not work.

No, it's not supported. DNS over TLS toward servers will likely happen
at some point but DNS over HTTPS seems unlikely at the moment, since it
would require embedding a library supporting HTTP/2 as a client, which
we don't have right now.

Note that there already is such a feature request on GitHub [1].

[1]: https://github.com/PowerDNS/pdns/issues/8104

Best regards,
Remi Gacogne
PowerDNS.COM BV - https://www.powerdns.com/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <http://mailman.powerdns.com/pipermail/dnsdist/attachments/20191122/ae465e05/attachment.sig>

More information about the dnsdist mailing list