In my opinion, the best way to ensure your privacy and security is to use your own recursive DNS resolver, which is the standard configuration of Unbound in the OPNsense. It leverages the decentral structure of DNS.
Quote from: Monviech on February 27, 2024, 09:08:30 pmIn my opinion, the best way to ensure your privacy and security is to use your own recursive DNS resolver, which is the standard configuration of Unbound in the OPNsense. It leverages the decentral structure of DNS.Amen, brother. (emphasis mine)
I have DoT to Quad9. Not a commercial organization. Logs are kept for 24 hours, only to prevent abuse.I trust that Quad9 operators know what they do. And that is above my pay grade.