The author merely suggests that those 29 or in someway trusted by a lot of people to handle DNS queries. Those 29 also publish information on what properties the service have. If you read the whole page, the author also lists other publi DNS resolvers worth a mention.
For the long tail of unknown open DNS resolvers, use Shodan. But I would not suggest that you use any findings from Shodan to trust your internet usage with.
Yes, SNI is a generic internet privacy problem. However, it is not a property of DNS. On the positive side, ECH has been pushed through the IETF and should slowly be available to the general user.
It seems like the development of SoftHSM2 has stalled quite a bit. There is still a lot of user interest, but very little action in terms of management of the project. There are many pull requests and issues raised by users, but very little in terms of taking care of those.
SoftHSM was originally developed as a PKCS#11 and HSM test platform for OpenDNSSEC, but later took on a life on itself. The reason for that is that there is a lot of need to use software that talks to Hardware Security Modules, but without actually spending the cash of buying one, mostly for development. But it has also become a cornerstone of a lot of other products, for example IBM Red Hat Identity Management.
NLNet Labs states in the GitHub issue linked: "Given the above, the current state is that development on SoftHSM v2 is dormant and not likely to pick up significantly in the near future. We are conferring as a team on how to proceed in the future, but this will likely take us until at least the summer of 2024."
So the future of SoftHSM does not look very great. Are there any organizations reading this willing to take up this challenge, and make the future of this small "insignificant" open source project great again?
Yes, export regulations were heavy back then. To have proper SSL in your Netscape, you had to import this patch file from Australia. And then we had this whole Crypto Wars thing going on. Look at Steven Levy's excellent book on the subject, or search on the Wired archives.
The downside of this is that the lookup is done online, and every use of an individual is tracked per service. This is not something that I am comfortable with.
You should probably be more freaked out by your phone. It collects this data by default and sends it to Google or Apple. I think that Google still has an API for querying their database.
Is there a privacy friendly analytics tool that does not set cookies and store data Forever? I don't really care about perfect user analytics, just good enough. Maybe by analysing logs. In the 90's there was s lot of good tools like this, but now everybody has gone cloud. I can't imagine the tools offered today are compatible with GDPR.
For the long tail of unknown open DNS resolvers, use Shodan. But I would not suggest that you use any findings from Shodan to trust your internet usage with.
Yes, SNI is a generic internet privacy problem. However, it is not a property of DNS. On the positive side, ECH has been pushed through the IETF and should slowly be available to the general user.
/ The author