Encrypted DNS Server
This page was last modified: 19 Feb 2021 20:14 CE(S)T.
MegaNerd.nl is providing a free encrypted DNS server (SDNS server) and anonymized DNS relay - via DNSCrypt and DNS over HTTPS (DoH).
Most sites you visit use encryption nowadays (HTTPS), but the ancient DNS protocol doesn't encrypt communication between client and server. In other words: it is sent as plain text and anyone that sniffs your traffic can read and understand the requests you make to translate a domain(name) to an IP address. That makes DNS very vulnarable to man-in-the-middle attacks.
An encrypted DNS server encrypts and authenticates DNS queries. There are several protocols to encrypt DNS. DNSCrypt is one of them and by far the easiest to implement. The best way to enable DNS encryption for yourself is to use dnscrypt-proxy. Download it for your OS and follow the instructions on that page. To further improve privacy, you could enable anonymized DNSCrypt on top of that. You can even use it together with another fantastic piece of software named Pi-hole: see this page for instructions how to do that. The server also supports DNS over HTTPS (DoH) via doh-proxy.
MegaNerd.nl encrypted DNS server characteristics
DNSCrypt server IPv4
Use meganerd in your configuration or this DNS stamp:
Anonymized DNSCrypt relay IPv4
Use anon-meganerd in your configuration or this DNS stamp:
DNSCrypt server IPv6
Use meganerd-ipv6 in your configuration or this DNS stamp:
Anonymized DNSCrypt relay IPv6
Use anon-meganerd-ipv6 in your configuration or this DNS stamp:
DNS over HTTPS (DoH) server IPv4
Use meganerd-doh-ipv4 in your configuration or this DNS stamp:
DNS over HTTPS (DoH) server IPv6
Use meganerd-doh-ipv6 in your configuration or this DNS stamp: