Closed Bug 1664878 Opened 4 years ago Closed 7 months ago

Roll out DoH on Android

Categories

(Fenix :: Privacy, enhancement)

enhancement

Tracking

(Not tracked)

RESOLVED DUPLICATE of bug 1801530

People

(Reporter: nhnt11, Unassigned)

References

(Blocks 1 open bug)

Details

(Keywords: parity-chrome)

  1. Prefs UI
  2. Heuristics
  3. Regional rollouts
  4. etc

👆All need to be supported on mobile.

Priority: -- → P3

(In reply to Nihanth Subramanya [:nhnt11] from comment #0)

  1. Prefs UI

Tracked in https://github.com/mozilla-mobile/fenix/issues/4584

(In reply to Valentin Gosu [:valentin] (he/him) from comment #1)

(In reply to Nihanth Subramanya [:nhnt11] from comment #0)

  1. Prefs UI

Tracked in https://github.com/mozilla-mobile/fenix/issues/4584

Thanks! I wondered if some of these were already being tracked elsewhere. I almost made this a general bug for supporting a mobile rollout e.g. any patches needed for heuristics compatibility and config infra. Maybe that actually makes sense... I might update the bug later if this ages well in my head.

I think steps 2-3 belong in GeckoView anyway, so it's OK to keep this bug for that work.

Severity: -- → N/A
Component: Security → Privacy
Keywords: parity-chrome
Priority: P3 → --
Product: Firefox → Fenix
Summary: Roll out DoH on mobile → Roll out DoH on Android

DoH is not enabled by default in Firefox on Android yet due to performance issues.

It makes complete sense to avoid a large scale perf hit for the entire userbase. But if this setting is at least exposed in the UI, users can test different servers and select the fastest one.

There could be a "Learn more" link pointing to a SUMO page, which further points to https://dnsprivacy.org/public_resolvers/#dns-over-https-doh or https://github.com/curl/curl/wiki/DNS-over-HTTPS#publicly-available-servers, so that users are aware of their choices.

Right now, users have to resort to variants or forks that expose about:config, and set the TRR settings that way.

As a work around, starting with Android 9, there should be a system-wide setting for Private DNS, see Cloudfare blog.
In addition to the info in the blog, they now have one.one.one.one DoH endpoint.

Closing as duplicate of bug 1801530. Please re-open if this is incorrect.

Status: NEW → RESOLVED
Closed: 7 months ago
Duplicate of bug: 1801530
Resolution: --- → DUPLICATE
You need to log in before you can comment on or make changes to this bug.