Enable DNS over TLS Server (optional)

The DNS Resolver can also act as a DNS over TLS server, though it does not affect outbound/forwarded queries, so this section is optional.

Only enable this feature if local clients must talk to the DNS Resolver using DNS over TLS queries.

  • Navigate to Services > DNS Resolver
•    Check Respond to incoming SSL/TLS queries from local clients
  • Select a valid server certificate in SSL/TLS Certificate
  • Leave SSL/TLS Listen Port at the default (empty or 853)
    • Click Save
    • Click Apply Changes

Use Example DNS Resolver configuration for acting as a DNS over TLS Server as a reference for the settings on this page.

Now the DNS Resolver will listen for DNS over TLS queries from local clients on port 853.


Fig. 4: Example DNS Resolver configuration for acting as a DNS over TLS Server