Description
SecretDNS is a DNS filtering software designed to provide security, privacy, and internet access control. It is aimed at businesses, schools, organizations, and even individual users who want to protect their networks from online threats, block unwanted content, and ensure safe browsing. SecretDNS acts as a DNS resolver that filters domain queries based on user-defined policies.
Main Features of SecretDNS:
- Only specified domains can perform SNI fragmentation:
- SecretDNS allows the fragmentation of Server Name Indication (SNI) to be applied only to selected domains. This means you can configure which sites will have the SNI fragmented, reducing impact on other domains and maintaining performance.
- SNI fragmentation helps hide information about accessed sites, making interception by third parties more difficult.
- Protect your DNS with DNS over HTTPS:
- Supports DNS over HTTPS (DoH), a protocol that encrypts DNS queries using HTTPS (port 443). This prevents internet service providers, hackers, or other agents from monitoring or manipulating DNS queries, ensuring greater privacy and security.
- Ability to bypass SNI listening (HTTP/HTTPS):
- Includes features to avoid SNI listening, a method used by firewalls or monitoring systems to identify accessed domains in HTTP/HTTPS connections. SecretDNS fragments or obscures the SNI, making traffic analysis by third parties more difficult, such as in restrictive or censored networks.
- Fragmentation limited to the SNI string to minimize slowdowns:
- Fragmentation is limited to the SNI string (part of the TLS handshake that identifies the requested domain), avoiding unnecessary processing of other data. This reduces the impact on connection speed, ensuring smoother browsing.
- Minimize access issues through whitelists:
- Allows the creation of whitelists to ensure that trusted domains are accessed without restrictions or fragmentation. Useful for preventing accidental blocking of legitimate sites or for improving compatibility in networks with strict security policies.
- Usage through the specification of a DNS server with packet bypass, without changing Windows settings:
- SecretDNS can be configured to redirect DNS queries to a specific server without the need to modify Windows network settings. It uses packet bypass techniques, allowing for a simple and non-intrusive implementation, ideal for users who wish to avoid manual system changes.
- Easy checking of accessed site information:
- Offers an interface or functionality that allows viewing information about accessed sites, such as queried domains, blocking status, or connection details. Very useful for monitoring and auditing, especially in corporate or educational environments.