DNS Resolver
Currently Cloudflare 1.1.1.1 is used as the a resolver for the lan at home. Resolving is configured in the router (fritz.box). And DNS over TLS is activated.
- Go to the fritz.box
- Enter the router credentials.
- In the admin console, goto Internet > Acocount Information > DNS Server.
- Click Use other DNSv4 server and enter the following
- 1.1.1.1
- 1.0.0.1
- Click Use other DNSv6 server and enter the following
- 2606:4700:4700::1111
- 2606:4700:4700::1001
- Unclick Fallback to public DNS servers when DNS disrupted. in the section Public DNS Servers.
- Click Encrypted name resolution in the internet (DNS over TLS) in the section DNS over TLS (DoT) as well as the checkbox Force a certificate check for encrypted name resolution in the internet. Make sure that no other checkboxes are acitviated in this section.
- Enter the follwing hostnames in the textarea Resolved Names of the DNS Server
- one.one.one.one
- 1dot1dot1dot1.cloudflare-dns.com
- Save the updated settings.
- Enter https://1.1.1.1/help on the browser address bar to validate functionality.
https://developers.cloudflare.com/1.1.1.1/encryption/dns-over-tls/