ISP DNS Privacy

The cluster focuses on concerns about ISPs logging and monetizing DNS queries, browsing habits, and whether encrypted DNS protocols like DoH or DoT effectively protect user privacy from ISP surveillance.

📉 Falling 0.4x Security
3,029
Comments
20
Years Active
5
Top Authors
#7988
Topic ID

Activity Over Time

2007
2
2008
3
2009
26
2010
33
2011
51
2012
59
2013
95
2014
123
2015
83
2016
150
2017
256
2018
348
2019
440
2020
283
2021
261
2022
254
2023
215
2024
160
2025
180
2026
7

Keywords

e.g IT SNI HOW P2P DNS arstechnica.com ycombinator.com HTTPS TLS isp dns isps ip requests traffic encrypted queries https ip address

Sample Comments

brazzledazzle Nov 4, 2019 View on HN

The problem is that your ISP can log and mine your DNS requests, regardless of the servers you use. They definitely do this and one can only assume they then sell it after some sort of processing.

matheusmoreira Sep 29, 2019 View on HN

> my ISP can see what I'm pulling on the netWill DNS over HTTPS help mitigate this?

pixl97 Feb 15, 2019 View on HN

You do realize your ISP can spy on any DNS records passing its routers with deep packet inspection right? Only DNS(HTTPS/TLS) can fix that.

emptyparadise Oct 18, 2022 View on HN

Wouldn't the ISP still know that you're connecting to Google, however?

rabanne Jun 26, 2020 View on HN

"Let's encrypt DNS queries but send them to the ISP which can associate the query with subscriber info!"

pixl97 Aug 16, 2022 View on HN

Your ISP may care about what your connecting to very much, and are prepared to sell it to the highest bidder.https://arstechnica.com/information-technology/2015/03/atts-...

mike-cardwell Jan 1, 2014 View on HN

"protects against DNS interception by my ISP"Your ISP can still see the IP address of every web server that you connect to, and can still see the "Host" header that your browser sends in HTTP requests, and also in HTTPS requests (due to SNI) if you're using a reasonably modern OS/Browser combo.All you've done is add an additional third party that can view and log what you're doing.

beagle3 Jun 18, 2020 View on HN

As long as you don’t use encrypted DNS (e.g. DoH) it doesn’t matter which DNS server you use - the ISP sees your requests and the replies, and the sees you accessing the returned IP within 10 seconds.Also, unless it’s behind Cloudflare. Most nontrivial sites today have a unique IP so even with DoH there’s a good probability any specific site will be identified.If you want your ISP to stay ignorant of where you surf, you MUsT have a VPN.

RKearney Mar 14, 2016 View on HN

Sacrificing privacy? Sorry, but my ISP knows what DNS queries I make regardless of which service I use.

vorticalbox Jul 6, 2019 View on HN

Most vpns also contain DNS query so ISPs can't see them how is this any different?