Im looking for a privacy friendly DNS

https://lemmy.world/post/8126933

Im looking for a privacy friendly DNS - Lemmy.World

Im looking for a dns that doesnt spy on me as much as google’s dns server.

Mullvad recently announced a free encrypted DNS. It can block ads and malware too.

mullvad.net/en/…/dns-over-https-and-dns-over-tls

DNS over HTTPS and DNS over TLS

Our public DNS service

Mullvad VPN
Awesome, I didn’t know about this. I love Mullvad.
I don't think you need that if you already use their VPN, as that already connects to their DNS servers.
Adguard also offers free public DNS. I’ve used it since discovering that cloudflare blackholes archive.org and all similar sites.
You’re probably confusing archive.org (The Internet Archive non-profit organization), which works with cloudflare dns, with archive.is (alternate domain for archive.today website snapshot service, commonly used to bypass paywalled articles), which don’t work on cloudflare but it’s due to its owner’s decision, not cloudflare’s fault. The gist is archive.is uses dns-based load balancer, which requires EDNS Client Subnet. But Cloudflare disable EDNS Client Subnet on ther DNS service for privacy reason which seems to piss archive.is owner so much they blocked cloudflare dns.
FAQ

Find answers to common questions about Cloudflare's 1.1.1.1 DNS resolver, including setup, privacy features, IPv6 support, and troubleshooting tips.

Cloudflare Docs
At home you can use Unbound
Unbound - About

Unbound is a validating, recursive, caching DNS resolver. It is designed to be fast and lean and incorporates modern features based on open standards. To help increase online privacy, Unbound supports DNS-over-TLS and DNS-over-HTTPS which allows clients to encrypt their communication. In addition, it supports various modern standards that limit …

NLnet Labs
This coupled with pihole is great! The pihole docs even have setup for unbound and it’s really easy to follow.
Run a Pi-hole with Unbound
Seriously, can vouch for this. Pi-hole is great!
OpenNIC Project

An organization of hobbyists who run an alternative DNS network, also provides access to domains not administered by ICANN.

I’ve been using Quad9 and I’m happy with it. Here’s the site if you’re interested in looking into it further.

Quad9

Quad9 | A public and free DNS service for a better security and privacy

A public and free DNS service for a better security and privacy

Quad9

NextDNS.

You can control if you want logs or not, where to store them, for how long, which domains to block, which encryption protocol will be used, and many more features.

Adguard has an encrypted dns
Adguard has a quite comprehensive list of known DNS providers in their documentation. It’s very useful because my ISP transparently redirect all dns queries on port 53, so I’ll have to find DNS providers that listen on alternate ports for my upstream DNS in my Adguard instance.
Known DNS Providers | AdGuard DNS Knowledge Base

Here we suggest a list of trusted DNS providers. To use them, first install AdGuard Ad Blocker or AdGuard VPN on your device. Then, on the same device, click the link to a provider in this article

Here are two resources for privacy-oriented DNS:

  • The provider list for the https-dns-proxy module of OpenWRT: github.com/stangri/…/providers
  • Privacy-oriented European public DNS services: european-alternatives.eu/category/public-dns
  • source.openwrt.melmac.net/luci-app-https-dns-proxy/root/usr/share/https-dns-proxy/providers at master · stangri/source.openwrt.melmac.net

    OpenWrt Packages. Contribute to stangri/source.openwrt.melmac.net development by creating an account on GitHub.

    GitHub
    Honest question, what’s wrong with cloudflare?
    If you have the skill to implement Pi Hole is the best option. If not MullvadDNS is a solid option but if you want a granular control over your DNS queries no doubt NextDNS.
    Have a look at dnsforge.de
    dnsforge.de DNS-Resolver

    DNS-over-TLS und DNS-over-HTTPS: Zensurfreier, sicherer und redundanter DNS Resolver ohne Logging, dafür mit Werbeblocker. Serverstandort Deutschland.

    In case you are unaware, make sure to override DNS on any web browsers or other programs that might be skipping OS configured DNS servers to use hard-coded DNS over HTTPS servers.

    If you’re running your own DNS resolver you can hint this to some applications in your network via a canary domain

    Canary domain - use-application-dns.net | Firefox Help

    Network administrators may configure their networks to modify DNS requests for the following special-purpose domain, called a ''canary domain''.

    If you are in Europe, try dns0: www.dns0.eu
    The European public DNS that makes your Internet safer.

    A free, sovereign and GDPR-compliant recursive DNS resolver with a strong focus on security to protect the citizens and organizations of the European Union.

    dns0.eu
    I’m shilling for controld.com and I will die on this hill.