Can unbound answer both DoH and DoT on the same port ?

Peter Hessler phessler at theapt.org
Thu Jan 11 18:26:32 UTC 2024


On 2024 Jan 11 (Thu) at 10:22:39 -0800 (-0800), ch--- via Unbound-users wrote:
:On Mon, 8 Jan 2024, Yorgos Thessalonikefs via Unbound-users wrote:
:
:> You would have additional difficulties since after the TLS handshake DoT
:> would expect DNS data and DoH would expect HTTP data.
:
:
:I guess that is part of my question ...
:
:I wonder if unbound is flexible enough to discern that a request is either
:DoH or DoT and then answer with the matching protocol ?
:
:Is that a silly idea ?
:
:
:Thank you.
:

That isn't possible.  The clients would expect different behaviour than
what the server is providing.

Not to mention, the clients would be connecting to different ports.
DoT uses 853, and DoH uses 443.



-- 
Art is anything you can get away with.
		-- Marshall McLuhan.


More information about the Unbound-users mailing list