this post was submitted on 07 Jun 2025
279 points (98.9% liked)

Technology

71083 readers
3092 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 

DNS set up guidelines.

Protective resolution ad-blocking

IP address: 86.54.11.13

IPv6: 2a13:1001::86:54:11:13

DNS over HTTPS: noads.joindns4.eu/dns-query

DNS over TLS: noads.joindns4.eu

you are viewing a single comment's thread
view the rest of the comments
[–] undefined@lemmy.hogru.ch 3 points 20 hours ago (1 children)

This confuses the fuck out of me because my VPN in Switzerland using TLS DNS shows Germany as the country in DNS leak tests.

The Swiss DNS provider doesn’t have servers in Switzerland?

[–] Glitchvid@lemmy.world 4 points 17 hours ago* (last edited 17 hours ago) (1 children)

Quad9 is a Swiss org, but it operates at hundreds of PoPs inside many different countries (anywhere PCH has a presence), their addresses are anycast so it'll use whatever the upstream routes/BGP dictate.

Both Quad9 and CloudFlare have the closest DNS for my network, at around 1ms RTT. However CloudFlare doesn't support ECS, so I use the alternate Quad9 service that does, since it gives me better performance on a number of CDNs.

[–] undefined@lemmy.hogru.ch 2 points 9 hours ago (1 children)

Right, I understand all that but I still can’t figure out why DNS is going to a 14 Eyes country instead of staying in Switzerland.

[–] Glitchvid@lemmy.world 2 points 3 hours ago* (last edited 3 hours ago) (1 children)

If it was a simple geoip lookup that isn't really reliable wrt anycast addresses (or even addresses in general).

9.9.9.9 for example gets reported as Berkely, CA (US). Which is only partially accurate, for complicated business holding and ASN reasons, but is not representative of what DNS PoP you're actually using at any given time.

[–] undefined@lemmy.hogru.ch 1 points 2 hours ago

That’s true and that all makes sense. I guess I kind of forget because generally the IP address is physically very near to where I’m testing from.

I just switched to a Swiss DNS resolver regardless. I like Quad9’s malware blocking but it’s more important to me to keep the DNS server in Switzerland (despite it needing to query outside the country regardless).