Cloudflared vs. unbound as upstream DNS? And Unbound installation issues

I tried to highlight that in the short paragraphs that triggered this topic.

DoT or DoH would secure your connections to your DNS provider. While preventing your DNS traffic from third-party eaves-dropping, it does little in terms of privacy: Your chosen DNS provider still has your full DNS history.

Because unbound could also be configured to use DoT instead of acting as a recursive resolver, it's clearly the superior solution.

It won't do away with the fact that you have to decide for one way or the other, though. Both approaches - recursive resolver and DoT/DoH - offer some benefits the respective other cannot.

In the end, it comes down to a personal choice; see Best secure and privacy options for DNS for an in depth discussion of the underlying considerations.

1 Like