ืžื•ื–ื™ืœื” ื”ืฆื™ื’ื” ืกืคืง DNS-over-HTTPS ืฉืœื™ืฉื™ ืขื‘ื•ืจ Firefox

ื—ื‘ืจืช ืžื•ื–ื™ืœื” ืกื™ื›ื ื”ืกื›ื ืขื ืกืคืงื™ื ืฉืœื™ืฉื™ื™ื DNS over HTTPS (DoH, DNS over HTTPS) ืขื‘ื•ืจ Firefox. ื‘ื ื•ืกืฃ ืœืฉืจืชื™ ื”-DNS ืฉื”ื•ืฆืขื• ื‘ืขื‘ืจ CloudFlare ("https://1.1.1.1/dns-query") ื• NextDNS (https://dns.nextdns.io/id), ืฉื™ืจื•ืช Comcast ื™ื™ื›ืœืœ ื’ื ื‘ื”ื’ื“ืจื•ืช (https://doh.xfinity.com/dns-query). ื”ืคืขืœ ืืช DoH ื•ื‘ื—ืจ ืกืคืง ืื—ื“ ื™ื›ื•ืœ ื‘ื”ื’ื“ืจื•ืช ื”ื—ื™ื‘ื•ืจ ืœืจืฉืช.

ื‘ื•ืื• ื ื–ื›ื•ืจ ืฉ-Firefox 77 ื›ืœืœ ื‘ื“ื™ืงืช DNS ืขืœ HTTPS ื›ืืฉืจ ื›ืœ ืœืงื•ื— ืฉื•ืœื— 10 ื‘ืงืฉื•ืช ื‘ื“ื™ืงื” ื•ื‘ื•ื—ืจ ืื•ื˜ื•ืžื˜ื™ืช ืกืคืง DoH. ื”ืกื™ืžื•ืŸ ื”ื–ื” ื”ื™ื” ืฆืจื™ืš ืœื”ื™ื•ืช ืžื•ืฉื‘ืช ื‘ืฉื—ืจื•ืจ 77.0.1, ืฉื›ืŸ ื”ื™ื ื”ืคื›ื” ืœืžืขื™ืŸ ืžืชืงืคืช DDoS ืขืœ ืฉื™ืจื•ืช NextDNS, ืฉืœื ื”ืฆืœื™ื—ื” ืœื”ืชืžื•ื“ื“ ืขื ื”ืขื•ืžืก.

ืกืคืงื™ ื”-DoH ื”ืžื•ืฆืขื™ื ื‘ืคื™ื™ืจืคื•ืงืก ื ื‘ื—ืจื™ื ื‘ื”ืชืื ื“ืจื™ืฉื•ืช ืœืคื•ืชืจื™ DNS ืžื”ื™ืžื ื™ื, ืœืคื™ื”ื ืžืคืขื™ืœ ื”-DNS ื™ื›ื•ืœ ืœื”ืฉืชืžืฉ ื‘ื ืชื•ื ื™ื ื”ืžืชืงื‘ืœื™ื ืœืคืชืจื•ืŸ ืจืง ื›ื“ื™ ืœื”ื‘ื˜ื™ื— ืืช ืคืขื•ืœืช ื”ืฉื™ืจื•ืช, ืืกื•ืจ ืœืื—ืกืŸ ืœื•ื’ื™ื ื‘ืžืฉืš ื™ื•ืชืจ ืž-24 ืฉืขื•ืช, ืื™ื ื• ื™ื›ื•ืœ ืœื”ืขื‘ื™ืจ ื ืชื•ื ื™ื ืœืฆื“ื“ื™ื ืฉืœื™ืฉื™ื™ื ื•ืžื—ื•ื™ื‘ ืœื—ืฉื•ืฃ ืžื™ื“ืข ืื•ื“ื•ืช ืฉื™ื˜ื•ืช ืขื™ื‘ื•ื“ ื ืชื•ื ื™ื. ืขืœ ื”ืฉื™ืจื•ืช ื’ื ืœื”ืกื›ื™ื ืฉืœื ืœืฆื ื–ืจ, ืœืกื ืŸ, ืœื”ืคืจื™ืข ืื• ืœื—ืกื•ื ืชืขื‘ื•ืจืช DNS, ืืœื ื‘ืžืฆื‘ื™ื ื”ืงื‘ื•ืขื™ื ื‘ื—ื•ืง.

ื ื™ืชืŸ ืœืฆื™ื™ืŸ ื’ื ืื™ืจื•ืขื™ื ื”ืงืฉื•ืจื™ื ืœ-DNS-over-HTTPS ื”ื—ืœื˜ื” ืืคืœ ืชื˜ืžื™ืข ืชืžื™ื›ื” ืขื‘ื•ืจ DNS-over-HTTPS ื•-DNS-over-TLS ื‘ืžื”ื“ื•ืจื•ืช ืขืชื™ื“ื™ื•ืช ืฉืœ iOS 14 ื•-macOS 11, ื›ืžื• ื’ื ื”ื•ืกืฃ ืชืžื™ื›ื” ื‘ื”ืจื—ื‘ื•ืช WebExtension ื‘ืกืคืืจื™.

ื ื–ื›ื™ืจ ื›ื™ DoH ื™ื›ื•ืœ ืœื”ื™ื•ืช ืฉื™ืžื•ืฉื™ ืœืžื ื™ืขืช ื“ืœื™ืคื•ืช ืžื™ื“ืข ืขืœ ืฉืžื•ืช ื”ืžืืจื—ื™ื ื”ืžื‘ื•ืงืฉื™ื ื“ืจืš ืฉืจืชื™ ื”-DNS ืฉืœ ืกืคืงื™ื, ืžืื‘ืง ื‘ื”ืชืงืคื•ืช MITM ื•ื–ื™ื•ืฃ ืชืขื‘ื•ืจืช DNS (ืœื“ื•ื’ืžื”, ื‘ืขืช ื—ื™ื‘ื•ืจ ืœ-Wi-Fi ืฆื™ื‘ื•ืจื™), ืžื ื™ืขืช ื—ืกื™ืžื” ื‘-DNS ืจืžืช (DoH ืœื ื™ื›ื•ืœ ืœื”ื—ืœื™ืฃ VPN ื‘ืชื—ื•ื ืฉืœ ืขืงื™ืคืช ื—ืกื™ืžื” ื”ืžื™ื•ืฉืžืช ื‘ืจืžืช DPI) ืื• ืœืืจื’ื•ืŸ ืขื‘ื•ื“ื” ืื ืื™ ืืคืฉืจ ืœื’ืฉืช ื™ืฉื™ืจื•ืช ืœืฉืจืชื™ DNS (ืœื“ื•ื’ืžื”, ื‘ืขื‘ื•ื“ื” ื“ืจืš ืคืจื•ืงืกื™). ืื ื‘ืžืฆื‘ ืจื’ื™ืœ ื‘ืงืฉื•ืช DNS ื ืฉืœื—ื•ืช ื™ืฉื™ืจื•ืช ืœืฉืจืชื™ DNS ื”ืžื•ื’ื“ืจื™ื ื‘ืชืฆื•ืจืช ื”ืžืขืจื›ืช, ืื– ื‘ืžืงืจื” ืฉืœ DoH, ื”ื‘ืงืฉื” ืœืงื‘ื™ืขืช ื›ืชื•ื‘ืช ื”-IP ืฉืœ ื”ืžืืจื— ืžื•ื‘ืœืขืช ื‘ืชืขื‘ื•ืจืช HTTPS ื•ื ืฉืœื—ืช ืœืฉืจืช ื”-HTTP, ืฉื ื”ืคื•ืชืจ ืžืขื‘ื“ ื‘ืงืฉื•ืช ื“ืจืš ื”-API ืฉืœ ื”ืื™ื ื˜ืจื ื˜. ืชืงืŸ DNSSEC ื”ืงื™ื™ื ืžืฉืชืžืฉ ื‘ื”ืฆืคื ื” ืจืง ื›ื“ื™ ืœืืžืช ืืช ื”ืœืงื•ื— ื•ื”ืฉืจืช, ืืš ืื™ื ื• ืžื’ืŸ ืขืœ ื”ืชืขื‘ื•ืจื” ืžืคื ื™ ื™ื™ืจื•ื˜ ื•ืื™ื ื• ืžื‘ื˜ื™ื— ืืช ืกื•ื“ื™ื•ืช ื”ื‘ืงืฉื•ืช.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”