mirror of
https://git.FreeBSD.org/ports.git
synced 2024-12-30 05:40:06 +00:00
e1aab1356a
This update replaces the default resolver used by dnscrypt-proxy (cisco/OpenDNS) by a random one that does not log entries and supports dnssec. - Improve pkg-message's. - Fix MASTER_SITES. - Reorder Makefile variable's. - Update WWW. PR: 223222 Submitted by: Vinícius Zavam <egypcio@googlemail.com> Reviewed by: dbaio, garga, mat Approved by: Leo Vandewoestijne <freebsd@dns-lab.com> (maintainer, previous patch, then timeout) Differential Revision: https://reviews.freebsd.org/D12775
18 lines
766 B
Plaintext
18 lines
766 B
Plaintext
The dnscrypt-proxy provides local service, which can be used directly as your
|
|
local resolver or as a DNS forwarder, encrypting and authenticating requests
|
|
using the DNSCrypt [1] protocol and passing them to an upstream server.
|
|
|
|
The DNSCrypt protocol uses high-speed high-security elliptic-curve cryptography
|
|
and is very similar to DNSCurve [2], but focuses on securing communications
|
|
between a client and its first-level resolver.
|
|
|
|
While not providing end-to-end security, it protects the local network, which
|
|
is often the weakest point of the chain, against man-in-the-middle attacks.
|
|
It also provides some confidentiality to DNS queries.
|
|
|
|
Reference links:
|
|
1. https://www.opendns.com/about/innovations/dnscrypt/
|
|
2. https://dnscurve.org/
|
|
|
|
WWW: https://dnscrypt.org/
|