Forum Discussion
DnsOverHttpsTemplatesWithIdentifiers forcibly hashes all variables, making them useless
Hi,
I could have sworn it was un-hashed before, but I'm clearly hallucinating.
That being said, there is a very valuable use case here which avoids all this needless complexity: https://docs.infoblox.com/space/BloxOneThreatDefense/1227128856/ChromeBook+DOH+Enrollment+(MV3+ChromeOS)
The security angle comment is a bit puzzling, if TLS is compromised an email in a DOH endpoint URI would be the least of one's worries. I feel this should be up to the end user to decide if they want to hash the variables, or not. Default behavior can remain the same, but giving the option to not hash would significantly simplify onboarding and deployment for org admins.
We're a vendor of such an offering, and our customers (several schools) are asking for this capability, which is why I'm here.
I really hope this request can be put on the roadmap.
Thanks
Related Content
- 4 months ago