Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Doh and chat gpt

    Scheduled Pinned Locked Moved DHCP and DNS
    9 Posts 4 Posters 107 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JonathanLeeJ Offline
      JonathanLee
      last edited by

      Has anyone else noticed that chat gpt is having issues with cloud flare and is expecting DoH for it to work ….. wow that’s gonna open a can of worms for dns blocking package as once it’s open everyone will go use that DoH server ….

      Make sure to upvote

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG Offline
        Gertjan @JonathanLee
        last edited by

        @JonathanLee said in Doh and chat gpt:

        having issues with cloud flare

        Well, here in Europe most news outlets, since this morning, let's say around "12h00 GMT" informs us that Cloud Flare has mega issues world-wide.
        A bit like AWS (Amazon) a couple of weeks ago.
        I've already found some business sites that I use that telle me :

        3687eab7-cf29-47d9-b956-2e6e82fea2ac-image.png

        So, my company uses accounting software is down for me (a local Windows 11 execrable that uses a login that use CloudFlare ...).

        The big ones that are out : Chat-something and Twitter (X).

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        johnpozJ 1 Reply Last reply Reply Quote 0
        • johnpozJ Online
          johnpoz LAYER 8 Global Moderator @Gertjan
          last edited by johnpoz

          @Gertjan yeah this wasn't just EU, maybe it started there but this was global

          https://www.techradar.com/pro/live/a-cloudflare-outage-is-taking-down-parts-of-the-internet

          Just google cloudflare outage.. All the sites I was having issues with are now back online.

          They put out their post-mortem

          https://blog.cloudflare.com/18-november-2025-outage/

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

          1 Reply Last reply Reply Quote 0
          • provelsP Offline
            provels
            last edited by

            The next world war should be a hoot!

            Peder

            MAIN - pfSense+ 25.07.1-RELEASE - Adlink MXE-5401, i7, 16 GB RAM, 64 GB SSD. 500 GB HDD for SyslogNG
            BACKUP - pfSense+ 23.01-RELEASE - Hyper-V Virtual Machine, Gen 1, 2 v-CPUs, 3 GB RAM, 8GB VHDX (Dynamic)

            1 Reply Last reply Reply Quote 0
            • JonathanLeeJ Offline
              JonathanLee
              last edited by

              https://redmine.pfsense.org/issues/14558

              I mean there has to be a way to make doh work and clients use pfSense to resolve doh

              Make sure to upvote

              GertjanG 1 Reply Last reply Reply Quote 0
              • JonathanLeeJ Offline
                JonathanLee
                last edited by

                https://forum.netgate.com/topic/195948/mime-type-for-doh

                It can be parsed in traffic

                Make sure to upvote

                1 Reply Last reply Reply Quote 0
                • GertjanG Offline
                  Gertjan @JonathanLee
                  last edited by Gertjan

                  @JonathanLee said in Doh and chat gpt:

                  I mean there has to be a way to make doh work and clients use pfSense to resolve doh

                  Unbound ... using Using DoH implies that the pfSense GUI, also listening on port 443, TCP, has to 'go elsewhere'. Hummm ...
                  This nghttp2 library, and all it's dependencies (!) has to be included / compiled in.

                  Just so I understand this feature request : local DoH would be nice if you can't trust your local LANs, right ? This would be your own cables and Wifi links ... That's why ?

                  How does the LANs client side work ? This won't be 'plug and play'. There is, imho, no such thing as 'tell the DHCP server to tell de DHCP client that there is a DoH DHCP option' which means that every DoH has to be setup 'manually = manual DNS DoH setup for every device.

                  @JonathanLee said in Doh and chat gpt:

                  https://forum.netgate.com/topic/195948/mime-type-for-doh

                  Wait ...
                  You want DoH ?
                  Or you don't want (block), DoH ?

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  JonathanLeeJ 2 Replies Last reply Reply Quote 0
                  • JonathanLeeJ Offline
                    JonathanLee @Gertjan
                    last edited by

                    @Gertjan it’s a test I can block and spot the DoH with Squid fully if you block all so many windows 11 items stop working. It’s a fun test to play with from a cyber security perspective.

                    Make sure to upvote

                    1 Reply Last reply Reply Quote 0
                    • JonathanLeeJ Offline
                      JonathanLee @Gertjan
                      last edited by

                      @Gertjan does any rfc like
                      RFC8484 exist info on how to do that

                      Make sure to upvote

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.