From bc2afc5888fe7f57c170abfa09dff66196a64c75 Mon Sep 17 00:00:00 2001 From: Frank Denis Date: Sun, 21 Jun 2020 22:13:45 +0200 Subject: [PATCH] Move configuration to v3/ ; autogenerate compatibility files in v2/ Fixes #310 --- utils/format.py | 45 +- v2/onion-services.md | 20 +- v2/onion-services.md.minisig | 6 +- v2/opennic.md | 18 +- v2/opennic.md.minisig | 6 +- v2/parental-control.md | 30 +- v2/parental-control.md.minisig | 6 +- v2/public-resolvers.md | 59 +- v2/public-resolvers.md.minisig | 6 +- v2/relays.md | 17 +- v2/relays.md.minisig | 6 +- {v2 => v3}/minisign.pub | 0 v3/onion-services.md | 27 + v3/onion-services.md.minisig | 4 + v3/opennic.md | 132 +++ v3/opennic.md.minisig | 4 + v3/parental-control.md | 155 +++ v3/parental-control.md.minisig | 4 + v3/public-resolvers.md | 1863 ++++++++++++++++++++++++++++++++ v3/public-resolvers.md.minisig | 4 + v3/relays.md | 298 +++++ v3/relays.md.minisig | 4 + 22 files changed, 2592 insertions(+), 122 deletions(-) rename {v2 => v3}/minisign.pub (100%) create mode 100644 v3/onion-services.md create mode 100644 v3/onion-services.md.minisig create mode 100644 v3/opennic.md create mode 100644 v3/opennic.md.minisig create mode 100644 v3/parental-control.md create mode 100644 v3/parental-control.md.minisig create mode 100644 v3/public-resolvers.md create mode 100644 v3/public-resolvers.md.minisig create mode 100644 v3/relays.md create mode 100644 v3/relays.md.minisig diff --git a/utils/format.py b/utils/format.py index e141e934..b6a39918 100755 --- a/utils/format.py +++ b/utils/format.py @@ -5,6 +5,12 @@ import os import subprocess from glob import glob +INCOMPATIBLE_WITH_LEGACY_VERSIONS = [ + "cira-family", "cira-private", "cira-protected" +] +CURRENT_DIR = "v3" +LEGACY_DIR = "v2" + class Entry: name = None @@ -49,12 +55,35 @@ class Entry: return out + def format_legacy(self): + out = "## " + self.name + "\n\n" + out = out + self.description + "\n\n" + out = out + self.stamps[0] + "\n" + + return out + def process(md_path, signatures_to_update): + md_legacy_path = LEGACY_DIR + "/" + os.path.basename(md_path) print("\n[" + md_path + "]") entries = {} - out = "" previous_content = "" + out = "" + out_legacy = """ +# *** THIS IS A LEGACY LIST *** + +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. + +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). + +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. + +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. + +-- +""" with open(md_path) as f: previous_content = f.read() @@ -74,6 +103,8 @@ def process(md_path, signatures_to_update): for name in sorted(entries.keys()): entry = entries[name] out = out + "\n" + entry.format() + "\n" + if not name in INCOMPATIBLE_WITH_LEGACY_VERSIONS: + out_legacy = out_legacy + "\n" + entry.format_legacy() + "\n" if out == previous_content: print("No changes") @@ -83,10 +114,20 @@ def process(md_path, signatures_to_update): os.rename(md_path + ".tmp", md_path) signatures_to_update.append(md_path) + with open(md_legacy_path) as f: + previous_content = f.read() + if out_legacy == previous_content: + print("No changes to the legacy version") + else: + with open(md_legacy_path + ".tmp", "wt") as f: + f.write(out_legacy) + os.rename(md_legacy_path + ".tmp", md_legacy_path) + signatures_to_update.append(md_legacy_path) + signatures_to_update = [] -for md_path in glob("v2/*.md"): +for md_path in glob(CURRENT_DIR + "/*.md"): process(md_path, signatures_to_update) if signatures_to_update: diff --git a/v2/onion-services.md b/v2/onion-services.md index 0cc1b0fc..a01dda32 100644 --- a/v2/onion-services.md +++ b/v2/onion-services.md @@ -1,24 +1,18 @@ -# DNS servers as .onion services -All DNSCrypt and DoH servers are accessible over Tor, via exit nodes. -This is safe as all the transactions are encrypted and authenticated. +# *** THIS IS A LEGACY LIST *** -However, it may be faster to directly access a server as an onion -service. This requires specifically configured servers. +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. -The servers below are not accessible without Tor. +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). -To use that list, add this to the `[sources]` section of your -`dnscrypt-proxy.toml` configuration file: +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. - [sources.'onion-services'] - urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/onion-services.md', 'https://download.dnscrypt.info/resolvers-list/v2/onion-services.md'] - minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' - cache_file = 'onion-services.md' +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. -- - ## onion-cloudflare Cloudflare Onion Service diff --git a/v2/onion-services.md.minisig b/v2/onion-services.md.minisig index fd65b17e..71a05a37 100644 --- a/v2/onion-services.md.minisig +++ b/v2/onion-services.md.minisig @@ -1,4 +1,4 @@ untrusted comment: signature from minisign secret key -RWQf6LRCGA9i50FioNSlB3OYxNCJYpIr/frciztqTvWHAa1uUmTN2l9F8ZKIa9kM5ixZTxmX1hlpCw229H5qLqq1ANo/HuwqiQ8= -trusted comment: timestamp:1592768550 file:onion-services.md -HBUYH0qcRW3K4oEW/KIine/GrKkcy2S6Xfq9Pb/VzRqXEWo0CujaQ5tGpTKTsycAaHka6CoosGUzmOs54On4CA== +RWQf6LRCGA9i54x8glwqQ0pYxi+OYdOKUcN7OW3oluKN+zvCaKxvL0T0nvqVya7sXt5MX71OIogAFV1d3jhTlPFBoxk3Ire8KQo= +trusted comment: timestamp:1592770394 file:onion-services.md +YQJy6oDW4xdhNhk5IaiJAEaUeZLlgj99Y3eDgC61xOfoZrgqzJ2F3a/b8bgW7wuJiOSqoEoQXdlo8JW3ozFQDw== diff --git a/v2/opennic.md b/v2/opennic.md index 74b320c1..1b4901e8 100644 --- a/v2/opennic.md +++ b/v2/opennic.md @@ -1,18 +1,18 @@ -# opennic -Resolvers from the [OpenNIC](https://www.opennic.org/) project. +# *** THIS IS A LEGACY LIST *** -To use that list, add this to the `[sources]` section of your -`dnscrypt-proxy.toml` configuration file: +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. - [sources.'opennic'] - urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/opennic.md', 'https://download.dnscrypt.info/resolvers-list/v2/opennic.md'] - minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' - cache_file = 'opennic.md' +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). + +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. + +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. -- - ## doh-ibksturm doh-server (nginx - doh-httpproxy - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy diff --git a/v2/opennic.md.minisig b/v2/opennic.md.minisig index 3017e3f0..21b719c2 100644 --- a/v2/opennic.md.minisig +++ b/v2/opennic.md.minisig @@ -1,4 +1,4 @@ untrusted comment: signature from minisign secret key -RWQf6LRCGA9i5xLlTeDptDCf4Rn19jfvqA0kf9If+sWoZqZYYy/S99/AVhJKv3W88vbWfBxBBenCdHcwUYltJNIYwd7/trLZeg8= -trusted comment: timestamp:1592768550 file:opennic.md -C/L7YOhWIRsoXM8OJIy6do58yJu/V4w949fAUpDxcWrp5i38gVXY7YBgDP4EXdOuTrzPN6+0KECgMiiatUVFAQ== +RWQf6LRCGA9i5xo5lWmZT0QtCKLdmBJEh5ITcYEapeOO9XsclPwCbKE9G2f6xtDyPn+ig8GD0wnCxmn3o10u3Xa4rWSv2qjL9Q4= +trusted comment: timestamp:1592770394 file:opennic.md +0I6H8mtTH/hYQa41yYYJ1eyooIUjyYnZidbMKTUhLUFG5bq+thhXXejPMKiFhDjiCSe9zFU6nDARa8U0UPL2Cw== diff --git a/v2/parental-control.md b/v2/parental-control.md index 6c791551..89ae9b24 100644 --- a/v2/parental-control.md +++ b/v2/parental-control.md @@ -1,25 +1,18 @@ -# parental-control -A set of resolvers blocking popular websites that may not be appropriate -for children. +# *** THIS IS A LEGACY LIST *** -This is not bulletproof. In particular, websites in languages that are -not English will require additional, local rules. +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. -To use that list, add this to the `[sources]` section of your -`dnscrypt-proxy.toml` configuration file: +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). - [sources.'parental-control'] - urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/parental-control.md', 'https://download.dnscrypt.info/resolvers-list/v2/parental-control.md'] - minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' - cache_file = 'parental-control.md' +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. -In order to enforce safe search results from Google and Youtube, you may -also want to enable cloaking (`cloaking_rules` in the configuration file). +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. -- - ## adguard-dns-family Adguard DNS with safesearch and adult content blocking @@ -27,15 +20,6 @@ Adguard DNS with safesearch and adult content blocking sdns://AQIAAAAAAAAAFDE3Ni4xMDMuMTMwLjEzMjo1NDQzILgxXdexS27jIKRw3C7Wsao5jMnlhvhdRUXWuMm1AFq6ITIuZG5zY3J5cHQuZmFtaWx5Lm5zMS5hZGd1YXJkLmNvbQ -## cira-family - -CIRA DoH resolvers, blocking trackers, malware, phishing and pornography. -Operated by the .CA registry. Built by Canadians for Canadians. -https://www.cira.ca/fr/cybersecurity-services/canadian-shield - -sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x1mYW1pbHkuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 - - ## cisco-familyshield Block websites not suitable for children (DNSCrypt protocol) diff --git a/v2/parental-control.md.minisig b/v2/parental-control.md.minisig index ec776162..010cc8e7 100644 --- a/v2/parental-control.md.minisig +++ b/v2/parental-control.md.minisig @@ -1,4 +1,4 @@ untrusted comment: signature from minisign secret key -RWQf6LRCGA9i52UtToPgih/Ec5ZpmGwlleDewldnQWpKX1wAwcJJd4RCcqZL72JpXNlflkjN6OrERCjQnxd8P2vghKeoZ3F/aAE= -trusted comment: timestamp:1592768550 file:parental-control.md -vs4JvoxoGPflyulBoegAZMJNr2+hYcQcYFLEEdkQKczcc+YlR+Odee75JQPDOF94tJI/KgTM00XjUijhC5v3DQ== +RWQf6LRCGA9i5zISlFX7bVPYshjqMol4KTq7HDppXmX7Mwa2prHlbW1HExf1yH+f5ZNlmKp205vFXLpb/6ggPz9QwzKMJ3R/3Q0= +trusted comment: timestamp:1592770394 file:parental-control.md +z2HHbB3v6p9MwZyNE4rYLbqWAeYVq49+gSWht63tl5P8gynZboGu/nbE2IxP64Bi/OtLjWJ855Y8LO1OM02ACA== diff --git a/v2/public-resolvers.md b/v2/public-resolvers.md index 70dc812a..1a604271 100644 --- a/v2/public-resolvers.md +++ b/v2/public-resolvers.md @@ -1,28 +1,18 @@ -# public-resolvers -This is an extensive list of public DNS resolvers supporting the -DNSCrypt and DNS-over-HTTP2 protocols. +# *** THIS IS A LEGACY LIST *** -This list is maintained by Frank Denis +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. -Warning: it includes servers that may censor content, servers that don't -verify DNSSEC records, and servers that will collect and monetize your -queries. +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). -Adjust the `require_*` options in dnscrypt-proxy to filter that list -according to your needs. +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. -To use that list, add this to the `[sources]` section of your -`dnscrypt-proxy.toml` configuration file: - - [sources.'public-resolvers'] - urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/public-resolvers.md', 'https://download.dnscrypt.info/resolvers-list/v2/public-resolvers.md'] - minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' - cache_file = 'public-resolvers.md' +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. -- - ## a-and-a Non-logging DoH server in the UK operated by Andrews & Arnold Ltd, a @@ -229,33 +219,6 @@ If you are within India, this might be a nice DNS server to use. sdns://AQQAAAAAAAAAEjEzOS41OS40OC4yMjI6NDQzNCAFOt_yxaMpFtga2IpneSwwK6rV0oAyleham9IvhoceEBsyLmRuc2NyeXB0LWNlcnQuY2FwdG5lbW8uaW4 -## cira-family - -CIRA DoH resolvers, blocking trackers, malware, phishing and pornography. -Operated by the .CA registry. Built by Canadians for Canadians. -https://www.cira.ca/fr/cybersecurity-services/canadian-shield - -sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x1mYW1pbHkuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 - - -## cira-private - -CIRA DoH resolvers, blocking trackers. -Operated by the .CA registry. Built by Canadians for Canadians. -https://www.cira.ca/fr/cybersecurity-services/canadian-shield - -sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x5wcml2YXRlLmNhbmFkaWFuc2hpZWxkLmNpcmEuY2EKL2Rucy1xdWVyeQ - - -## cira-protected - -CIRA DoH resolvers, blocking trackers, malware and phishing. -Operated by the .CA registry. Built by Canadians for Canadians. -https://www.cira.ca/fr/cybersecurity-services/canadian-shield - -sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6yBwcm90ZWN0ZWQuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 - - ## cisco Remove your DNS blind spot (DNSCrypt protocol) @@ -1168,7 +1131,6 @@ sdns://AQcAAAAAAAAADTIzLjExMS43NC4yMDUg_0RyX8kcAcMdtRk5SAX5RKs3yiLLS6kdJlnsUpVbn An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in Switzerland. sdns://AQcAAAAAAAAAEzE4NS4xMzQuMTk2LjU0Ojg0NDMgfsvvPi8BgDKNYODh0ewj5Oh32OoJoZNwGgTWs8C-i-EfMi5kbnNjcnlwdC1jZXJ0LnJkbnMuZmFlbGl4Lm5ldA -sdns://AQcAAAAAAAAAEzE4NS4xMzQuMTk2LjU1Ojg0NDMgfsvvPi8BgDKNYODh0ewj5Oh32OoJoZNwGgTWs8C-i-EfMi5kbnNjcnlwdC1jZXJ0LnJkbnMuZmFlbGl4Lm5ldA ## faelix-ch-ipv4-doh @@ -1176,7 +1138,6 @@ sdns://AQcAAAAAAAAAEzE4NS4xMzQuMTk2LjU1Ojg0NDMgfsvvPi8BgDKNYODh0ewj5Oh32OoJoZNwG An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in Switzerland. sdns://AgcAAAAAAAAADjE4NS4xMzQuMTk2LjU0ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4D3JkbnMuZmFlbGl4Lm5ldAEv -sdns://AgcAAAAAAAAADjE4NS4xMzQuMTk2LjU1ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4D3JkbnMuZmFlbGl4Lm5ldAEv ## faelix-ch-ipv6 @@ -1184,7 +1145,6 @@ sdns://AgcAAAAAAAAADjE4NS4xMzQuMTk2LjU1ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aP An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in Switzerland. sdns://AQcAAAAAAAAAFFsyYTAxOjllMDE6OjU0XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ -sdns://AQcAAAAAAAAAFFsyYTAxOjllMDE6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ ## faelix-ch-ipv6-doh @@ -1192,7 +1152,6 @@ sdns://AQcAAAAAAAAAFFsyYTAxOjllMDE6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTc An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in Switzerland. sdns://AgcAAAAAAAAAD1syYTAxOjllMDE6OjU0XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw -sdns://AgcAAAAAAAAAD1syYTAxOjllMDE6OjU1XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw ## faelix-uk-ipv4 @@ -1200,7 +1159,6 @@ sdns://AgcAAAAAAAAAD1syYTAxOjllMDE6OjU1XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2 An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in the UK. sdns://AQcAAAAAAAAAEjQ2LjIyNy4yMDAuNTQ6ODQ0MyB-y-8-LwGAMo1g4OHR7CPk6HfY6gmhk3AaBNazwL6L4R8yLmRuc2NyeXB0LWNlcnQucmRucy5mYWVsaXgubmV0 -sdns://AQcAAAAAAAAAEjQ2LjIyNy4yMDAuNTU6ODQ0MyB-y-8-LwGAMo1g4OHR7CPk6HfY6gmhk3AaBNazwL6L4R8yLmRuc2NyeXB0LWNlcnQucmRucy5mYWVsaXgubmV0 ## faelix-uk-ipv4-doh @@ -1208,7 +1166,6 @@ sdns://AQcAAAAAAAAAEjQ2LjIyNy4yMDAuNTU6ODQ0MyB-y-8-LwGAMo1g4OHR7CPk6HfY6gmhk3AaB An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in the UK. sdns://AgcAAAAAAAAADTQ2LjIyNy4yMDAuNTQgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgPcmRucy5mYWVsaXgubmV0AS8 -sdns://AgcAAAAAAAAADTQ2LjIyNy4yMDAuNTUgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgPcmRucy5mYWVsaXgubmV0AS8 ## faelix-uk-ipv6 @@ -1216,7 +1173,6 @@ sdns://AgcAAAAAAAAADTQ2LjIyNy4yMDAuNTUgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9u An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in the UK. sdns://AQcAAAAAAAAAFFsyYTAxOjllMDA6OjU0XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ -sdns://AQcAAAAAAAAAFFsyYTAxOjllMDA6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ ## faelix-uk-ipv6-doh @@ -1224,7 +1180,6 @@ sdns://AQcAAAAAAAAAFFsyYTAxOjllMDA6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTc An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in the UK. sdns://AgcAAAAAAAAAD1syYTAxOjllMDA6OjU0XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw -sdns://AgcAAAAAAAAAD1syYTAxOjllMDA6OjU1XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw ## ffmuc.net diff --git a/v2/public-resolvers.md.minisig b/v2/public-resolvers.md.minisig index d6391dcf..526ed34c 100644 --- a/v2/public-resolvers.md.minisig +++ b/v2/public-resolvers.md.minisig @@ -1,4 +1,4 @@ untrusted comment: signature from minisign secret key -RWQf6LRCGA9i5xns+QPfUeCV9HCEkmM+CjQvTBPM7ISmZJAdA2ZDVOPxRPy2VqOnPddWtiE7ekmI49d8ntiLGrrBy9IuVxqLugQ= -trusted comment: timestamp:1592768550 file:public-resolvers.md -99UCKErRtunO5cKTn/4MPBC3y6mqilU4jsGuXtGslkrZX4YsneWP5JBOrhFdmFnmJz+CiyomB6FK11j68zUHBg== +RWQf6LRCGA9i5/jimi6I1w+8g5N39DBgjZOD9IFE5YEjQdiIH6vCkEGXi2zdyKHIamz97Yg6ACN8F2TjQnzk8yXkwY0BFWOjMA0= +trusted comment: timestamp:1592770394 file:public-resolvers.md +3n+Rr5ypv/bLJ5gsB4RMvkMrBJwx2s+5uHwVkdorYZX77Tix/BEit3OLFJRVFfiDZ1V21psFkypxzLAjn7gYBg== diff --git a/v2/relays.md b/v2/relays.md index 6aa11e6a..a22915c5 100644 --- a/v2/relays.md +++ b/v2/relays.md @@ -1,16 +1,17 @@ -# Anonymized DNS relays -Anonymized DNS is a lightweight alternative to Tor and SOCKS proxies, -dedicated to DNS traffic. They hide the client IP address to DNS resolvers, -providing anonymity in addition to confidentiality and integrity. +# *** THIS IS A LEGACY LIST *** -DNS Anonymization is only compatible with servers supporting the -DNSCrypt protocol. +This is a temporary, legacy list, for dnscrypt-proxy <= 2.0.42 users. -See the link below for more information: +If you are running up-to-date software, replace `/v2/` with `/v3/` in the sources URLs +of the `dnscrypt-proxy.toml` file (relevant lines start with `urls = ['https://...']` +and are present in the `[sources]` section). -https://github.com/DNSCrypt/dnscrypt-proxy/wiki/Anonymized-DNS +THIS LIST IS AUTOMATICALLY GENERATED AS A SUBSET OF THE V3 LIST. DO NOT EDIT IT MANUALLY. +If you want to contribute changes to a resolvers list, only edit files from the `v3` directory. + +-- ## anon-acsacsar-ams-ipv4 diff --git a/v2/relays.md.minisig b/v2/relays.md.minisig index 627eef6e..e7f23e73 100644 --- a/v2/relays.md.minisig +++ b/v2/relays.md.minisig @@ -1,4 +1,4 @@ untrusted comment: signature from minisign secret key -RWQf6LRCGA9i5xRPX0ZoZco2e8P+Z6xOYuh2izHYYNX0cXaZRSzk0Kh9AsnFgMeDMM4TFTINTothN8SXlzXlZYz3F7Uj6eZnxgY= -trusted comment: timestamp:1592768550 file:relays.md -PvPWr0/XxpFQYGvWBRSp0rSdgjz3RBgpoQ6GOyeVMJk29sws+3eWubY2lcPYKWuXhGobZ7JYWyLavDRHiUtzCg== +RWQf6LRCGA9i50X34qNFuymGIPC5fDWvOxoOECRoXFft7NKAC8/GFszNQ7mKkdPKBITagiaeNBHKg0RY8aAIENTpES4sFvCnjQc= +trusted comment: timestamp:1592770394 file:relays.md +oeVi90JrSzrNrLsrFrCWZYtnTNggL3YRi3bcI6JHo/fJ1y+IxQFUaZT/gO+6ecusLdeKi9U4Ob697gcZt47rAQ== diff --git a/v2/minisign.pub b/v3/minisign.pub similarity index 100% rename from v2/minisign.pub rename to v3/minisign.pub diff --git a/v3/onion-services.md b/v3/onion-services.md new file mode 100644 index 00000000..0cc1b0fc --- /dev/null +++ b/v3/onion-services.md @@ -0,0 +1,27 @@ +# DNS servers as .onion services + +All DNSCrypt and DoH servers are accessible over Tor, via exit nodes. +This is safe as all the transactions are encrypted and authenticated. + +However, it may be faster to directly access a server as an onion +service. This requires specifically configured servers. + +The servers below are not accessible without Tor. + +To use that list, add this to the `[sources]` section of your +`dnscrypt-proxy.toml` configuration file: + + [sources.'onion-services'] + urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/onion-services.md', 'https://download.dnscrypt.info/resolvers-list/v2/onion-services.md'] + minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' + cache_file = 'onion-services.md' + +-- + + +## onion-cloudflare + +Cloudflare Onion Service + +sdns://AgcAAAAAAAAAACC0WWFtenR5met-s8i0oiShMtYstulWSybPBq-zBUEMNT5kbnM0dG9ycG5sZnMyaWZ1ejJzMnlmM2ZjN3JkbXNiaG02cnc3NWV1ajM1cGFjNmFwMjV6Z3FhZC5vbmlvbgovZG5zLXF1ZXJ5 + diff --git a/v3/onion-services.md.minisig b/v3/onion-services.md.minisig new file mode 100644 index 00000000..fd65b17e --- /dev/null +++ b/v3/onion-services.md.minisig @@ -0,0 +1,4 @@ +untrusted comment: signature from minisign secret key +RWQf6LRCGA9i50FioNSlB3OYxNCJYpIr/frciztqTvWHAa1uUmTN2l9F8ZKIa9kM5ixZTxmX1hlpCw229H5qLqq1ANo/HuwqiQ8= +trusted comment: timestamp:1592768550 file:onion-services.md +HBUYH0qcRW3K4oEW/KIine/GrKkcy2S6Xfq9Pb/VzRqXEWo0CujaQ5tGpTKTsycAaHka6CoosGUzmOs54On4CA== diff --git a/v3/opennic.md b/v3/opennic.md new file mode 100644 index 00000000..74b320c1 --- /dev/null +++ b/v3/opennic.md @@ -0,0 +1,132 @@ +# opennic + +Resolvers from the [OpenNIC](https://www.opennic.org/) project. + +To use that list, add this to the `[sources]` section of your +`dnscrypt-proxy.toml` configuration file: + + [sources.'opennic'] + urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/opennic.md', 'https://download.dnscrypt.info/resolvers-list/v2/opennic.md'] + minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' + cache_file = 'opennic.md' + +-- + + +## doh-ibksturm + +doh-server (nginx - doh-httpproxy - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland on by ibksturm, aka Andreas Ziegler + +sdns://AgcAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBRpYmtzdHVybS5zeW5vbG9neS5tZQovZG5zLXF1ZXJ5 + + +## ibksturm + +dnscrypt-server (nginx - encrypted-dns - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland by ibksturm, aka Andreas Ziegler + +sdns://AQcAAAAAAAAAEDg1LjUuOTMuMjMwOjg0NDMgwc9XUACwW8JsYh9ez5qiVgrOvwB-vss6f_SyDeC0Oe4YMi5kbnNjcnlwdC1jZXJ0Lmlia3N0dXJt + + +## ibksturm-ipv6 + +dnscrypt-server (nginx - encrypted-dns - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland by ibksturm, aka Andreas Ziegler + +sdns://AQcAAAAAAAAALlsyYTAyOjEyMDU6NTA1NTpkZTYwOmIyNmU6YmZmZjpmZTFkOmUxOWJdOjg0NDMgwc9XUACwW8JsYh9ez5qiVgrOvwB-vss6f_SyDeC0Oe4YMi5kbnNjcnlwdC1jZXJ0Lmlia3N0dXJt + + +## opennic-R4SAS + +DNSSEC - OpenNIC - Non-logging - Uncensored - hosted on ovh.com +Location: Gravelines, France. +Maintained by R4SAS. + +sdns://AQcAAAAAAAAAETE1MS44MC4yMjIuNzk6NDQzIKnWMjpPJYAJJhl1FQLOIx4fdtned2yHxruyig7_2w5OIDIuZG5zY3J5cHQtY2VydC5vcGVubmljLmkycGQueHl6 + + +## opennic-R4SAS-ipv6 + +DNSSEC - OpenNIC - Non-logging - Uncensored - hosted on ovh.com +Location: Gravelines, France. +Maintained by R4SAS. + +sdns://AQcAAAAAAAAAG1syMDAxOjQ3MDoxZjE1OmI4MDo6NTNdOjQ0MyCp1jI6TyWACSYZdRUCziMeH3bZ3ndsh8a7sooO_9sOTiAyLmRuc2NyeXB0LWNlcnQub3Blbm5pYy5pMnBkLnh5eg + + +## opennic-bongobow + +OpenNIC • Non-logging • No DNSSEC +Location: Munich, Germany + +sdns://AQYAAAAAAAAAETUuMTg5LjE3MC4xOTY6NDY1IFQ1LFVAO4Luk8QH_cI0RJcNmlbvIr_P-eyQnM0yJDJrKDIuZG5zY3J5cHQtY2VydC5uczE2LmRlLmRucy5vcGVubmljLmdsdWU + + +## opennic-luggs + +Public DNS server in Canada operated by Luggs + +sdns://AQYAAAAAAAAADTE0Mi40LjIwNC4xMTEgHBl5MxvoI8zPCJp5BpN-XDQQKlasf2Jw4EYlsu3bBOMfMi5kbnNjcnlwdC1jZXJ0Lm5zMy5jYS5sdWdncy5jbw + + +## opennic-luggs-ipv6 + +Public DNS server in Canada operated by Luggs (IPv6) + +sdns://AQYAAAAAAAAAIVsyNjA3OjUzMDA6MTIwOmE4YToxNDI6NDoyMDQ6MTExXSAcGXkzG-gjzM8ImnkGk35cNBAqVqx_YnDgRiWy7dsE4x8yLmRuc2NyeXB0LWNlcnQubnMzLmNhLmx1Z2dzLmNv + + +## opennic-luggs2 + +Second public DNS server in Canada operated by Luggs + +sdns://AQYAAAAAAAAAEDE0Mi40LjIwNS40Nzo0NDMgvL-34FDBPaJCLACwsaya1kjFwmS8thcLiD1xishuugkfMi5kbnNjcnlwdC1jZXJ0Lm5zNC5jYS5sdWdncy5jbw + + +## opennic-luggs2-ipv6 + +Second public DNS server in Canada operated by Luggs (IPv6) + +sdns://AQYAAAAAAAAAJFsyNjA3OjUzMDA6MTIwOmE4YToxNDI6NDoyMDU6NDddOjQ0MyC8v7fgUME9okIsALCxrJrWSMXCZLy2FwuIPXGKyG66CR8yLmRuc2NyeXB0LWNlcnQubnM0LmNhLmx1Z2dzLmNv + + +## opennic-rico4514 + +OpenNIC • Non-logging • No DNSSEC +Location: Texas, 13, MX + +sdns://AQYAAAAAAAAAETE0Mi40LjIwNC4xMTE6NDQzIBwZeTMb6CPMzwiaeQaTflw0ECpWrH9icOBGJbLt2wTjHzIuZG5zY3J5cHQtY2VydC5uczMuY2EubHVnZ3MuY28 + + +## publicarray-au + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on vultr.com +Maintained by publicarray - https://dns.seby.io + +sdns://AQcAAAAAAAAADDQ1Ljc2LjExMy4zMSAIVGh4i6eKXqlF6o9Fg92cgD2WcDvKQJ7v_Wq4XrQsVhsyLmRuc2NyeXB0LWNlcnQuZG5zLnNlYnkuaW8 + + +## publicarray-au-doh + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on vultr.com +Maintained by publicarray - https://dns.seby.io + +sdns://AgcAAAAAAAAADDQ1Ljc2LjExMy4zMSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBBkb2guc2VieS5pbzo4NDQzCi9kbnMtcXVlcnk + + +## publicarray-au2 + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on ovh.com.au +Maintained by publicarray - https://dns.seby.io + +sdns://AQcAAAAAAAAADTEzOS45OS4yMjIuNzIgCwVoTw0L4dgal5LC1FbZUtHtLR_rVuV6rVnxO95e4GUbMi5kbnNjcnlwdC1jZXJ0LmRucy5zZWJ5Lmlv + + +## publicarray-au2-doh + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on ovh.com.au +Maintained by publicarray - https://dns.seby.io + +sdns://AgcAAAAAAAAADTEzOS45OS4yMjIuNzIgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgRZG9oLTIuc2VieS5pbzo0NDMKL2Rucy1xdWVyeQ + diff --git a/v3/opennic.md.minisig b/v3/opennic.md.minisig new file mode 100644 index 00000000..3017e3f0 --- /dev/null +++ b/v3/opennic.md.minisig @@ -0,0 +1,4 @@ +untrusted comment: signature from minisign secret key +RWQf6LRCGA9i5xLlTeDptDCf4Rn19jfvqA0kf9If+sWoZqZYYy/S99/AVhJKv3W88vbWfBxBBenCdHcwUYltJNIYwd7/trLZeg8= +trusted comment: timestamp:1592768550 file:opennic.md +C/L7YOhWIRsoXM8OJIy6do58yJu/V4w949fAUpDxcWrp5i38gVXY7YBgDP4EXdOuTrzPN6+0KECgMiiatUVFAQ== diff --git a/v3/parental-control.md b/v3/parental-control.md new file mode 100644 index 00000000..6c791551 --- /dev/null +++ b/v3/parental-control.md @@ -0,0 +1,155 @@ +# parental-control + +A set of resolvers blocking popular websites that may not be appropriate +for children. + +This is not bulletproof. In particular, websites in languages that are +not English will require additional, local rules. + +To use that list, add this to the `[sources]` section of your +`dnscrypt-proxy.toml` configuration file: + + [sources.'parental-control'] + urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/parental-control.md', 'https://download.dnscrypt.info/resolvers-list/v2/parental-control.md'] + minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' + cache_file = 'parental-control.md' + +In order to enforce safe search results from Google and Youtube, you may +also want to enable cloaking (`cloaking_rules` in the configuration file). + +-- + + +## adguard-dns-family + +Adguard DNS with safesearch and adult content blocking + +sdns://AQIAAAAAAAAAFDE3Ni4xMDMuMTMwLjEzMjo1NDQzILgxXdexS27jIKRw3C7Wsao5jMnlhvhdRUXWuMm1AFq6ITIuZG5zY3J5cHQuZmFtaWx5Lm5zMS5hZGd1YXJkLmNvbQ + + +## cira-family + +CIRA DoH resolvers, blocking trackers, malware, phishing and pornography. +Operated by the .CA registry. Built by Canadians for Canadians. +https://www.cira.ca/fr/cybersecurity-services/canadian-shield + +sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x1mYW1pbHkuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 + + +## cisco-familyshield + +Block websites not suitable for children (DNSCrypt protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +Currently incompatible with DNS anonymization. + +sdns://AQEAAAAAAAAADjIwOC42Ny4yMjAuMTIzILc1EUAgbyJdPivYItf9aR6hwzzI1maNDL4Ev6vKQ_t5GzIuZG5zY3J5cHQtY2VydC5vcGVuZG5zLmNvbQ + + +## cisco-familyshield-ipv6 + +Block websites not suitable for children (IPv6) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +sdns://AgAAAAAAAAAADDE0Ni4xMTIuNDEuMyBUDrXp92r0ml9Aq9cu3mXf2w_ugmc61w74ZllxOxR-Vxxkb2guZmFtaWx5c2hpZWxkLm9wZW5kbnMuY29tCi9kbnMtcXVlcnk + + +## cleanbrowsing-adult + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAEzE4NS4yMjguMTY4LjEwOjg0NDMgvKwy-tVDaRcfCDLWB1AnwyCM7vDo6Z-UGNx3YGXUjykRY2xlYW5icm93c2luZy5vcmc + + +## cleanbrowsing-adult-ipv6 + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFVsyYTBkOjJhMDA6MTo6MV06ODQ0MyC8rDL61UNpFx8IMtYHUCfDIIzu8Ojpn5QY3HdgZdSPKRFjbGVhbmJyb3dzaW5nLm9yZw + + +## cleanbrowsing-family + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFDE4NS4yMjguMTY4LjE2ODo4NDQzILysMvrVQ2kXHwgy1gdQJ8MgjO7w6OmflBjcd2Bl1I8pEWNsZWFuYnJvd3Npbmcub3Jn + + +## cleanbrowsing-family-ipv6 + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFFsyYTBkOjJhMDA6MTo6XTo4NDQzILysMvrVQ2kXHwgy1gdQJ8MgjO7w6OmflBjcd2Bl1I8pEWNsZWFuYnJvd3Npbmcub3Jn + + +## cloudflare-family + +Cloudflare DNS (anycast) with malware protection and parental control + +sdns://AgMAAAAAAAAABzEuMC4wLjMAGWZhbWlseS5jbG91ZGZsYXJlLWRucy5jb20KL2Rucy1xdWVyeQ + + +## dnsforfamily + +Block adult websites, porn websites, gambling websites and advertisements. +No DNS queries are logged. As of March 2019 2.1million websites are blocked and new websites are added to blacklist daily +Completely free, no ads or any commercial motive. + +Provided by: https://dnsforfamily.com + +sdns://AQIAAAAAAAAADDc4LjQ3LjY0LjE2MSATJeLOABXNSYcSJIoqR5_iUYz87Y4OecMLB84aEAKPrRBkbnNmb3JmYW1pbHkuY29t + + +## doh-cleanbrowsing-adult + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AgMAAAAAAAAAAAAVZG9oLmNsZWFuYnJvd3Npbmcub3JnEi9kb2gvYWR1bHQtZmlsdGVyLw + + +## doh-cleanbrowsing-family + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AgMAAAAAAAAAAAAVZG9oLmNsZWFuYnJvd3Npbmcub3JnEy9kb2gvZmFtaWx5LWZpbHRlci8 + + +## sfw.scaleway-fr + +Uses deep learning to block adult websites. Free, DNSSEC, no logs. +Hosted in Paris, running on a 1-XS server donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info/sfw.html + +sdns://AQMAAAAAAAAAEzE2My4xNzIuMTgwLjEyNTo0NDMg32Jzv8dSGSqLWjm8DIWsP_lkRdc2RPZicoJdNVjxof8fMi5kbnNjcnlwdC1jZXJ0LnNmdy5zY2FsZXdheS1mcg + diff --git a/v3/parental-control.md.minisig b/v3/parental-control.md.minisig new file mode 100644 index 00000000..ec776162 --- /dev/null +++ b/v3/parental-control.md.minisig @@ -0,0 +1,4 @@ +untrusted comment: signature from minisign secret key +RWQf6LRCGA9i52UtToPgih/Ec5ZpmGwlleDewldnQWpKX1wAwcJJd4RCcqZL72JpXNlflkjN6OrERCjQnxd8P2vghKeoZ3F/aAE= +trusted comment: timestamp:1592768550 file:parental-control.md +vs4JvoxoGPflyulBoegAZMJNr2+hYcQcYFLEEdkQKczcc+YlR+Odee75JQPDOF94tJI/KgTM00XjUijhC5v3DQ== diff --git a/v3/public-resolvers.md b/v3/public-resolvers.md new file mode 100644 index 00000000..70dc812a --- /dev/null +++ b/v3/public-resolvers.md @@ -0,0 +1,1863 @@ +# public-resolvers + +This is an extensive list of public DNS resolvers supporting the +DNSCrypt and DNS-over-HTTP2 protocols. + +This list is maintained by Frank Denis + +Warning: it includes servers that may censor content, servers that don't +verify DNSSEC records, and servers that will collect and monetize your +queries. + +Adjust the `require_*` options in dnscrypt-proxy to filter that list +according to your needs. + +To use that list, add this to the `[sources]` section of your +`dnscrypt-proxy.toml` configuration file: + + [sources.'public-resolvers'] + urls = ['https://raw.githubusercontent.com/DNSCrypt/dnscrypt-resolvers/master/v2/public-resolvers.md', 'https://download.dnscrypt.info/resolvers-list/v2/public-resolvers.md'] + minisign_key = 'RWQf6LRCGA9i53mlYecO4IzT51TGPpvWucNSCh1CBM0QTaLn73Y7GFO3' + cache_file = 'public-resolvers.md' + +-- + + +## a-and-a + +Non-logging DoH server in the UK operated by Andrews & Arnold Ltd, a +company providing Internet connectivity and VoIP in the UK. + +https://www.aa.net.uk/legal/dohdot-disclaimer/ + +sdns://AgcAAAAAAAAADTIxNy4xNjkuMjAuMjMgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgNZG5zLmFhLm5ldC51awovZG5zLXF1ZXJ5 + + +## aaflalo-me-gcp + +Same as aaflalo-me-nyc. Use aaflalo-me-nyc. + +Kept for backward compatibility with people using this server. + +https://www.aaflalo.me/2019/01/dns-over-https-server-aaflalo-me/ + +sdns://AgMAAAAAAAAADjE2OC4yMzUuODEuMTY3ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4EmRucy1ueWMuYWFmbGFsby5tZQovZG5zLXF1ZXJ5 + + +## aaflalo-me-nyc + +DNS-over-HTTPS server running dns-over-https with PiHole for Adblocking in NYC, USA. + +Non-logging, AD-filtering, supports DNSSEC. +Hosted in New York on a RamNode Cloud Instance. + +https://www.aaflalo.me/2019/01/dns-over-https-server-aaflalo-me/ + +sdns://AgMAAAAAAAAADjE2OC4yMzUuODEuMTY3ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4EmRucy1ueWMuYWFmbGFsby5tZQovZG5zLXF1ZXJ5 + + +## abmb-sg-doh-ipv4 + +Non-logging and Non-filtering DoH server. Support DNSSEC. Both IPv4 & IPv6. + +Hosted in Singapore. + +sdns://AgcAAAAAAAAACTMuMC41OS40OAAMZG9oLmFibWIud2luCi9kbnMtcXVlcnk + + +## abmb-sg-doh-ipv6 + +Non-logging and Non-filtering DoH server. Support DNSSEC. Both IPv4 & IPv6. + +Hosted in Singapore. + +sdns://AgcAAAAAAAAALFsyNDA2OmRhMTg6OTUxOjg1ODY6YWNmZTo1ODQ5OmI0NmM6N2VlMl06NDQzAAxkb2guYWJtYi53aW4KL2Rucy1xdWVyeQ + + +## abmb-sg2-doh-ipv4 + +Non-logging and Non-filtering DoH server. Support DNSSEC. Both IPv4 & IPv6. + +Hosted in Singapore. + +sdns://AgcAAAAAAAAADjU0LjE2OS4xMDMuMjQ0AA1kb2gyLmFibWIud2luCi9kbnMtcXVlcnk + + +## abmb-sg2-doh-ipv6 + +Non-logging and Non-filtering DoH server. Support DNSSEC. Both IPv4 & IPv6. + +Hosted in Singapore. + +sdns://AgcAAAAAAAAAJlsyNDA2OmRhMTg6OTUxOjg1ODY6Y2E2NDo2ZDVhOjFiOmYzY2VdAA1kb2gyLmFibWIud2luCi9kbnMtcXVlcnk + + +## acsacsar-ams-ipv4 + +Public non-censoring, non-logging, DNSSEC-capable, DNSCrypt-enabled DNS resolver hosted on Scaleway by @acsacsar (twitter) + +sdns://AQcAAAAAAAAAETUxLjE1OC4xNjYuOTc6NDQzIAMn88-SfplfRvsjgeB8HHZO8l9dhELOSL2u5Fd6BrZRIDIuZG5zY3J5cHQtY2VydC5hY3NhY3Nhci1hbXMuY29t + + +## acsacsar-ams-ipv6 + +Public non-censoring, non-logging, DNSSEC-capable, DNSCrypt-enabled DNS resolver hosted on Scaleway by @acsacsar (twitter) + +sdns://AQcAAAAAAAAAGlsyMDAxOmJjODoxODI0OjczODo6MV06NDQzIAMn88-SfplfRvsjgeB8HHZO8l9dhELOSL2u5Fd6BrZRIDIuZG5zY3J5cHQtY2VydC5hY3NhY3Nhci1hbXMuY29t + + +## adfree.usableprivacy.net + +Public non-logging DoH server with advertising and tracker filtering. + +Hosted in Austria/Europe, details see: [docs.usableprivacy.com](https://docs.usableprivacy.com) + +sdns://AgMAAAAAAAAADzE0OS4xNTQuMTUzLjE1MyA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBhhZGZyZWUudXNhYmxlcHJpdmFjeS5uZXQKL2Rucy1xdWVyeQ + + +## adguard-dns + +Remove ads and protect your computer from malware + +sdns://AQIAAAAAAAAAFDE3Ni4xMDMuMTMwLjEzMDo1NDQzINErR_JS3PLCu_iZEIbq95zkSV2LFsigxDIuUso_OQhzIjIuZG5zY3J5cHQuZGVmYXVsdC5uczEuYWRndWFyZC5jb20 + + +## adguard-dns-doh + +Remove ads and protect your computer from malware (over DoH) + +sdns://AgMAAAAAAAAADzE3Ni4xMDMuMTMwLjEzMCD5_zfwLmMstzhwJcB-V5CKPTcbfJXYzdA5DeIx7ZQ6Eg9kbnMuYWRndWFyZC5jb20KL2Rucy1xdWVyeQ + + +## adguard-dns-family + +Adguard DNS with safesearch and adult content blocking + +sdns://AQIAAAAAAAAAFDE3Ni4xMDMuMTMwLjEzMjo1NDQzILgxXdexS27jIKRw3C7Wsao5jMnlhvhdRUXWuMm1AFq6ITIuZG5zY3J5cHQuZmFtaWx5Lm5zMS5hZGd1YXJkLmNvbQ + + +## adguard-dns-family-doh + +Adguard DNS with safesearch and adult content blocking (over DoH) + +sdns://AgMAAAAAAAAADzE3Ni4xMDMuMTMwLjEzMiD5_zfwLmMstzhwJcB-V5CKPTcbfJXYzdA5DeIx7ZQ6EhZkbnMtZmFtaWx5LmFkZ3VhcmQuY29tCi9kbnMtcXVlcnk + + +## adguard-dns-family-ipv6 + +Adguard DNS with safesearch and adult content blocking + +sdns://AQMAAAAAAAAAGlsyYTAwOjVhNjA6OmJhZDI6MGZmXTo1NDQzIIwhF6nrwVfW-2QFbwrbwRxdg2c0c8RuJY2bL1fU7jUfITIuZG5zY3J5cHQuZmFtaWx5Lm5zMi5hZGd1YXJkLmNvbQ + + +## adguard-dns-ipv6 + +Remove ads and protect your computer from malware + +sdns://AQMAAAAAAAAAGVsyYTAwOjVhNjA6OmFkMjowZmZdOjU0NDMggdAC02pMpQxHO3R5ZQ_hLgKzIcthOFYqII5APf3FXpQiMi5kbnNjcnlwdC5kZWZhdWx0Lm5zMi5hZGd1YXJkLmNvbQ + + +## alidns-doh + +A public DNS resolver that supports DoH/DoT in mainland China, provided by Alibaba-Cloud. + +Warning: GFW filtering rules are applied by that resolver. + +Homepage: https://alidns.com/ + +sdns://AgAAAAAAAAAACTIyMy41LjUuNSCoF6cUD2dwqtorNi96I2e3nkHPSJH1ka3xbdOglmOVkQ5kbnMuYWxpZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## ams-dnscrypt-nl + +Resolver in Amsterdam. DNSCrypt protocol. Non-logging, non-filtering, DNSSEC. +Forward DNS to anoymized DNS servers. + +sdns://AQcAAAAAAAAAEjUxLjE1LjEyNC4yMDg6NDM0MyC8E4j1dj497HXxyQ_JFb-2iurf6xxF9phRgGOcYOfxYh8yLmRuc2NyeXB0LWNlcnQuYW1zLWRuc2NyeXB0LW5s + + +## ams-doh-nl + +Resolver in Amsterdam. DoH protocol. Non-logging, non-filtering, DNSSEC. +Forward DNS to anoymized DNS servers. + +sdns://AgcAAAAAAAAAETUxLjE1LjEyNC4yMDg6NDQzABZkbnNubC5hbGVrYmVyZy5uZXQ6NDQzCi9kbnMtcXVlcnk + + +## arvind-io + +Public resolver by EnKrypt (https://arvind.io). +Hosted in Bangalore, India. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AQcAAAAAAAAAFDIwNi4xODkuMTQyLjE3OTo1MzUzII5GJ8c4g6hRAwghulrn5dBB9KrvlbeCkBbLZR2HwyjJGTIuZG5zY3J5cHQtY2VydC5hcnZpbmQuaW8 + + +## att + +AT&T test DoH server. + +sdns://AgQAAAAAAAAAAKBLTrSwdCmLgotcADCVoQtFI_uVHAyINIsJxT5bq6QIoyD2Hldod9qWUClMzLX5bHX8txvaG7xGRjZ8Tr7aidcxjxBkb2h0cmlhbC5hdHQubmV0Ci9kbnMtcXVlcnk + + +## brahma-world + +DNS-over-HTTPS / DNS over TLS server with PiHole. Filters ads, trackers and malware. + +Hosted in Nuremberg, Germany. (https://dns.brahma.world) + +sdns://AgMAAAAAAAAADjk0LjEzMC4yMjQuMTE0ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4EGRucy5icmFobWEud29ybGQKL2Rucy1xdWVyeQ + + +## brahma-world-ipv6 + +DNS-over-HTTPS / DNS over TLS server with PiHole. Filters ads, trackers and malware. + +Hosted in Nuremberg, Germany. (https://dns.brahma.world) + +sdns://AgMAAAAAAAAAFlsyYTAxOjRmODpjMGM6OTI1NTo6MV0gPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgQZG5zLmJyYWhtYS53b3JsZAovZG5zLXF1ZXJ5 + + +## captnemo-in + +Server running out of a Digital Ocean droplet in BLR1 region. +Maintained by Abhay Rana aka Nemo. + +If you are within India, this might be a nice DNS server to use. + +sdns://AQQAAAAAAAAAEjEzOS41OS40OC4yMjI6NDQzNCAFOt_yxaMpFtga2IpneSwwK6rV0oAyleham9IvhoceEBsyLmRuc2NyeXB0LWNlcnQuY2FwdG5lbW8uaW4 + + +## cira-family + +CIRA DoH resolvers, blocking trackers, malware, phishing and pornography. +Operated by the .CA registry. Built by Canadians for Canadians. +https://www.cira.ca/fr/cybersecurity-services/canadian-shield + +sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x1mYW1pbHkuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 + + +## cira-private + +CIRA DoH resolvers, blocking trackers. +Operated by the .CA registry. Built by Canadians for Canadians. +https://www.cira.ca/fr/cybersecurity-services/canadian-shield + +sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6x5wcml2YXRlLmNhbmFkaWFuc2hpZWxkLmNpcmEuY2EKL2Rucy1xdWVyeQ + + +## cira-protected + +CIRA DoH resolvers, blocking trackers, malware and phishing. +Operated by the .CA registry. Built by Canadians for Canadians. +https://www.cira.ca/fr/cybersecurity-services/canadian-shield + +sdns://AgEAAAAAAAAAACA_4zhjTgUQYz3kU8o1CxXOwzmz3Li6nyot0k0QqDj-6yBwcm90ZWN0ZWQuY2FuYWRpYW5zaGllbGQuY2lyYS5jYQovZG5zLXF1ZXJ5 + + +## cisco + +Remove your DNS blind spot (DNSCrypt protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +Currently incompatible with DNS anonymization. + +sdns://AQEAAAAAAAAADjIwOC42Ny4yMjAuMjIwILc1EUAgbyJdPivYItf9aR6hwzzI1maNDL4Ev6vKQ_t5GzIuZG5zY3J5cHQtY2VydC5vcGVuZG5zLmNvbQ + + +## cisco-doh + +Remove your DNS blind spot (DoH protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +sdns://AgAAAAAAAAAADDE0Ni4xMTIuNDEuMiBoU4_HgY6B0kIqkGBjb6UoKkP2Dc4bumDC1_Orq2YAlw9kb2gub3BlbmRucy5jb20KL2Rucy1xdWVyeQ + + +## cisco-familyshield + +Block websites not suitable for children (DNSCrypt protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +Currently incompatible with DNS anonymization. + +sdns://AQEAAAAAAAAADjIwOC42Ny4yMjAuMTIzILc1EUAgbyJdPivYItf9aR6hwzzI1maNDL4Ev6vKQ_t5GzIuZG5zY3J5cHQtY2VydC5vcGVuZG5zLmNvbQ + + +## cisco-familyshield-ipv6 + +Block websites not suitable for children (IPv6) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +sdns://AQEAAAAAAAAAEVsyNjIwOjExOTozNTo6MzVdILc1EUAgbyJdPivYItf9aR6hwzzI1maNDL4Ev6vKQ_t5GzIuZG5zY3J5cHQtY2VydC5vcGVuZG5zLmNvbQ + + +## cisco-ipv6 + +Cisco OpenDNS over IPv6 (DNSCrypt protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +Currently incompatible with DNS anonymization. + +sdns://AQEAAAAAAAAAD1syNjIwOjA6Y2NjOjoyXSC3NRFAIG8iXT4r2CLX_WkeocM8yNZmjQy-BL-rykP7eRsyLmRuc2NyeXB0LWNlcnQub3BlbmRucy5jb20 + + +## cisco-ipv6-doh + +Cisco OpenDNS over IPv6 (DoH protocol) + +Warning: modifies your queries to include a copy of your network +address when forwarding them to a selection of companies and organizations. + +sdns://AgAAAAAAAAAAEFsyNjIwOjExOTpmYzo6Ml0gaFOPx4GOgdJCKpBgY2-lKCpD9g3OG7pgwtfzq6tmAJcPZG9oLm9wZW5kbnMuY29tCi9kbnMtcXVlcnk + + +## cleanbrowsing-adult + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAEzE4NS4yMjguMTY4LjEwOjg0NDMgvKwy-tVDaRcfCDLWB1AnwyCM7vDo6Z-UGNx3YGXUjykRY2xlYW5icm93c2luZy5vcmc + + +## cleanbrowsing-adult-ipv6 + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFVsyYTBkOjJhMDA6MTo6MV06ODQ0MyC8rDL61UNpFx8IMtYHUCfDIIzu8Ojpn5QY3HdgZdSPKRFjbGVhbmJyb3dzaW5nLm9yZw + + +## cleanbrowsing-family + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFDE4NS4yMjguMTY4LjE2ODo4NDQzILysMvrVQ2kXHwgy1gdQJ8MgjO7w6OmflBjcd2Bl1I8pEWNsZWFuYnJvd3Npbmcub3Jn + + +## cleanbrowsing-family-ipv6 + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAFFsyYTBkOjJhMDA6MTo6XTo4NDQzILysMvrVQ2kXHwgy1gdQJ8MgjO7w6OmflBjcd2Bl1I8pEWNsZWFuYnJvd3Npbmcub3Jn + + +## cleanbrowsing-security + +Block access to phishing, malware and malicious domains. It does not block adult content. +By https://cleanbrowsing.org/ + +sdns://AQMAAAAAAAAAEjE4NS4yMjguMTY4Ljk6ODQ0MyC8rDL61UNpFx8IMtYHUCfDIIzu8Ojpn5QY3HdgZdSPKRFjbGVhbmJyb3dzaW5nLm9yZw + + +## cloudflare + +Cloudflare DNS (anycast) - aka 1.1.1.1 / 1.0.0.1 + +sdns://AgcAAAAAAAAABzEuMC4wLjEAEmRucy5jbG91ZGZsYXJlLmNvbQovZG5zLXF1ZXJ5 + + +## cloudflare-family + +Cloudflare DNS (anycast) with malware protection and parental control + +sdns://AgMAAAAAAAAABzEuMC4wLjMAGWZhbWlseS5jbG91ZGZsYXJlLWRucy5jb20KL2Rucy1xdWVyeQ + + +## cloudflare-ipv6 + +Cloudflare DNS over IPv6 (anycast) + +sdns://AgcAAAAAAAAAGVsyNjA2OjQ3MDA6NDcwMDo6MTExMV06NTMAEmRucy5jbG91ZGZsYXJlLmNvbQovZG5zLXF1ZXJ5 + + +## cloudflare-security + +Cloudflare DNS (anycast) with malware blocking + +sdns://AgMAAAAAAAAABzEuMC4wLjIAG3NlY3VyaXR5LmNsb3VkZmxhcmUtZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## cloudflare-security-ipv6 + +Cloudflare DNS over IPv6 (anycast) with malware blocking + +sdns://AgMAAAAAAAAAGlsyNjA2OjQ3MDA6NDcwMDo6MTExMl06NDQzABtzZWN1cml0eS5jbG91ZGZsYXJlLWRucy5jb20KL2Rucy1xdWVyeQ + + +## commons-host + +DoH server by the Commons Host CDN + +sdns://AgUAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OAxjb21tb25zLmhvc3QKL2Rucy1xdWVyeQ + + +## comodo-02 + +Comodo Dome Shield (anycast) - https://cdome.comodo.com/shield/ + +sdns://AQUAAAAAAAAACjguMjAuMjQ3LjIg0sJUqpYcHsoXmZb1X7yAHwg2xyN5q1J-zaiGG-Dgs7AoMi5kbnNjcnlwdC1jZXJ0LnNoaWVsZC0yLmRuc2J5Y29tb2RvLmNvbQ + + +## containerpi + +Non-logging, non-filtering, DNSSEC validating server, EDNS Client Subnet enabled. +Multiple nodes in China Mainland, Japan and Germany. +Maintained by CPI-tech-Group + +sdns://AgMAAAAAAAAADDQ1Ljc3LjE4MC4xMCBsA2QQ3lR1Nl9Ygfr8FdBIpL-doxmHECRx3T5NIXYYtxNkbnMuY29udGFpbmVycGkuY29tCi9kbnMtcXVlcnk + + +## containerpi-ipv6 + +Non-logging, non-filtering, DNSSEC validating server, EDNS Client Subnet enabled. +Multiple nodes in China Mainland, Japan and Germany. +Maintained by CPI-tech-Group + +sdns://AgMAAAAAAAAALVsyMDAxOjE5ZjA6NzAwMTo1NTU0OjU0MDA6MDJmZjpmZTU3OjMwNzddOjQ0MyBsA2QQ3lR1Nl9Ygfr8FdBIpL-doxmHECRx3T5NIXYYtxNkbnMuY29udGFpbmVycGkuY29tCi9kbnMtcXVlcnk + + +## cs-ca + +Canada DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADzE2Mi4yMjEuMjA3LjIyOCAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-ca2 + +Secondary Canada DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADjE2Ny4xMTQuODQuMTMyIDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-ch + +Switzerland DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAACzgxLjE3LjMxLjM0IDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-de + +Germany DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADDg0LjE2LjI0MC40MyAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-fi + +Finland DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADjE4NS4xMTcuMTE4LjIwIDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-fr + +France DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADTIxMi4xMjkuNDYuMzIgMTNyrVlWMsJBa4cvCY-FG925ZShMbL6aTxkJZDDbqVoeMi5kbnNjcnlwdC1jZXJ0LmNyeXB0b3N0b3JtLmlz + + +## cs-it + +Italy DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADjE4NS45NC4xOTMuMjM0IDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-lv + +Latvia DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADzEwOS4yNDguMTQ5LjEzMyAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-nl2 + +Secondary Netherlands DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADTE4NS4xMDcuODAuODQgMTNyrVlWMsJBa4cvCY-FG925ZShMbL6aTxkJZDDbqVoeMi5kbnNjcnlwdC1jZXJ0LmNyeXB0b3N0b3JtLmlz + + +## cs-ro + +Romania DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADDUuMjU0Ljk2LjE5NSAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-swe + +Sweden DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADzEyOC4xMjcuMTA0LjEwOCAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-usca + +US - CA DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADDIzLjE5LjY3LjExNiAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cs-usga + +US - GA DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADTY0LjQyLjE4MS4yMjcgMTNyrVlWMsJBa4cvCY-FG925ZShMbL6aTxkJZDDbqVoeMi5kbnNjcnlwdC1jZXJ0LmNyeXB0b3N0b3JtLmlz + + +## cs-usil + +US - IL DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADjE3My4yMzQuNTYuMTE1IDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-usnc + +US - NC DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADjE1NS4yNTQuMjkuMTEzIDEzcq1ZVjLCQWuHLwmPhRvduWUoTGy-mk8ZCWQw26laHjIuZG5zY3J5cHQtY2VydC5jcnlwdG9zdG9ybS5pcw + + +## cs-usor + +US - OR DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADTEwNC4yNTUuMTc1LjIgMTNyrVlWMsJBa4cvCY-FG925ZShMbL6aTxkJZDDbqVoeMi5kbnNjcnlwdC1jZXJ0LmNyeXB0b3N0b3JtLmlz + + +## cs-ustx + +US - TX DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADTIwOS41OC4xNDcuMzYgMTNyrVlWMsJBa4cvCY-FG925ZShMbL6aTxkJZDDbqVoeMi5kbnNjcnlwdC1jZXJ0LmNyeXB0b3N0b3JtLmlz + + +## cs-uswa + +US - WA DNSCrypt server provided by https://cryptostorm.is/ + +sdns://AQIAAAAAAAAADDY0LjEyMC41LjI1MSAxM3KtWVYywkFrhy8Jj4Ub3bllKExsvppPGQlkMNupWh4yLmRuc2NyeXB0LWNlcnQuY3J5cHRvc3Rvcm0uaXM + + +## cz.nic + +CZ.NIC's open DNSSEC validating resolvers in Prague, Czech Republic. +CZ.NIC resolvers neither collect any personal data nor gather +information on pages where your computer sends personal data. +https://www.nic.cz/odvr/ + +sdns://AgcAAAAAAAAADDE4NS40My4xMzUuMSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OAtvZHZyLm5pYy5jegQvZG9o + + +## d0wn-is-ns2 + +Server provided by Martin 'd0wn' Albus + +sdns://AQcAAAAAAAAADTkzLjk1LjIyNi4xNjUghGA0qcYwyjwErEqQFiXxeoeyrLlBgKxIHiwQ6M7eGm8cMi5kbnNjcnlwdC1jZXJ0LmlzMi5kMHduLmJpeg + + +## d0wn-tz-ns1 + +Server provided by Martin 'd0wn' Albus + +sdns://AQcAAAAAAAAACzQxLjc5LjY5LjEzINYGFfvRRTuhTnaKPlxcs6wXRhMxRj2gr4z33wTaTXVtGzIuZG5zY3J5cHQtY2VydC50ei5kMHduLmJpeg + + +## d0wn-tz-ns1-ipv6 + +Server provided by Martin 'd0wn' Albus + +sdns://AQcAAAAAAAAAGFsyYzBmOmZkYTg6NTo6MmVkMTpkMmVjXSDWBhX70UU7oU52ij5cXLOsF0YTMUY9oK-M998E2k11bRsyLmRuc2NyeXB0LWNlcnQudHouZDB3bi5iaXo + + +## decloudus-nogoogle-tst + +Servers helps you deGoogle and unGoogle by completely blocking Google tracking in addition to annoying ads, online trackers, and malware. Supports DNSSEC. No Logs. + +Contributed by: https://decloudus.com + +sdns://AQMAAAAAAAAAEjE3Ni45LjE5OS4xNTg6ODQ0MyD73Ye9XeCsS7TdFu9fRP7s5k-0aL91yygulGVmeOAKLh4yLmRuc2NyeXB0LWNlcnQuRGVDbG91ZFVzLXRlc3Q + + +## decloudus-nogoogle-tstipv6 + +Servers helps you deGoogle and unGoogle by completely blocking Google tracking in addition to annoying ads, online trackers, and malware. Supports DNSSEC. No Logs. For IPv6. + +Contributed by: https://decloudus.com + +sdns://AQMAAAAAAAAAG1syYTAxOjRmODoxNTE6MTFiMDo6M106ODQ0MyD73Ye9XeCsS7TdFu9fRP7s5k-0aL91yygulGVmeOAKLh4yLmRuc2NyeXB0LWNlcnQuRGVDbG91ZFVzLXRlc3Q + + +## dns.digitale-gesellschaft.ch + +Public DoH resolver operated by the Digital Society (https://www.digitale-gesellschaft.ch). +Hosted in Zurich, Switzerland. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AgcAAAAAAAAAETE4NS45NS4yMTguNDI6NDQzoD4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4oGij6wH6XwLE0186EdAEyvCLIkvup9ecWIx_E8hhM2AuoO9Hha7nDJ1XX-czgwbZPqeWEeX-3O9TYt1myYtguy29IBxUNrZRorVBXBbP2W0alwn9nI8n7vdc-XPZgv_mjljwHGRucy5kaWdpdGFsZS1nZXNlbGxzY2hhZnQuY2gKL2Rucy1xdWVyeQ + + +## dns.digitale-gesellschaft.ch-2 + +Public DoH resolver operated by the Digital Society (https://www.digitale-gesellschaft.ch). +Hosted in Zurich, Switzerland. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AgcAAAAAAAAAETE4NS45NS4yMTguNDM6NDQzoD4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4oGij6wH6XwLE0186EdAEyvCLIkvup9ecWIx_E8hhM2AuoO9Hha7nDJ1XX-czgwbZPqeWEeX-3O9TYt1myYtguy29IBxUNrZRorVBXBbP2W0alwn9nI8n7vdc-XPZgv_mjljwHGRucy5kaWdpdGFsZS1nZXNlbGxzY2hhZnQuY2gKL2Rucy1xdWVyeQ + + +## dns.digitale-gesellschaft.ch-ipv6 + +Public IPv6 DoH resolver operated by the Digital Society (https://www.digitale-gesellschaft.ch). +Hosted in Zurich, Switzerland. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AgcAAAAAAAAAE1syYTA1OmZjODQ6OjQyXTo0NDOgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDigaKPrAfpfAsTTXzoR0ATK8IsiS-6n15xYjH8TyGEzYC6g70eFrucMnVdf5zODBtk-p5YR5f7c71Ni3WbJi2C7Lb0gHFQ2tlGitUFcFs_ZbRqXCf2cjyfu91z5c9mC_-aOWPAcZG5zLmRpZ2l0YWxlLWdlc2VsbHNjaGFmdC5jaAovZG5zLXF1ZXJ5 + + +## dns.digitale-gesellschaft.ch-ipv6-2 + +Public IPv6 DoH resolver operated by the Digital Society (https://www.digitale-gesellschaft.ch). +Hosted in Zurich, Switzerland. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AgcAAAAAAAAAE1syYTA1OmZjODQ6OjQzXTo0NDOgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDigaKPrAfpfAsTTXzoR0ATK8IsiS-6n15xYjH8TyGEzYC6g70eFrucMnVdf5zODBtk-p5YR5f7c71Ni3WbJi2C7Lb0gHFQ2tlGitUFcFs_ZbRqXCf2cjyfu91z5c9mC_-aOWPAcZG5zLmRpZ2l0YWxlLWdlc2VsbHNjaGFmdC5jaAovZG5zLXF1ZXJ5 + + +## dns.sb + +DNSSEC-enabled DoH server by https://xtom.com/ +Using Cloudflare as a frontend. + +https://dns.sb + +sdns://AgUAAAAAAAAAACA9pLcWNKQTwc7zSqltJaQBY01M82w7Ezx0KU5I5jcBKgpkb2guZG5zLnNiCi9kbnMtcXVlcnk + + +## dnscrypt-de-blahdns-ipv4 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Germany. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAEzE1OS42OS4xOTguMTAxOjg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-de-blahdns-ipv6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Germany. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAHFsyYTAxOjRmODoxYzFjOjZiNGI6OjFdOjg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-fi-blahdns-ipv4 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Finland. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAEzk1LjIxNi4yMTIuMTc3Ojg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-fi-blahdns-ipv6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Finland. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAHFsyYTAxOjRmOTpjMDEwOjQzY2U6OjFdOjg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-jp-blahdns-ipv4 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Japan. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAEDQ1LjMyLjU1Ljk0Ojg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-jp-blahdns-ipv6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Japan. By https://blahdns.com/ + +sdns://AQMAAAAAAAAALlsyMDAxOjE5ZjA6NzAwMTozMjU5OjU0MDA6MDJmZjpmZTcxOjBiYzldOjg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-sg-blahdns-ipv4 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Singapore. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAEzEzOS4xODAuMTQxLjU3Ojg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## dnscrypt-sg-blahdns-ipv6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Singapore. By https://blahdns.com/ + +sdns://AQMAAAAAAAAALVsyMDAxOjE5ZjA6NDQwMDo2YmVkOjU0MDA6MmZmOmZlYjE6ZjlmYV06ODQ0MyBThOgUQxQpPlbdGxQKHvFyrUe9uheZyJVylJU9A061xxsyLmRuc2NyeXB0LWNlcnQuYmxhaGRucy5jb20 + + +## dnscrypt.ca-1 + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated +DNS service for your pleasure. + +sdns://AQcAAAAAAAAAEzE2Ny4xMTQuMjIwLjEyNTo0NDMgGlOjyVB4nL3RCxkzpGibbIRqQPG3PRdSrsrJgp7LfOIdMi5kbnNjcnlwdC1jZXJ0LmRuc2NyeXB0LmNhLTE + + +## dnscrypt.ca-1-doh + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated DNS service for your pleasure. + +sdns://AgcAAAAAAAAADzE2Ny4xMTQuMjIwLjEyNSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBRkbnMxLmRuc2NyeXB0LmNhOjQ1MwovZG5zLXF1ZXJ5 + + +## dnscrypt.ca-1-ipv6 + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated +DNS service for your pleasure. + +sdns://AQcAAAAAAAAAKlsyNjA3OjUzMDA6NjE6OTVmOjcyODM6MTFkOTowZjg2OmU2ODldOjQ0MyAg2RnU7DxQCM3HClHqK0_L_oqZPGQx0OxoHV6nOEWrgCIyLmRuc2NyeXB0LWNlcnQuZG5zY3J5cHQuY2EtMS1pcHY2 + + +## dnscrypt.ca-1-ipv6-doh + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated DNS service for your pleasure. + +sdns://AgcAAAAAAAAAJlsyNjA3OjUzMDA6NjE6OTVmOjcyODM6MTFkOTowZjg2OmU2ODldID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FGRuczEuZG5zY3J5cHQuY2E6NDUzCi9kbnMtcXVlcnk + + +## dnscrypt.ca-2 + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated +DNS service for your pleasure. + +sdns://AQcAAAAAAAAAETE0OS41Ni4yMjguNDU6NDQzIAEIVKs7Vqfu-dORWP72ggv_k6I1fIkWCNueFdO74BGFHTIuZG5zY3J5cHQtY2VydC5kbnNjcnlwdC5jYS0y + + +## dnscrypt.ca-2-doh + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated DNS service for your pleasure. + +sdns://AgcAAAAAAAAADTE0OS41Ni4yMjguNDUgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgUZG5zMi5kbnNjcnlwdC5jYTo0NTMKL2Rucy1xdWVyeQ + + +## dnscrypt.ca-2-ipv6 + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated +DNS service for your pleasure. + +sdns://AQcAAAAAAAAAHFsyNjA3OjUzMDA6MTIwOmI5Yjo6MjAwXTo0NDMgmHxwqJfb2hUaNK1LVeqADvVhzASq1cV90sPYYfwX9CkiMi5kbnNjcnlwdC1jZXJ0LmRuc2NyeXB0LmNhLTItaXB2Ng + + +## dnscrypt.ca-2-ipv6-doh + +Free, Canadian, uncensored, no-logs, encrypted, and DNSSEC validated DNS service for your pleasure. + +sdns://AgcAAAAAAAAAGFsyNjA3OjUzMDA6MTIwOmI5Yjo6MjAwXSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBRkbnMyLmRuc2NyeXB0LmNhOjQ1MwovZG5zLXF1ZXJ5 + + +## dnscrypt.eu-dk + +Free, non-logged, uncensored. Hosted by Netgroup. + +sdns://AQcAAAAAAAAADDc3LjY2Ljg0LjIzMyA3SFWF47nQiP0lrTawNwH1UgzWSJ6a3VIUV0lVnwqZVSUyLmRuc2NyeXB0LWNlcnQucmVzb2x2ZXIyLmRuc2NyeXB0LmV1 + + +## dnscrypt.eu-dk-ipv6 + +Free, non-logged, uncensored. Hosted by Netgroup. + +sdns://AQcAAAAAAAAAFFsyMDAxOjE0NDg6MjQzOjpkYzJdIDdIVYXjudCI_SWtNrA3AfVSDNZInprdUhRXSVWfCplVJTIuZG5zY3J5cHQtY2VydC5yZXNvbHZlcjIuZG5zY3J5cHQuZXU + + +## dnscrypt.eu-nl + +Free, non-logged, uncensored. Hosted by RamNode. + +sdns://AQcAAAAAAAAADjE3Ni41Ni4yMzcuMTcxIGfADywhxVSBRd18tGonGvLrlpkxQKMJtiuNFlMRhZxmJTIuZG5zY3J5cHQtY2VydC5yZXNvbHZlcjEuZG5zY3J5cHQuZXU + + +## dnscrypt.eu-nl-ipv6 + +Free, non-logged, uncensored. Hosted by RamNode. + +sdns://AQcAAAAAAAAAGlsyYTAwOmQ4ODA6MzoxOjphNmMxOjJlODldIGfADywhxVSBRd18tGonGvLrlpkxQKMJtiuNFlMRhZxmJTIuZG5zY3J5cHQtY2VydC5yZXNvbHZlcjEuZG5zY3J5cHQuZXU + + +## dnscrypt.uk-ipv4 + +DNSCrypt v2, no logs, uncensored, DNSSEC. Hosted in London UK on Digital Ocean +https://www.dnscrypt.uk + +sdns://AQcAAAAAAAAAEjEzOS41OS4yMDAuMTE2OjQ0MyBxkKwJmxhDAMvj-aF2TcFOK16cSI5EpMxBJG3Ze0lRvBsyLmRuc2NyeXB0LWNlcnQuZG5zY3J5cHQudWs + + +## dnscrypt.uk-ipv6 + +DNSCrypt v2, no logs, uncensored, DNSSEC. Hosted in London UK on Digital Ocean +https://www.dnscrypt.uk + +sdns://AQcAAAAAAAAAHlsyYTAzOmIwYzA6MTplMDo6MmUzOmUwMDFdOjQ0MyBxkKwJmxhDAMvj-aF2TcFOK16cSI5EpMxBJG3Ze0lRvBsyLmRuc2NyeXB0LWNlcnQuZG5zY3J5cHQudWs + + +## dnsforfamily + +Block adult websites, gambling websites and advertisements. No DNS queries are logged. As of March 2019 2.1million websites are blocked and new websites are added to blacklist daily. + +Provided by: https://dnsforfamily.com + +sdns://AQIAAAAAAAAADDc4LjQ3LjY0LjE2MSATJeLOABXNSYcSJIoqR5_iUYz87Y4OecMLB84aEAKPrRBkbnNmb3JmYW1pbHkuY29t + + +## dnsforfamily-v6 + +Block adult websites, gambling websites and advertisements. No DNS queries are logged. As of March 2019 2.1million websites are blocked and new websites are added to blacklist daily. + +Provided by: https://dnsforfamily.com + +sdns://AQIAAAAAAAAAF1syYTAxOjRmODoxYzE3OjRkZjg6OjFdIGN4CrSY4fb2hK8voFJL3GKiM7xQNwkKGH4b0k7LmMPxEGRuc2ZvcmZhbWlseS5jb20 + + +## dnsforge.de + +Public DoH resolver running with Pihole for Adblocking (https://dnsforge.de). + +Non-logging, AD-filtering, supports DNSSEC. Hosted in Germany. + +sdns://AgMAAAAAAAAADDE3Ni45LjkzLjE5OCA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OAtkbnNmb3JnZS5kZQovZG5zLXF1ZXJ5 + + +## dnshome-doh + +https://www.dnshome.de/ public resolver in Germany + +sdns://AgYAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA5kbnMuZG5zaG9tZS5kZQovZG5zLXF1ZXJ5 + + +## dnslify-doh + +Non-logging DoH server in Amsterdam, Frankfurt, London, New York, Silicon Valley and Singapore. + +https://www.dnslify.com/ + +sdns://AgcAAAAAAAAADDE4NS4yMzUuODEuMSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9kb2guZG5zbGlmeS5jb20KL2Rucy1xdWVyeQ + + +## doh-centraleu-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Nuremberg, Germany. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=centraleu + +sdns://AgMAAAAAAAAADTg4LjE5OC45MS4xODcgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgYZG9oLmNlbnRyYWxldS5waS1kbnMuY29tCi9kbnMtcXVlcnk + + +## doh-centraleu-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Nuremberg, Germany. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=centraleu + +sdns://AgMAAAAAAAAAF1syYTAxOjRmODoxYzBjOjgyMzM6OjFdID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4GGRvaC5jZW50cmFsZXUucGktZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## doh-cleanbrowsing-adult + +Blocks access to all adult, pornographic and explicit sites. It does +not block proxy or VPNs, nor mixed-content sites. Sites like Reddit +are allowed. Google and Bing are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AgMAAAAAAAAAAAAVZG9oLmNsZWFuYnJvd3Npbmcub3JnEi9kb2gvYWR1bHQtZmlsdGVyLw + + +## doh-cleanbrowsing-family + +Blocks access to all adult, pornographic and explicit sites. It also +blocks proxy and VPN domains that are used to bypass the filters. +Mixed content sites (like Reddit) are also blocked. Google, Bing and +Youtube are set to the Safe Mode. + +By https://cleanbrowsing.org/ + +sdns://AgMAAAAAAAAAAAAVZG9oLmNsZWFuYnJvd3Npbmcub3JnEy9kb2gvZmFtaWx5LWZpbHRlci8 + + +## doh-cleanbrowsing-security + +Block access to phishing, malware and malicious domains. It does not block adult content. +By https://cleanbrowsing.org/ + +sdns://AgMAAAAAAAAAAAAVZG9oLmNsZWFuYnJvd3Npbmcub3JnFS9kb2gvc2VjdXJpdHktZmlsdGVyLw + + +## doh-crypto-sx + +DNS-over-HTTPS server. Anycast, no logs, no censorship, DNSSEC. +Backend hosted by Scaleway, globally cached via Cloudflare. +Maintained by Frank Denis. + +sdns://AgcAAAAAAAAADDEwNC4yOC4wLjEwNiA9pLcWNKQTwc7zSqltJaQBY01M82w7Ezx0KU5I5jcBKg1kb2guY3J5cHRvLnN4Ci9kbnMtcXVlcnk + + +## doh-crypto-sx-ipv6 + +DNS-over-HTTPS server accessible over IPv6. Anycast, no logs, no censorship, DNSSEC. +Backend hosted by Scaleway, globally cached via Cloudflare. +Maintained by Frank Denis. + +sdns://AgcAAAAAAAAAF1syNjA2OjQ3MDA6MzA6OjY4MWM6NmFdIB3YUIqMVlkEOXx4ZFHgj1dhPPPIpyP283n9TDhYtvOfEmRvaC1pcHY2LmNyeXB0by5zeAovZG5zLXF1ZXJ5 + + +## doh-de-blahdns + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Germany. By https://blahdns.com/ + +sdns://AgMAAAAAAAAADjE1OS42OS4xOTguMTAxABJkb2gtZGUuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-de-blahdns-v6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Germany. By https://blahdns.com/ + +sdns://AgMAAAAAAAAAF1syYTAxOjRmODoxYzFjOjZiNGI6OjFdABJkb2gtZGUuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-eastas-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Tokyo, Japan. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastas + +sdns://AgMAAAAAAAAADDY2LjQyLjMzLjEzNSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBVkb2guZWFzdGFzLnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-eastas-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Tokyo, Japan. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastas + +sdns://AgMAAAAAAAAAGFsyMDAxOjE5ZjA6NzAwMToyMjVkOjoxXSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBVkb2guZWFzdGFzLnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-eastau-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Sydney, Australia. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastau + +sdns://AgMAAAAAAAAADDQ1LjYzLjMwLjE2MyA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBVkb2guZWFzdGF1LnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-eastau-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Sydney, Australia. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastau + +sdns://AgMAAAAAAAAAF1syMDAxOjE5ZjA6NTgwMTpiN2M6OjFdID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FWRvaC5lYXN0YXUucGktZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## doh-eastus-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in New York, USA. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastus + +sdns://AgMAAAAAAAAADjE4NS4yMTMuMjYuMTg3ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FWRvaC5lYXN0dXMucGktZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## doh-eastus-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in New York, USA. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=eastus + +sdns://AgMAAAAAAAAAFlsyYTBkOjU2MDA6MzM6Mzo6YWJjZF0gPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgVZG9oLmVhc3R1cy5waS1kbnMuY29tCi9kbnMtcXVlcnk + + +## doh-fi-blahdns + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Finland. By https://blahdns.com/ + +sdns://AQMAAAAAAAAAEzk1LjIxNi4yMTIuMTc3Ojg0NDMgU4ToFEMUKT5W3RsUCh7xcq1HvboXmciVcpSVPQNOtccbMi5kbnNjcnlwdC1jZXJ0LmJsYWhkbnMuY29t + + +## doh-fi-blahdns-v6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Finland. By https://blahdns.com/ + +sdns://AgMAAAAAAAAAF1syYTAxOjRmOTpjMDEwOjQzY2U6OjFdABJkb2gtZmkuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-fi-snopyta + +Snopyta non-logging DoH Server in Finland +run by Noah Seefried - https://snopyta.org + +sdns://AgcAAAAAAAAADjk1LjIxNi4yMjkuMTUzID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FmZpLmRvaC5kbnMuc25vcHl0YS5vcmcKL2Rucy1xdWVyeQ + + +## doh-fi-snopyta-ipv6 + +Snopyta non-logging DoH Server in Finland - IPv6 only +run by Noah Seefried - https://snopyta.org + +sdns://AgcAAAAAAAAAFlsyYTAxOjRmOToyYToxOTE5OjoyMV0gPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgWZmkuZG9oLmRucy5zbm9weXRhLm9yZwovZG5zLXF1ZXJ5 + + +## doh-ibksturm + +doh-server (nginx - dnsproxy - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland by ibksturm, aka Andreas Ziegler + +sdns://AgcAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBRpYmtzdHVybS5zeW5vbG9neS5tZQovZG5zLXF1ZXJ5 + + +## doh-jp-blahdns + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Japan. By https://blahdns.com/ + +sdns://AgMAAAAAAAAACzQ1LjMyLjU1Ljk0ABJkb2gtanAuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-jp-blahdns-v6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Japan. By https://blahdns.com/ + +sdns://AgMAAAAAAAAAKVsyMDAxOjE5ZjA6NzAwMTozMjU5OjU0MDA6MDJmZjpmZTcxOjBiYzldABJkb2gtanAuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-northeu-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Helsinki, Finland. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=northeu + +sdns://AgMAAAAAAAAADjk1LjIxNi4xODEuMjI4ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FmRvaC5ub3J0aGV1LnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-northeu-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Helsinki, Finland. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=northeu + +sdns://AgMAAAAAAAAAF1syYTAxOjRmOTpjMDFmOjQ6OmFiY2RdID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4FmRvaC5ub3J0aGV1LnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-sg-blahdns + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Singapore. By https://blahdns.com/ + +sdns://AgMAAAAAAAAADjEzOS4xODAuMTQxLjU3ABJkb2gtc2cuYmxhaGRucy5jb20KL2Rucy1xdWVyeQ + + +## doh-sg-blahdns-v6 + +Blocks ad and Tracking, no Logging, DNSSEC, Hosted in Singapore. By https://blahdns.com/ + +sdns://AgMAAAAAAAAAKFsyMDAxOjE5ZjA6NDQwMDo2YmVkOjU0MDA6MmZmOmZlYjE6ZjlmYV0AEmRvaC1zZy5ibGFoZG5zLmNvbQovZG5zLXF1ZXJ5 + + +## doh-westus-pi-dns + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Los Angeles, USA. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=westus + +sdns://AgMAAAAAAAAADTQ1LjY3LjIxOS4yMDggPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgVZG9oLndlc3R1cy5waS1kbnMuY29tCi9kbnMtcXVlcnk + + +## doh-westus-pi-dns-ipv6 + +A zero logging DNS with support for DNS-over-HTTPS (DoH) & DNS-over-TLS (DoT). Blocks ads, malware, trackers, viruses and telemetry. No persistent logs, DNSSEC, Hosted in Los Angeles, USA. By https://pi-dns.com/ +Server statistics can be seen at: https://statistics.pi-dns.com/?server=westus + +sdns://AgMAAAAAAAAAGFsyYTA0OmJkYzc6MTAwOjcwOjphYmNkXSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBVkb2gud2VzdHVzLnBpLWRucy5jb20KL2Rucy1xdWVyeQ + + +## doh.appliedprivacy.net + +Public DoH resolver operated by the Foundation for Applied Privacy (https://appliedprivacy.net). +Hosted in Vienna, Austria. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AgcAAAAAAAAAAKA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OKBoo-sB-l8CxNNfOhHQBMrwiyJL7qfXnFiMfxPIYTNgLqDvR4Wu5wydV1_nM4MG2T6nlhHl_tzvU2LdZsmLYLstvSAcVDa2UaK1QVwWz9ltGpcJ_ZyPJ-73XPlz2YL_5o5Y8BZkb2guYXBwbGllZHByaXZhY3kubmV0Bi9xdWVyeQ + + +## doh.ffmuc.net + +An open DoH resolver operated by Freifunk Munich with nodes in DE. +https://ffmuc.net/ + +sdns://AgcAAAAAAAAADDE5NS4zMC45NC4yOAANZG9oLmZmbXVjLm5ldAovZG5zLXF1ZXJ5 + + +## doh.ffmuc.net-v6 + +An open DoH resolver operated by Freifunk Munich with nodes in DE. +https://ffmuc.net/ + +sdns://AgcAAAAAAAAAFVsyMDAxOjYwODphMDE6OjNdOjQ0MyA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA1kb2guZmZtdWMubmV0Ci9kbnMtcXVlcnk + + +## doh.li + +Public DoH server in London, UK. + +Warning: provides EDNS Client Subnet information to upstream servers. + +sdns://AgUAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OAZkb2gubGkKL2Rucy1xdWVyeQ + + +## doh.tiarap.org + +Non-Logging DNS-over-HTTPS server, cached via Cloudflare. +Filters out ads, trackers and malware, NO ECS, supports DNSSEC. + +sdns://AgMAAAAAAAAADDEwNC4yOC4yOC4zNCBPtWwTIp4-T40ZbjCdyCfeStS1-WkKW8w_WWEQubJpyQ5kb2gudGlhcmFwLm9yZwovZG5zLXF1ZXJ5 + + +## doh.tiarap.org-ipv6 + +Non-Logging DNS-over-HTTPS server (IPv6), cached via Cloudflare. +Filters out ads, trackers and malware, NO ECS, supports DNSSEC. + +sdns://AgMAAAAAAAAAGVsyNjA2OjQ3MDA6MzA6OjY4MWM6MWQyMl0gT7VsEyKePk-NGW4wncgn3krUtflpClvMP1lhELmyackOZG9oLnRpYXJhcC5vcmcKL2Rucy1xdWVyeQ + + +## ev-to + +Non-logging, uncensored DNS resolver provided by evilvibes.com +Location: Toronto, Canada + +sdns://AQcAAAAAAAAADDY2Ljg1LjMwLjExNSDaDhJ4Dk4cHSiJstKoSd4DcSH8xm16_TSA1PBuamRNzB0yLmRuc2NyeXB0LWNlcnQuZXZpbHZpYmVzLmNvbQ + + +## ev-va + +Non-logging, uncensored DNS resolver provided by evilvibes.com +Location: Vancouver, Canada + +sdns://AQcAAAAAAAAADTIzLjExMS43NC4yMDUg_0RyX8kcAcMdtRk5SAX5RKs3yiLLS6kdJlnsUpVbnOEdMi5kbnNjcnlwdC1jZXJ0LmV2aWx2aWJlcy5jb20 + + +## faelix-ch-ipv4 + +An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in Switzerland. + +sdns://AQcAAAAAAAAAEzE4NS4xMzQuMTk2LjU0Ojg0NDMgfsvvPi8BgDKNYODh0ewj5Oh32OoJoZNwGgTWs8C-i-EfMi5kbnNjcnlwdC1jZXJ0LnJkbnMuZmFlbGl4Lm5ldA +sdns://AQcAAAAAAAAAEzE4NS4xMzQuMTk2LjU1Ojg0NDMgfsvvPi8BgDKNYODh0ewj5Oh32OoJoZNwGgTWs8C-i-EfMi5kbnNjcnlwdC1jZXJ0LnJkbnMuZmFlbGl4Lm5ldA + + +## faelix-ch-ipv4-doh + +An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in Switzerland. + +sdns://AgcAAAAAAAAADjE4NS4xMzQuMTk2LjU0ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4D3JkbnMuZmFlbGl4Lm5ldAEv +sdns://AgcAAAAAAAAADjE4NS4xMzQuMTk2LjU1ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4D3JkbnMuZmFlbGl4Lm5ldAEv + + +## faelix-ch-ipv6 + +An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in Switzerland. + +sdns://AQcAAAAAAAAAFFsyYTAxOjllMDE6OjU0XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ +sdns://AQcAAAAAAAAAFFsyYTAxOjllMDE6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ + + +## faelix-ch-ipv6-doh + +An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in Switzerland. + +sdns://AgcAAAAAAAAAD1syYTAxOjllMDE6OjU0XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw +sdns://AgcAAAAAAAAAD1syYTAxOjllMDE6OjU1XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw + + +## faelix-uk-ipv4 + +An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in the UK. + +sdns://AQcAAAAAAAAAEjQ2LjIyNy4yMDAuNTQ6ODQ0MyB-y-8-LwGAMo1g4OHR7CPk6HfY6gmhk3AaBNazwL6L4R8yLmRuc2NyeXB0LWNlcnQucmRucy5mYWVsaXgubmV0 +sdns://AQcAAAAAAAAAEjQ2LjIyNy4yMDAuNTU6ODQ0MyB-y-8-LwGAMo1g4OHR7CPk6HfY6gmhk3AaBNazwL6L4R8yLmRuc2NyeXB0LWNlcnQucmRucy5mYWVsaXgubmV0 + + +## faelix-uk-ipv4-doh + +An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv4 nodes anycast within AS41495 in the UK. + +sdns://AgcAAAAAAAAADTQ2LjIyNy4yMDAuNTQgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgPcmRucy5mYWVsaXgubmV0AS8 +sdns://AgcAAAAAAAAADTQ2LjIyNy4yMDAuNTUgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgPcmRucy5mYWVsaXgubmV0AS8 + + +## faelix-uk-ipv6 + +An open (non-logging, non-filtering, no ECS) DNSCrypt resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in the UK. + +sdns://AQcAAAAAAAAAFFsyYTAxOjllMDA6OjU0XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ +sdns://AQcAAAAAAAAAFFsyYTAxOjllMDA6OjU1XTo4NDQzIH7L7z4vAYAyjWDg4dHsI-Tod9jqCaGTcBoE1rPAvovhHzIuZG5zY3J5cHQtY2VydC5yZG5zLmZhZWxpeC5uZXQ + + +## faelix-uk-ipv6-doh + +An open (non-logging, non-filtering, no ECS) DoH resolver operated by https://faelix.net/ with IPv6 nodes anycast within AS41495 in the UK. + +sdns://AgcAAAAAAAAAD1syYTAxOjllMDA6OjU0XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw +sdns://AgcAAAAAAAAAD1syYTAxOjllMDA6OjU1XSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9yZG5zLmZhZWxpeC5uZXQBLw + + +## ffmuc.net + +An open DNSCrypt resolver operated by Freifunk Munich with nodes in DE. +https://ffmuc.net/ + +sdns://AQcAAAAAAAAAETE5NS4zMC45NC4yODo4NDQzIAfQevHP3F2Zdp0_AmaQpwRJZcJ0J2x5HK71rvO5DEb6GTIuZG5zY3J5cHQtY2VydC5mZm11Yy5uZXQ + + +## ffmuc.net-v6 + +An open DNSCrypt resolver operated by Freifunk Munich with nodes in DE. +https://ffmuc.net/ + +sdns://AQcAAAAAAAAAFlsyMDAxOjYwODphMDE6OjNdOjg0NDMgB9B68c_cXZl2nT8CZpCnBEllwnQnbHkcrvWu87kMRvoZMi5kbnNjcnlwdC1jZXJ0LmZmbXVjLm5ldA + + +## freetsa.org + +Non-logged/Uncensored provided by freetsa.org + +sdns://AQcAAAAAAAAAEzIwNS4xODUuMTE2LjExNjo1NTMg2P-7QuAxvnp5cwtFVo1Jak6Ky1mqg2b9arkeJyp9FuQbMi5kbnNjcnlwdC1jZXJ0LmZyZWV0c2Eub3Jn + + +## geekdns-doh + +GeekDNS for users in China + +GeekDNS is a non-logging public DNS service located in mainland China. +Queries are cached locally, and, for some domains, resolved by servers located +in Taiwan. + +https://www.nextrt.com/s/dns + +sdns://AgcAAAAAAAAAACCi3jNJDEdtNW4tvHN8J3lpIklSa2Wrj7qaNCgEgci9_AtpLjIzM3B5LmNvbQovZG5zLXF1ZXJ5 + + +## geekdns-doh-ext + +GeekDNS for users outside China, via Cloudflare + +GeekDNS is a non-logging public DNS service located in mainland China. +Queries are cached locally, and, for some domains, resolved by servers located +in Taiwan. + +https://www.nextrt.com/s/dns + +sdns://AgcAAAAAAAAAAAANZG9oLjIzM3B5LmNvbQovZG5zLXF1ZXJ5 + + +## google + +Google DNS (anycast) + +sdns://AgUAAAAAAAAABzguOC44LjigHvYkz_9ea9O63fP92_3qVlRn43cpncfuZnUWbzAMwbkgdoAkR6AZkxo_AEMExT_cbBssN43Evo9zs5_ZyWnftEUKZG5zLmdvb2dsZQovZG5zLXF1ZXJ5 + + +## google-ipv6 + +Google DNS (anycast) + +sdns://AgUAAAAAAAAAFlsyMDAxOjQ4NjA6NDg2MDo6ODg4OF2gHvYkz_9ea9O63fP92_3qVlRn43cpncfuZnUWbzAMwbkgdoAkR6AZkxo_AEMExT_cbBssN43Evo9zs5_ZyWnftEUKZG5zLmdvb2dsZQovZG5zLXF1ZXJ5 + + +## he + +Hurricane Electric DoH server (anycast) + +Unknown logging policy. + +sdns://AgUAAAAAAAAACzc0LjgyLjQyLjQyID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4DG9yZG5zLmhlLm5ldAovZG5zLXF1ZXJ5 + + +## he-ipv6 + +Hurricane Electric DoH server (anycast) over IPv6 + +Unknown logging policy. + +sdns://AgUAAAAAAAAAEFsyMDAxOjQ3MDoyMDo6Ml0gPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgMb3JkbnMuaGUubmV0Ci9kbnMtcXVlcnk + + +## ibksturm + +dnscrypt-server (nginx - encrypted-dns - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland by ibksturm, aka Andreas Ziegler + +sdns://AQcAAAAAAAAAEDg1LjUuOTMuMjMwOjg0NDMgwc9XUACwW8JsYh9ez5qiVgrOvwB-vss6f_SyDeC0Oe4YMi5kbnNjcnlwdC1jZXJ0Lmlia3N0dXJt + + +## ibksturm-ipv6 + +dnscrypt-server (nginx - encrypted-dns - unbound backend), DNSSEC / Non-Logged / Uncensored, OpenNIC and Root DNS-Zone Copy +Hosted in Switzerland by ibksturm, aka Andreas Ziegler + +sdns://AQcAAAAAAAAALlsyYTAyOjEyMDU6NTA1NTpkZTYwOmIyNmU6YmZmZjpmZTFkOmUxOWJdOjg0NDMgwc9XUACwW8JsYh9ez5qiVgrOvwB-vss6f_SyDeC0Oe4YMi5kbnNjcnlwdC1jZXJ0Lmlia3N0dXJt + + +## id-gmail + +Non-Logging DNSCrypt server located in Singapore. +Filters out ads, trackers and malware, supports DNSSEC, provided by id-gmail. + +sdns://AQMAAAAAAAAADjE3NC4xMzguMjEuMTI4IO-WgGbo2ZTwZdg-3dMa7u31bYZXRj5KykfN1_6Xw9T2HDIuZG5zY3J5cHQtY2VydC5kbnMudGlhci5hcHA + + +## id-gmail-doh + +Non-Logging DNS-over-HTTPS server located in Singapore. +Filters out ads, trackers and malware, supports DNSSEC, provided by id-gmail. + +sdns://AgMAAAAAAAAADjE3NC4xMzguMjkuMTc1ID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4DGRvaC50aWFyLmFwcAovZG5zLXF1ZXJ5 + + +## id-gmail-doh-ipv6 + +Non-Logging DNS-over-HTTPS (IPv6) server located in Singapore. +Filters out ads, trackers and malware, supports DNSSEC, provided by id-gmail. + +sdns://AgMAAAAAAAAAG1syNDAwOjYxODA6MDpkMDo6NWY3Mzo0MDAxXSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OAxkb2gudGlhci5hcHAKL2Rucy1xdWVyeQ + + +## id-gmail-ipv6 + +Non-Logging DNSCrypt (IPv6) server located in Singapore. +Filters out ads, trackers and malware, supports DNSSEC, provided by id-gmail. + +sdns://AQMAAAAAAAAAG1syNDAwOjYxODA6MDpkMDo6NWY2ZTo0MDAxXSDvloBm6NmU8GXYPt3TGu7t9W2GV0Y-SspHzdf-l8PU9hwyLmRuc2NyeXB0LWNlcnQuZG5zLnRpYXIuYXBw + + +## iij + +DoH server operated by Internet Initiative Japan in Tokyo. +https://www.iij.ad.jp/ + +sdns://AgUAAAAAAAAACjEwMy4yLjU3LjUgs2lfGAQCPrV0DPQqOkPci0Jei0GhMK_ne-QHwPbfn4oRcHVibGljLmRucy5paWouanAKL2Rucy1xdWVyeQ + + +## jp.tiar.app + +Non-Logging, Non-Filtering DNSCrypt server in Japan. +No ECS, Support DNSSEC + +sdns://AQcAAAAAAAAAEjE3Mi4xMDQuOTMuODA6MTQ0MyAyuHY-8b9lNqHeahPAzW9IoXnjiLaZpTeNbVs8TN9UUxsyLmRuc2NyeXB0LWNlcnQuanAudGlhci5hcHA + + +## jp.tiar.app-doh + +Non-Logging, Non-Filtering DNS-over-HTTPS server in Japan. +No ECS, Support DNSSEC + +sdns://AgcAAAAAAAAADTE3Mi4xMDQuOTMuODAgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgLanAudGlhci5hcHAKL2Rucy1xdWVyeQ + + +## jp.tiar.app-doh-ipv6 + +Non-Logging, Non-Filtering DNS-over-HTTPS (IPv6) server in Japan. +No ECS, Support DNSSEC + +sdns://AgcAAAAAAAAAIFsyNDAwOjg5MDI6OmYwM2M6OTFmZjpmZWRhOmM1MTRdID4aGg9sU_PpekktVwhLW5gHBZ7gV6sVBYdv2D_aPbg4C2pwLnRpYXIuYXBwCi9kbnMtcXVlcnk + + +## jp.tiar.app-ipv6 + +Non-Logging, Non-Filtering DNSCrypt (IPv6) server in Japan. +No ECS, Support DNSSEC + +sdns://AQcAAAAAAAAAJVsyNDAwOjg5MDI6OmYwM2M6OTFmZjpmZWRhOmM1MTRdOjE0NDMgMrh2PvG_ZTah3moTwM1vSKF544i2maU3jW1bPEzfVFMbMi5kbnNjcnlwdC1jZXJ0LmpwLnRpYXIuYXBw + + +## jp.tiarap.org + +DNS-over-HTTPS Server. Non-Logging, Non-Filtering, No ECS, Support DNSSEC. +Cached via Cloudflare. + +sdns://AgcAAAAAAAAADDEwNC4yOC4yOC4zNCBPtWwTIp4-T40ZbjCdyCfeStS1-WkKW8w_WWEQubJpyQ1qcC50aWFyYXAub3JnCi9kbnMtcXVlcnk + + +## jp.tiarap.org-ipv6 + +DNS-over-HTTPS Server (IPv6). Non-Logging, Non-Filtering, No ECS, Support DNSSEC. +Cached via Cloudflare. + +sdns://AgcAAAAAAAAAGVsyNjA2OjQ3MDA6MzA6OjY4MWM6MWQyMl0gT7VsEyKePk-NGW4wncgn3krUtflpClvMP1lhELmyackNanAudGlhcmFwLm9yZwovZG5zLXF1ZXJ5 + + +## lelux.fi + +DoH server in France. No logging, no filtering, DNSSEC support. +https://lelux.fi/resolver/ + +sdns://AgcAAAAAAAAADTUxLjE1OC4xNDcuNTAgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgUcmVzb2x2ZXItZXUubGVsdXguZmkKL2Rucy1xdWVyeQ + + +## libredns + +DoH server in Germany. No logging, but no DNS padding and no DNSSEC support. +https://libredns.gr/ + +sdns://AgYAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9kb2gubGlicmVkbnMuZ3IKL2Rucy1xdWVyeQ + + +## libredns-noads + +DoH server in Germany. No logging, but no DNS padding and no DNSSEC support. +no ads version, uses StevenBlack's host list: https://github.com/StevenBlack/hosts + +sdns://AgIAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA9kb2gubGlicmVkbnMuZ3IEL2Fkcw + + +## meganerd + +Public DNSCrypt server by MegaNerd.nl - https://meganerd.nl/encrypted-dns-server +Hosted in Amsterdam, The Netherlands. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AQcAAAAAAAAAEjIwOS4yNTAuMjQxLjI1OjQ0MyD8qtxwTl7jYLuhTuKVO9Uougk1epDw_OTQOgE4a_-rYhgyLmRuc2NyeXB0LWNlcnQubWVnYW5lcmQ + + +## meganerd-ipv6 + +Public DNSCrypt server by MegaNerd.nl - https://meganerd.nl/encrypted-dns-server +Hosted in Amsterdam, The Netherlands. + +Non-logging, non-filtering, supports DNSSEC. + +sdns://AQcAAAAAAAAAK1syYTA1OmY0ODA6MTQwMDo0MzY6NTQwMDoyZmY6ZmViODo4ZDFjXTo0NDMg_KrccE5e42C7oU7ilTvVKLoJNXqQ8Pzk0DoBOGv_q2IYMi5kbnNjcnlwdC1jZXJ0Lm1lZ2FuZXJk + + +## nextdns + +NextDNS is a cloud-based private DNS service that gives you full control +over what is allowed and what is blocked on the Internet. + +DNSSEC, Anycast, Non-logging, NoFilters + +https://www.nextdns.io/ + +sdns://AgcAAAAAAAAACjQ1LjkwLjI4LjAgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgOZG5zLm5leHRkbnMuaW8PL2Ruc2NyeXB0LXByb3h5 + + +## nextdns-ipv6 + +Connects to NextDNS over IPv6. + +NextDNS is a cloud-based private DNS service that gives you full control +over what is allowed and what is blocked on the Internet. + +DNSSEC, Anycast, Non-logging, NoFilters + +https://www.nextdns.io/ + +sdns://AgcAAAAAAAAADVsyYTA3OmE4YzA6Ol0gPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgOZG5zLm5leHRkbnMuaW8PL2Ruc2NyeXB0LXByb3h5 + + +## opennic-R4SAS + +DNSSEC - OpenNIC - Non-logging - Uncensored - hosted on ovh.com +Location: Gravelines, France. +Maintained by R4SAS. + +sdns://AQcAAAAAAAAAETE1MS44MC4yMjIuNzk6NDQzIKnWMjpPJYAJJhl1FQLOIx4fdtned2yHxruyig7_2w5OIDIuZG5zY3J5cHQtY2VydC5vcGVubmljLmkycGQueHl6 + + +## opennic-bongobow + +OpenNIC • Non-logging • No DNSSEC +Location: Munich, Germany + +sdns://AQYAAAAAAAAAETUuMTg5LjE3MC4xOTY6NDY1IFQ1LFVAO4Luk8QH_cI0RJcNmlbvIr_P-eyQnM0yJDJrKDIuZG5zY3J5cHQtY2VydC5uczE2LmRlLmRucy5vcGVubmljLmdsdWU + + +## opennic-luggs + +Public DNS server in Canada operated by Luggs + +sdns://AQYAAAAAAAAADTE0Mi40LjIwNC4xMTEgHBl5MxvoI8zPCJp5BpN-XDQQKlasf2Jw4EYlsu3bBOMfMi5kbnNjcnlwdC1jZXJ0Lm5zMy5jYS5sdWdncy5jbw + + +## opennic-luggs-ipv6 + +Public DNS server in Canada operated by Luggs (IPv6) + +sdns://AQYAAAAAAAAAIVsyNjA3OjUzMDA6MTIwOmE4YToxNDI6NDoyMDQ6MTExXSAcGXkzG-gjzM8ImnkGk35cNBAqVqx_YnDgRiWy7dsE4x8yLmRuc2NyeXB0LWNlcnQubnMzLmNhLmx1Z2dzLmNv + + +## opennic-luggs2 + +Second public DNS server in Canada operated by Luggs + +sdns://AQYAAAAAAAAAEDE0Mi40LjIwNS40Nzo0NDMgvL-34FDBPaJCLACwsaya1kjFwmS8thcLiD1xishuugkfMi5kbnNjcnlwdC1jZXJ0Lm5zNC5jYS5sdWdncy5jbw + + +## opennic-luggs2-ipv6 + +Second public DNS server in Canada operated by Luggs (IPv6) + +sdns://AQYAAAAAAAAAJFsyNjA3OjUzMDA6MTIwOmE4YToxNDI6NDoyMDU6NDddOjQ0MyC8v7fgUME9okIsALCxrJrWSMXCZLy2FwuIPXGKyG66CR8yLmRuc2NyeXB0LWNlcnQubnM0LmNhLmx1Z2dzLmNv + + +## opennic-rico4514 + +OpenNIC • Non-logging • No DNSSEC +Location: Texas, 13, MX + +sdns://AQYAAAAAAAAAETE0Mi40LjIwNC4xMTE6NDQzIBwZeTMb6CPMzwiaeQaTflw0ECpWrH9icOBGJbLt2wTjHzIuZG5zY3J5cHQtY2VydC5uczMuY2EubHVnZ3MuY28 + + +## oszx + +Secure DNS Project by PumpleX - Hosted in the UK by OVH +No Logging / Ad-Blocking +Information at https://dns.oszx.co + +sdns://AQIAAAAAAAAAETUxLjM4LjgzLjE0MTo1MzUzIMwm9_oYw26P4JIVoDhJ_5kFDdNxX1ke4fEzL1V5bwEjFzIuZG5zY3J5cHQtY2VydC5vc3p4LmNv + + +## powerdns-doh + +By PowerDNS/Open-Xchange https://powerdns.org + +sdns://AgcAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBBkb2gucG93ZXJkbnMub3JnAS8 + + +## publicarray-au + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on vultr.com +Maintained by publicarray - https://dns.seby.io + +sdns://AQcAAAAAAAAADDQ1Ljc2LjExMy4zMSAIVGh4i6eKXqlF6o9Fg92cgD2WcDvKQJ7v_Wq4XrQsVhsyLmRuc2NyeXB0LWNlcnQuZG5zLnNlYnkuaW8 + + +## publicarray-au-doh + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on vultr.com +Maintained by publicarray - https://dns.seby.io + +sdns://AgcAAAAAAAAADDQ1Ljc2LjExMy4zMSA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBBkb2guc2VieS5pbzo4NDQzCi9kbnMtcXVlcnk + + +## publicarray-au2 + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on ovh.com.au +Maintained by publicarray - https://dns.seby.io + +sdns://AQcAAAAAAAAAEjEzOS45OS4yMjIuNzI6ODQ0MyALBWhPDQvh2BqXksLUVtlS0e0tH-tW5XqtWfE73l7gZRsyLmRuc2NyeXB0LWNlcnQuZG5zLnNlYnkuaW8 + + +## publicarray-au2-doh + +DNSSEC • OpenNIC • Non-logging • Uncensored - hosted on ovh.com.au +Maintained by publicarray - https://dns.seby.io + +sdns://AgcAAAAAAAAADTEzOS45OS4yMjIuNzIgPhoaD2xT8-l6SS1XCEtbmAcFnuBXqxUFh2_YP9o9uDgRZG9oLTIuc2VieS5pbzo0NDMKL2Rucy1xdWVyeQ + + +## quad101 + +DNSSEC-aware public resolver by the Taiwan Network Information Center (TWNIC) +https://101.101.101.101/index_en.html + +sdns://AgcAAAAAAAAAACAoPxWWFWiOuUdTdn7SvYpzbNqr_iDmmJrktihy4wca5gxkbnMudHduaWMudHcKL2Rucy1xdWVyeQ + + +## quad9-dnscrypt-ip4-filter-alt + +Quad9 (anycast) dnssec/no-log/filter 149.112.112.9 + +sdns://AQMAAAAAAAAAEjE0OS4xMTIuMTEyLjk6ODQ0MyBnyEe4yHWM0SAkVUO-dWdG3zTfHYTAC4xHA2jfgh2GPhkyLmRuc2NyeXB0LWNlcnQucXVhZDkubmV0 + + +## quad9-dnscrypt-ip4-filter-pri + +Quad9 (anycast) dnssec/no-log/filter 9.9.9.9 + +sdns://AQMAAAAAAAAADDkuOS45Ljk6ODQ0MyBnyEe4yHWM0SAkVUO-dWdG3zTfHYTAC4xHA2jfgh2GPhkyLmRuc2NyeXB0LWNlcnQucXVhZDkubmV0 + + +## quad9-dnscrypt-ip4-nofilter-alt + +Quad9 (anycast) no-dnssec/no-log/no-filter 149.112.112.10 + +sdns://AQYAAAAAAAAAEzE0OS4xMTIuMTEyLjEwOjg0NDMgZ8hHuMh1jNEgJFVDvnVnRt803x2EwAuMRwNo34Idhj4ZMi5kbnNjcnlwdC1jZXJ0LnF1YWQ5Lm5ldA + + +## quad9-dnscrypt-ip4-nofilter-pri + +Quad9 (anycast) no-dnssec/no-log/no-filter 9.9.9.10 + +sdns://AQYAAAAAAAAADTkuOS45LjEwOjg0NDMgZ8hHuMh1jNEgJFVDvnVnRt803x2EwAuMRwNo34Idhj4ZMi5kbnNjcnlwdC1jZXJ0LnF1YWQ5Lm5ldA + + +## quad9-dnscrypt-ip6-filter-alt + +Quad9 (anycast) dnssec/no-log/filter 2620:fe::9 + +sdns://AQMAAAAAAAAAEVsyNjIwOmZlOjo5XTo4NDQzIGfIR7jIdYzRICRVQ751Z0bfNN8dhMALjEcDaN-CHYY-GTIuZG5zY3J5cHQtY2VydC5xdWFkOS5uZXQ + + +## quad9-dnscrypt-ip6-filter-pri + +Quad9 (anycast) dnssec/no-log/filter 2620:fe::fe:9 + +sdns://AQMAAAAAAAAAFFsyNjIwOmZlOjpmZTo5XTo4NDQzIGfIR7jIdYzRICRVQ751Z0bfNN8dhMALjEcDaN-CHYY-GTIuZG5zY3J5cHQtY2VydC5xdWFkOS5uZXQ + + +## quad9-dnscrypt-ip6-nofilter-alt + +Quad9 (anycast) no-dnssec/no-log/no-filter 2620:fe::fe:10 + +sdns://AQYAAAAAAAAAFVsyNjIwOmZlOjpmZToxMF06ODQ0MyBnyEe4yHWM0SAkVUO-dWdG3zTfHYTAC4xHA2jfgh2GPhkyLmRuc2NyeXB0LWNlcnQucXVhZDkubmV0 + + +## quad9-dnscrypt-ip6-nofilter-pri + +Quad9 (anycast) no-dnssec/no-log/no-filter 2620:fe::10 + +sdns://AQYAAAAAAAAAElsyNjIwOmZlOjoxMF06ODQ0MyBnyEe4yHWM0SAkVUO-dWdG3zTfHYTAC4xHA2jfgh2GPhkyLmRuc2NyeXB0LWNlcnQucXVhZDkubmV0 + + +## quad9-doh-ip4-filter-alt + +Quad9 (anycast) dnssec/no-log/filter 149.112.112.9 + +sdns://AgMAAAAAAAAADTE0OS4xMTIuMTEyLjmAABJkbnM5LnF1YWQ5Lm5ldDo0NDMKL2Rucy1xdWVyeQ + + +## quad9-doh-ip4-filter-pri + +Quad9 (anycast) dnssec/no-log/filter 9.9.9.9 + +sdns://AgMAAAAAAAAABzkuOS45LjmAABJkbnM5LnF1YWQ5Lm5ldDo0NDMKL2Rucy1xdWVyeQ + + +## quad9-doh-ip4-nofilter-alt + +Quad9 (anycast) no-dnssec/no-log/no-filter 149.112.112.10 + +sdns://AgYAAAAAAAAADjE0OS4xMTIuMTEyLjEwgAASZG5zOS5xdWFkOS5uZXQ6NDQzCi9kbnMtcXVlcnk + + +## quad9-doh-ip4-nofilter-pri + +Quad9 (anycast) no-dnssec/no-log/no-filter 9.9.9.10 + +sdns://AgYAAAAAAAAACDkuOS45LjEwgAASZG5zOS5xdWFkOS5uZXQ6NDQzCi9kbnMtcXVlcnk + + +## quad9-doh-ip6-filter-alt + +Quad9 (anycast) dnssec/no-log/filter 2620:fe::fe:9 + +sdns://AgMAAAAAAAAAD1syNjIwOmZlOjpmZTo5XYAAEmRuczkucXVhZDkubmV0OjQ0MwovZG5zLXF1ZXJ5 + + +## quad9-doh-ip6-filter-pri + +Quad9 (anycast) dnssec/no-log/filter 2620:fe::9 + +sdns://AgMAAAAAAAAADFsyNjIwOmZlOjo5XYAAEmRuczkucXVhZDkubmV0OjQ0MwovZG5zLXF1ZXJ5 + + +## quad9-doh-ip6-nofilter-alt + +Quad9 (anycast) no-dnssec/no-log/no-filter 2620:fe::fe:10 + +sdns://AgYAAAAAAAAAEFsyNjIwOmZlOjpmZToxMF2AABJkbnM5LnF1YWQ5Lm5ldDo0NDMKL2Rucy1xdWVyeQ + + +## quad9-doh-ip6-nofilter-pri + +Quad9 (anycast) no-dnssec/no-log/no-filter 2620:fe::10 + +sdns://AgYAAAAAAAAADVsyNjIwOmZlOjoxMF2AABJkbnM5LnF1YWQ5Lm5ldDo0NDMKL2Rucy1xdWVyeQ + + +## qualityology.com + +Non-logging, non-filtering, DNSSEC validating server in Los Angeles, California. +Maintained by Evan Xu (@ex-git) + +sdns://AQcAAAAAAAAAEjE3My44Mi4yMzIuMjMyOjg1MyCPlK_22Cu9WRVyKgl-CZp2GXezsRDWizG-BHIzChok4iAyLmRuc2NyeXB0LWNlcnQucXVhbGl0eW9sb2d5LmNvbQ + + +## rubyfish-ea + +Resolver in mainland China, forwarding queries for non-Chinese domains +to upstream servers in East Asia. + +https://www.rubyfish.cn/ + +sdns://AgUAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBJlYS1kbnMucnVieWZpc2guY24KL2Rucy1xdWVyeQ + + +## rubyfish-uw + +Resolver in mainland China, forwarding queries for non-Chinese domains +to US-West. + +https://www.rubyfish.cn/ + +sdns://AgUAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OBJ1dy1kbnMucnVieWZpc2guY24KL2Rucy1xdWVyeQ + + +## rumpelsepp.org + +DNSSEC/Non-logged/Uncensored in Nürnberg. +Backed by unbound. +Maintained by [rumpelsepp](https://rumpelsepp.org) + +sdns://AgcAAAAAAAAADzExNi4yMDMuMTc5LjI0OCA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OA5ydW1wZWxzZXBwLm9yZwovZG5zLXF1ZXJ5 + + +## scaleway-ams + +DNSSEC/Non-logged/Uncensored in Amsterdam - DEV1-S instance donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info + +sdns://AQcAAAAAAAAAETUxLjE1LjEyMi4yNTA6NDQzIOkN2X2qXGx4Ihyixe0BaJYtE8tVbM90V7NUVG8VK8GQHDIuZG5zY3J5cHQtY2VydC5zY2FsZXdheS1hbXM + + +## scaleway-ams-ipv6 + +DNSSEC/Non-logged/Uncensored in Amsterdam - IPv6 only - DEV1-S instance donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info + +sdns://AQcAAAAAAAAAGlsyMDAxOmJjODoxODIwOjUwZDo6MV06NDQzIOkN2X2qXGx4Ihyixe0BaJYtE8tVbM90V7NUVG8VK8GQHDIuZG5zY3J5cHQtY2VydC5zY2FsZXdheS1hbXM + + +## scaleway-fr + +DNSSEC/Non-logged/Uncensored in Paris - DEV1-S instance donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info + +sdns://AQcAAAAAAAAADjIxMi40Ny4yMjguMTM2IOgBuE6mBr-wusDOQ0RbsV66ZLAvo8SqMa4QY2oHkDJNHzIuZG5zY3J5cHQtY2VydC5mci5kbnNjcnlwdC5vcmc + + +## scaleway-fr-ipv6 + +DNSSEC/Non-logged/Uncensored in Paris - IPv6 only - DEV1-S instance donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info + +sdns://AQcAAAAAAAAAG1syMDAxOmJjODo0N2IwOjFhMDE6OjFdOjQ0MyDoAbhOpga_sLrAzkNEW7FeumSwL6PEqjGuEGNqB5AyTR8yLmRuc2NyeXB0LWNlcnQuZnIuZG5zY3J5cHQub3Jn + + +## sfw.scaleway-fr + +Uses deep learning to block adult websites. Free, DNSSEC, no logs. +Hosted in Paris, running on a 1-XS server donated by Scaleway.com +Maintained by Frank Denis - https://fr.dnscrypt.info/sfw.html + +sdns://AQMAAAAAAAAAEzE2My4xNzIuMTgwLjEyNTo0NDMg32Jzv8dSGSqLWjm8DIWsP_lkRdc2RPZicoJdNVjxof8fMi5kbnNjcnlwdC1jZXJ0LnNmdy5zY2FsZXdheS1mcg + + +## skyfighter-dns + +Uncensored, DNSSEC, no logging DNSCrypt server in Netherlands by Scaleway.com +Maintained by tuttimann + +sdns://AQcAAAAAAAAADzUxLjE1LjYyLjY1OjQ0MyDRa9y0Ck5_qrri1JzXpTlOfz7vsOpqOvgepY6nL5iXmyIyLmRuc2NyeXB0LWNlcnQuc2t5ZmlnaHRlci1kbnMuY29t + + +## skyfighter-dns-ipv6 + +Uncensored, DNSSEC, no logging DNSCrypt server (IPv6) in Netherlands by Scaleway.com +Maintained by tuttimann + +sdns://AQcAAAAAAAAAG1syMDAxOmJjODoxODI0OjE3MGY6OjFdOjQ0MyDRa9y0Ck5_qrri1JzXpTlOfz7vsOpqOvgepY6nL5iXmyIyLmRuc2NyeXB0LWNlcnQuc2t5ZmlnaHRlci1kbnMuY29t + + +## soltysiak + +Public DNSCrypt server in Poland + +sdns://AQcAAAAAAAAAFDE3OC4yMTYuMjAxLjIyMjoyMDUzICXE4YgpFUaXj5wrvbanr6QB7aBRBQhdUwPnGSjAZo8hHTIuZG5zY3J5cHQtY2VydC5zb2x0eXNpYWsuY29t + + +## sth-dnscrypt-se + +Resolver in Stockholm, Sweden. DNSCrypt server. Non-logging, non-filtering, DNSSEC. Forward DNS to anoymized DNS servers + +sdns://AQcAAAAAAAAAETQ1LjE1My4xODcuOTY6NDQzILwTiPV2Pj3sdfHJD8kVv7aK6t_rHEX2mFGAY5xg5_FiHzIuZG5zY3J5cHQtY2VydC5zdGgtZG5zY3J5cHQtc2U + + +## sth-doh-se + +Resolver in Stockholm, Sweden. DoH server. Non-logging, non-filtering, DNSSEC. Forward DNS to anoymized DNS servers + +sdns://AgcAAAAAAAAAETQ1LjE1My4xODcuOTY6NDQzABZkbnNzZS5hbGVrYmVyZy5uZXQ6NDQzBC9kbnM + + +## t53 + +Deutsche Telekom experimental DoH server. + +sdns://AgUAAAAAAAAAACA-GhoPbFPz6XpJLVcIS1uYBwWe4FerFQWHb9g_2j24OApkbnMudDUzLmRlCi9kbnMtcXVlcnk + + +## v.dnscrypt.uk-ipv4 + +DNSCrypt v2, no logs, uncensored, DNSSEC. Hosted in London UK on Vultr +https://www.dnscrypt.uk + +sdns://AQcAAAAAAAAAEzEwNC4yMzguMTg2LjE5Mjo0NDMg7Uk9jOrXkGZPBjxHt5WaI2ktfJA2PJ5DzLWRe-W0HuUdMi5kbnNjcnlwdC1jZXJ0LnYuZG5zY3J5cHQudWs + + +## v.dnscrypt.uk-ipv6 + +DNSCrypt v2, no logs, uncensored, DNSSEC. Hosted in London UK on Vultr +https://www.dnscrypt.uk + +sdns://AQcAAAAAAAAALFsyMDAxOjE5ZjA6NzQwMjoxNTc0OjU0MDA6MmZmOmZlNjY6MmNmZl06NDQzIO1JPYzq15BmTwY8R7eVmiNpLXyQNjyeQ8y1kXvltB7lHTIuZG5zY3J5cHQtY2VydC52LmRuc2NyeXB0LnVr + + +## ventricle.us + +Public DNSCrypt resolver provided by Jacob Henner + +sdns://AQcAAAAAAAAADTEwNy4xNzAuNTcuMzQg6YXxGK1OPMZf8iUgGJDG9Vi3W1pS9WsXz-rBAFyLm6olMi5kbnNjcnlwdC1jZXJ0LmRuc2NyeXB0LnZlbnRyaWNsZS51cw + + +## xfinity + +Comcast DOH server + +sdns://AgUAAAAAAAAAEjk2LjExMy4xNTEuMTQzOjQ0M6Ax_Wo8PCx8I5Gkl1qfoqes0mp4xMrk1W5GIynLLGg2syANc6YU7vdZbPWjRzP3Ta8sz-Tfe0pABpv0PEPkKCZBdw9kb2gueGZpbml0eS5jb20KL2Rucy1xdWVyeQ + + +## yandex + +Yandex public DNS server (anycast) + +sdns://AQQAAAAAAAAAEDc3Ljg4LjguNzg6MTUzNTMg04TAccn3RmKvKszVe13MlxTUB7atNgHhrtwG1W1JYyciMi5kbnNjcnlwdC1jZXJ0LmJyb3dzZXIueWFuZGV4Lm5ldA + diff --git a/v3/public-resolvers.md.minisig b/v3/public-resolvers.md.minisig new file mode 100644 index 00000000..d6391dcf --- /dev/null +++ b/v3/public-resolvers.md.minisig @@ -0,0 +1,4 @@ +untrusted comment: signature from minisign secret key +RWQf6LRCGA9i5xns+QPfUeCV9HCEkmM+CjQvTBPM7ISmZJAdA2ZDVOPxRPy2VqOnPddWtiE7ekmI49d8ntiLGrrBy9IuVxqLugQ= +trusted comment: timestamp:1592768550 file:public-resolvers.md +99UCKErRtunO5cKTn/4MPBC3y6mqilU4jsGuXtGslkrZX4YsneWP5JBOrhFdmFnmJz+CiyomB6FK11j68zUHBg== diff --git a/v3/relays.md b/v3/relays.md new file mode 100644 index 00000000..6aa11e6a --- /dev/null +++ b/v3/relays.md @@ -0,0 +1,298 @@ +# Anonymized DNS relays + +Anonymized DNS is a lightweight alternative to Tor and SOCKS proxies, +dedicated to DNS traffic. They hide the client IP address to DNS resolvers, +providing anonymity in addition to confidentiality and integrity. + +DNS Anonymization is only compatible with servers supporting the +DNSCrypt protocol. + +See the link below for more information: + +https://github.com/DNSCrypt/dnscrypt-proxy/wiki/Anonymized-DNS + + +## anon-acsacsar-ams-ipv4 + +Anonymized DNS relay hosted in AMS on Scaleway + +sdns://gRE1MS4xNTguMTY2Ljk3OjQ0Mw + + +## anon-acsacsar-ams-ipv6 + +Anonymized DNS relay hosted in AMS on Scaleway + +sdns://gRpbMjAwMTpiYzg6MTgyNDo3Mzg6OjFdOjQ0Mw + + +## anon-ams-nl + +Anonymized DNS relay hosted in Netherlands - NL + +sdns://gRE1MS4xNS4xMjQuMjA4OjQ0Mw + + +## anon-cs-ca2 + +Anonymized DNS relay hosted in CA - Vancouver provided by https://cryptostorm.is/ + +sdns://gRMxNjIuMjIxLjIwNy4yMjg6NDQz + + +## anon-cs-de2 + +Anonymized DNS relay hosted in Frankfurt, Germany provided by https://cryptostorm.is/ + +sdns://gRA4NC4xNi4yNDAuNDM6NDQz + + +## anon-cs-fr + +Anonymized DNS relay hosted in Paris, France provided by https://cryptostorm.is/ + +sdns://gREyMTIuMTI5LjQ2LjMyOjQ0Mw + + +## anon-cs-fr2 + +Anonymized DNS relay hosted in Paris, France (secondary) provided by https://cryptostorm.is/ + +sdns://gRExOTUuMTU0LjQwLjQ4OjQ0Mw + + +## anon-cs-md + +Anonymized DNS relay hosted in Chisinau, Moldova provided by https://cryptostorm.is/ + +sdns://gRMxNzguMTc1LjEzOS4yMTE6NDQz + + +## anon-cs-nl + +Anonymized DNS relay hosted in Roosendaal, Netherlands provided by https://cryptostorm.is/ + +sdns://gRExODUuMTA3LjgwLjg0OjQ0Mw + + +## anon-cs-nl2 + +Anonymized DNS relay hosted in Rotterdam, Netherlands provided by https://cryptostorm.is/ + +sdns://gRIyMTMuMTYzLjY0LjIwODo0NDM + + +## anon-cs-pt + +Anonymized DNS relay hosted in Lisbon, Portugal provided by https://cryptostorm.is/ + +sdns://gRExMDkuNzEuNDIuMjI4OjQ0Mw + + +## anon-cs-se + +Anonymized DNS relay hosted in Stockholm, Sweden provided by https://cryptostorm.is/ + +sdns://gRMxMjguMTI3LjEwNC4xMDg6NDQz + + +## anon-cs-sk + +Anonymized DNS relay hosted in South Korea provided by https://cryptostorm.is/ + +sdns://gRAyNy4yNTUuNzcuNTY6NDQz + + +## anon-cs-usca + +Anonymized DNS relay hosted in US - Los Angeles, CA provided by https://cryptostorm.is/ + +sdns://gRAyMy4xOS42Ny4xMTY6NDQz + + +## anon-cs-usga + +Anonymized DNS relay hosted in US - Atlanta, GA provided by https://cryptostorm.is/ + +sdns://gRE2NC40Mi4xODEuMjI3OjQ0Mw + + +## anon-cs-usnc + +Anonymized DNS relay hosted in US - Charlotte, NC provided by https://cryptostorm.is/ + +sdns://gRIxNTUuMjU0LjI5LjExMzo0NDM + + +## anon-cs-usnv + +Anonymized DNS relay hosted in US - Las Vegas, NV provided by https://cryptostorm.is/ + +sdns://gRAzNy4xMjAuMTQ3LjI6NDQz + + +## anon-cs-usor + +Anonymized DNS relay hosted in US - Roseburg, OR provided by https://cryptostorm.is/ + +sdns://gRExMDQuMjU1LjE3NS4yOjQ0Mw + + +## anon-cs-ustx + +Anonymized DNS relay hosted in US - Dallas, TX provided by https://cryptostorm.is/ + +sdns://gREyMDkuNTguMTQ3LjM2OjQ0Mw + + +## anon-dnscrypt.uk-ipv4 + +Anonymized DNS relay hosted in UK on DigitalOcean + +sdns://gRIxMzkuNTkuMjAwLjExNjo0NDM + + +## anon-dnscrypt.uk-ipv6 + +Anonymized DNS relay hosted in UK on DigitalOcean + +sdns://gR5bMmEwMzpiMGMwOjE6ZTA6OjJlMzplMDAxXTo0NDM + + +## anon-ev-to + +Anonymized DNS relay provided by evilvibes.com Location: Toronto, Canada + +sdns://gQw2Ni44NS4zMC4xMTU + + +## anon-ev-va + +Anonymized DNS relay provided by evilvibes.com Location: Vancouver, Canada + +sdns://gQ0yMy4xMTEuNzQuMjA1 + + +## anon-ibksturm + +Hosted in Switzerland and maintained by @ibksturm, aka Andreas Ziegler. + +sdns://gRA4NS41LjkzLjIzMDo4NDQz + + +## anon-ibksturm-ipv6 + +Hosted in Switzerland and maintained by @ibksturm, aka Andreas Ziegler. + +sdns://gS5bMmEwMjoxMjA1OjUwNTU6ZGU2MDpiMjZlOmJmZmY6ZmUxZDplMTliXTo4NDQz + + +## anon-inconnu + +Anonymized DNS relay hosted in Seattle, WA (USA), maintained by Eric +Lagergren (@ericlagergren). Running the official Docker image on Vultr. + +sdns://gRIxMDQuMjM4LjE1My40Njo0NDM + + +## anon-kama + +Anonymized DNS relay hosted in France and maintained by Frank Denis (@jedisct1). + +sdns://gRIxMzcuNzQuMjIzLjIzNDo0NDM + + +## anon-meganerd + +Anonymized DNS relay hosted by MegaNerd.nl (https://www.meganerd.nl/encrypted-dns-server) in Amsterdam, The Netherlands + +sdns://gRIyMDkuMjUwLjI0MS4yNTo0NDM + + +## anon-meganerd-ipv6 + +Anonymized DNS relay hosted by MegaNerd.nl (https://www.meganerd.nl/encrypted-dns-server) in Amsterdam, The Netherlands + +sdns://gStbMmEwNTpmNDgwOjE0MDA6NDM2OjU0MDA6MmZmOmZlYjg6OGQxY106NDQz + + +## anon-publicarray + +Anonymized DNS relay hosted in Sydney, Australia and maintained by Sebastian Schmidt (@publicarray) + +sdns://gRIxMzkuOTkuMjIyLjcyOjg0NDM + + +## anon-scaleway + +Anonymized DNS relay hosted in France and maintained by Frank Denis (@jedisct1). +Running on an instance donated by https://scaleway.com + +sdns://gRMxNjMuMTcyLjE4MC4xMjU6NDQz + + +## anon-scaleway-ams + +Anonymized DNS relay hosted in Amsterdam and maintained by Frank Denis (@jedisct1). +Running on an instance donated by https://scaleway.com + +sdns://gRE1MS4xNS4xMjIuMjUwOjQ0Mw + + +## anon-scaleway-ams-ipv6 + +Anonymized DNS relay hosted in Amsterdam and maintained by Frank Denis (@jedisct1). +IPv6 only. Running on an instance donated by https://scaleway.com + +sdns://gRpbMjAwMTpiYzg6MTgyMDo1MGQ6OjFdOjQ0Mw + + +## anon-skyfighter + +Anonymized DNS relay hosted in Netherlands (https://scaleway.com) and maintained by @tuttimann. + +sdns://gQ81MS4xNS42Mi42NTo0NDM + + +## anon-skyfighter-ipv6 + +Anonymized DNS relay hosted in Netherlands (https://scaleway.com) and maintained by @tuttimann. +IPv6 only. + +sdns://gRtbMjAwMTpiYzg6MTgyNDoxNzBmOjoxXTo0NDM + + +## anon-sth-se + +Anonymized DNS relay hosted in Sweden - SE + +sdns://gRE0NS4xNTMuMTg3Ljk2OjQ0Mw + + +## anon-tiarap + +Anonymized DNS relay hosted in Singapore + +sdns://gRMxNzQuMTM4LjI5LjE3NToxNDQz + + +## anon-tiarap-ipv6 + +Anonymized IPv6 DNS relay hosted in Singapore + +sdns://gSBbMjQwMDo2MTgwOjA6ZDA6OjVmNzM6NDAwMV06MTQ0Mw + + +## anon-v.dnscrypt.uk-ipv4 + +Anonymized DNS relay hosted in UK on Vultr + +sdns://gRMxMDQuMjM4LjE4Ni4xOTI6NDQz + + +## anon-v.dnscrypt.uk-ipv6 + +Anonymized DNS relay hosted in UK on Vultr + +sdns://gSxbMjAwMToxOWYwOjc0MDI6MTU3NDo1NDAwOjJmZjpmZTY2OjJjZmZdOjQ0Mw + diff --git a/v3/relays.md.minisig b/v3/relays.md.minisig new file mode 100644 index 00000000..627eef6e --- /dev/null +++ b/v3/relays.md.minisig @@ -0,0 +1,4 @@ +untrusted comment: signature from minisign secret key +RWQf6LRCGA9i5xRPX0ZoZco2e8P+Z6xOYuh2izHYYNX0cXaZRSzk0Kh9AsnFgMeDMM4TFTINTothN8SXlzXlZYz3F7Uj6eZnxgY= +trusted comment: timestamp:1592768550 file:relays.md +PvPWr0/XxpFQYGvWBRSp0rSdgjz3RBgpoQ6GOyeVMJk29sws+3eWubY2lcPYKWuXhGobZ7JYWyLavDRHiUtzCg==