Measuring DoH with web ads Articles uri icon

publication date

  • July 2022

start page

  • 1

end page

  • 12

issue

  • 109046

volume

  • 212

International Standard Serial Number (ISSN)

  • 1389-1286

Electronic International Standard Serial Number (EISSN)

  • 1872-7069

abstract

  • In this paper we present a large measurement study of the impact on the performance of the adoption of HTTPS as a transport for the DNS protocol (DoH) with public resolvers compared to the existent approach of using non-encrypted transport of DNS queries with the resolver services locally provided by ISPs. Using on web-ads as the mean to execute our tests, we perform over 42 million measurements from more than 4 million vantage points distributed in 32 countries and served by over 2,500 ISPs. We find that, the median resolution time increased 17 ms when using DoH with Cloudflare, 41 ms when using DoH with Quad9, 68 ms when using DoH with Google and 170 ms when using DoH with DNS.SB, compared to using Do53 with the local resolver for a non-cached name. We find similar increases even when using caching. The results presented in the paper contribute to the ongoing discussion of the tradeoffs involved in the combined adoption of public resolvers and DoH.

subjects

  • Information Science
  • Telecommunications

keywords

  • dns; security; doh; measurements