The IETF has standardized DNS over HTTPS (DOH), which encrypts DNS queries so eavesdroppers can’t tell what sites users connect to. Unauthorized interception of DNS traffic provides enough information ...
However, I did want to use encrypted DNS so I plan to use systemd-resolved as the resolver for DNS (looks like it supports DNS over TLS). As of right now I don't plan on setting up VLANs (I have a ...