>>1185769It's not the end of the story because you can then block DNS traffic from passing through the router, but now your adversary can use DNS-over-HTTPs, or just remember the IP addresses of the sites you're banning and write them in his hosts file.
DoH has been the subject of a lot of arguments in what passes for government on the internet, because the issue basically comes down to
- with this new technology, China can't block its citizens from Google, the free press, etc.
- yeah but now the browsers aren't even USING the system DNS, I can't block my employees/children from leaking documents to my competitors/browsing 4chan