1.1.1.1 - Cloudflare's privacy-oriented DNS service

General discussion and chat (archived)
User avatar
back2themoon
Moon Magic practitioner
Moon Magic practitioner
Posts: 2411
Joined: 2012-08-19, 20:32

1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by back2themoon » 2018-04-02, 00:21


roytam1

Re: 1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by roytam1 » 2018-04-02, 03:28

Not to mention it supports DNS-over-TLS (on port 853) and DNS-over-HTTPS (on port 443)

tooshorttoolong
Fanatic
Fanatic
Posts: 137
Joined: 2017-09-11, 14:28

Re: 1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by tooshorttoolong » 2018-04-02, 08:37

Interesting. For me Cloudflare was the exact opposite of a privacy-oriented company. I will not use this DNS because they have access to way too much information already, but it could be of help temporarily to people suffering from a DNS ban in their country…

User avatar
Sajadi
Board Warrior
Board Warrior
Posts: 1227
Joined: 2013-04-19, 00:46

Re: 1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by Sajadi » 2018-04-02, 09:45

Tried it. Rather slow, and makes issues when loading some pages - which my provider's own DNS servers handle without issues.

In my opinion... Not recommended. Even Google's DNS are faster than what is offered here.

User avatar
back2themoon
Moon Magic practitioner
Moon Magic practitioner
Posts: 2411
Joined: 2012-08-19, 20:32

Re: 1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by back2themoon » 2018-04-02, 17:55

Here's the Privacy Policy. Not really sure what to make of it.

joe04

Re: 1.1.1.1 - Cloudflare's privacy-oriented DNS service

Unread post by joe04 » 2018-04-02, 23:23

Alternate DNS providers is an interesting topic. I briefly looked into it last year, but opted to stay with my tried-and-true ISP DNS because a) has fastest ping times with highest TTL and b) haven't had a problem with it in years and c) unless you're going the encrypted route, DNS traffic can be snooped by your ISP anyways, so with an alternate provider that means 2 companies now have your DNS data.

Cloudflare is pretty transparent and their privacy policy is clear enough, but I don't trust them enough because of their CEO's power trip last year. (In the link he claims Cloudfare hosts 10% of all web activity, which I believe from my own uBO usage. So as @tooshort said earlier, they already have access to plenty of our web browsing behavior; I don't see the need to give them more, even if they do anonymize it as they claim.)

What's also interesting is in the CEO's tweet announcing this new DNS service, several people responded that Quad9's (9.9.9.9) is better. For me, the ping times are about the same for both, about 3-5ms worse than my ISPs. (For testing purposes, Google's 8.8.8.8 is also about 3ms slower than my ISP, but OpenDNS is lousy - about 20ms worse. And since I've never actually used any of these alternate DNS for real browsing, ping times may not be representative of any problems that could occur.)

EDIT:
I'm curious: Does anyone use encrypted DNS on Windows, and if so what's your experience like? (I'm interested in outages, latency, and other headaches or deficiencies compared to regular ISP DNS.)
Last edited by joe04 on 2018-04-02, 23:24, edited 1 time in total.