Skip to content

DNS-over-TLS

DNS-over-TLS (DoT) is a security protocol that encrypts and secures your DNS queries across all devices.

Why use DNS-over-TLS?

  • Encrypts DNS traffic using TLS (port 853).
  • Prevents eavesdropping and DNS spoofing.
  • System-wide protection (covers all apps).
  • Works natively on many platforms.

DoT Endpoints

TypeHostnameUse Case
Defaultdns.mininxd.xyzRegular secure browsing with ad/tracker blocking
Familyfamily.dns.mininxd.xyzFamily-friendly content filtering with adult content blocking

Android Setup

  1. Go to Settings > Network & Internet > Private DNS.
  2. Choose Private DNS provider hostname.
  3. Enter:
    • For standard DoT: dns.mininxd.xyz
    • For family-friendly DoT: family.dns.mininxd.xyz
  4. Tap Save and wait a moment for it to connect.

iOS Setup

unfortunately iOS does not natively support DoT. Use third-party apps like:

  • DNSCloak (App Store)
  • NextDNS

Linux Setup (systemd-resolved)

bash
sudo nano /etc/systemd/resolved.conf

Update the config:

bash
[Resolve]
# For standard DoT:
DNS=dns.mininxd.xyz
# For family-friendly DoT:
# DNS=family.dns.mininxd.xyz
FallbackDNS=1.1.1.1
DNSOverTLS=systemd-resolved

Then restart :

bash
sudo systemctl restart systemd-resolved