Comment by mcpherrinm
19 hours ago
Yes, ISPs absolutely do deep packet inspection.
With cleartext DNS, your queries may never reach your chosen server. Plenty of ISPs are configured to just answer any DNS query, regardless of its destination. Using a nonstandard port might help, but you’d be much better off deploying one of the DoH / DoT / DoQ / etc secure protocols.
No comments yet
Contribute on Hacker News ↗