Announcements
Voting is now open!
Members, make your selections in the annual (ISC)² Board of Directors election. Vote Now! Voting is open until Sept. 22.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
AppDefects
Community Champion

NSA Guidance on Implementing Encrypted DNS

Beware of third-party DNS resolvers. 

 

DoH provides the benefit of encrypted DNS transactions, but it can also bring issues to enterprises, including a false sense of security, bypassing of DNS monitoring and protections, concerns for internal network configurations and information, and exploitation of upstream DNS traffic, NSA officials wrote in published recommendations

 

NSA recommended enterprise DNS architecture with DoHNSA recommended enterprise DNS architecture with DoH