The need for speed (and security): Cloudflare has developed a new DNS service for PCs and phones

Discussion in 'privacy technology' started by ronjor, Apr 1, 2018.

  1. reasonablePrivacy

    reasonablePrivacy Registered Member

    Joined:
    Oct 7, 2017
    Posts:
    2,010
    Location:
    Member state of European Union
  2. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
    Wow. That is just so cool!

    There is potential for great evil with services like Cloudflare. But I get that they are real "do no evil" people.
     
  3. Dragon1952

    Dragon1952 Registered Member

    Joined:
    Sep 16, 2012
    Posts:
    2,470
    Location:
    Hollow Earth - Telos
  4. __Nikopol

    __Nikopol Registered Member

    Joined:
    Aug 13, 2008
    Posts:
    630
    Location:
    Germany
    A symbiotic relationship is the most basic thing on earth.

    Yea. It could be evil or not. Like literally anything.
     
  5. guest

    guest Guest

    Cloudflare’s new ‘one-click’ DNSSEC setup will make it far more difficult to spoof websites
    September 18, 2018
    https://techcrunch.com/2018/09/18/cloudflare-dnssec-one-click-securing-internet/
    Cloudflare blog:
    Expanding DNSSEC Adoption
    September 18, 2018
    https://blog.cloudflare.com/automatically-provision-and-maintain-dnssec/
     
  6. guest

    guest Guest

    Cloudflare Ends CAPTCHAs for TOR Users While Blocking Bad Actors
    September 20, 2018
    https://www.bleepingcomputer.com/ne...chas-for-tor-users-while-blocking-bad-actors/
    Cloudflare blog:
    Introducing the Cloudflare Onion Service
    September 20, 2018
    https://blog.cloudflare.com/cloudflare-onion-service/
     
  7. guest

    guest Guest

    Cloudflare Improves Privacy by Encrypting the SNI During TLS Negotation
    September 24, 2018
    https://www.bleepingcomputer.com/ne...-by-encrypting-the-sni-during-tls-negotation/
     
  8. summerheat

    summerheat Registered Member

    Joined:
    May 16, 2015
    Posts:
    2,199
    Cloudflare has announced that they started supporting Encrypted SNI. This is great news as that means that SNI no longer leaks the sites you're browsing to your ISP or other parties listening - provided that DoT or DoH is used.

    More details here. A Firefox Nightly that will support ESNI is expected to be available this week. Other DNS providers will certainly support ESNI before long, too.

    EDIT: Oops - @mood was a bit faster ;)
     
  9. 142395

    142395 Guest

    Note, as mentioned in articles (they've published 2 articles), it's only applicable to TLS1.3 & makes sense only when you've already encrypted DNS. As to destination IP problem, I believe their coming solution will be using gateway.
     
    Last edited by a moderator: Sep 26, 2018
  10. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    Cloudflare gets into registrar business with wholesale domains and free privacy
    https://arstechnica.com/information...ness-with-wholesale-domains-and-free-privacy/
     
  11. guest

    guest Guest

    Cloudflare launches Android and iOS apps for its 1.1.1.1 service
    Company makes it easy for mobile users to hide their DNS traffic from nosy ISPs
    November 11, 2018

    https://www.zdnet.com/article/cloudflare-launches-android-and-ios-apps-for-its-1-1-1-1-service/
     
  12. Stefan Froberg

    Stefan Froberg Registered Member

    Joined:
    Jul 30, 2014
    Posts:
    747
    Encrypted DNS, onion service, Encrypted SNI, whois privacy for free.... :eek:
    Dang, Cloudflare seems okay :)
     
  13. WildByDesign

    WildByDesign Registered Member

    Joined:
    Sep 24, 2013
    Posts:
    2,587
    Location:
    Toronto, Canada
  14. NiteRanger

    NiteRanger Registered Member

    Joined:
    Nov 15, 2016
    Posts:
    651
    Location:
    Far East
    I tested below using FF for android set to DoH but SNI is NOT encrypted. So is it supported on android?

    https://www.cloudflare.com/ssl/encrypted-sni/
     
  15. summerheat

    summerheat Registered Member

    Joined:
    May 16, 2015
    Posts:
    2,199
    You probably missed that my post was referring to Firefox Nightly.
     
  16. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,848
    Location:
    Texas
    Software firm Cloudflare raises $150 million
     
  17. guest

    guest Guest

    New HTTPS Interception Tools Available from Cloudflare
    March 18, 2019
    https://www.bleepingcomputer.com/ne...interception-tools-available-from-cloudflare/
     
  18. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
  19. guest

    guest Guest

    HTTPS everywhere? Cloudflare planning improvements to middlebox detection utility
    Researchers aiming to make MITMEngine more accurate and flexible
    August 22, 2019

    https://portswigger.net/daily-swig/...g-improvements-to-middlebox-detection-utility
     
  20. Nanobot

    Nanobot Registered Member

    Joined:
    Jun 23, 2010
    Posts:
    473
    Location:
    Neo Tokyo
    https://blog.cloudflare.com/introducing-1-1-1-1-for-families/

     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.