Ask Your Question

Revision history [back]

Wireshark, DNS Over HTTPS, and NextDNS

Is there any way to get Wireshark to make direct DNS lookups using DNS Over HTTPS (DOH)? If not, is there any plan to support this? This seems like a strange omission for a major network security tool.

I can configure browsers like Firefox to do this with a Trusted Recursive Resolver (TRR) URL like https://dns.nextdns.io/<nextdns id="" for="" macos="" device="">/Firefox/ in about:config so that DNS lookups are listed as coming from not only my macOS device, but Firefox on that device specifically, but there doesn’t seem to be any way to do this in Wireshark or to even have it use DNS Over HTTPS at all unless it’s using the default OS resolver.

Wireshark, DNS Over HTTPS, and NextDNS

Is there any way to get Wireshark to make direct DNS lookups using DNS Over HTTPS (DOH)? If not, is there any plan to support this? This seems like a strange omission for a major network security tool.

I can configure browsers like Firefox to do this with a Trusted Recursive Resolver (TRR) URL like https://dns.nextdns.io/<nextdns id="" for="" macos="" device="">/Firefox/ https://dns.nextdns.io/[NextDNS ID for macOS Device]/Firefox/ in about:config so that DNS lookups are listed as coming from not only my macOS device, but Firefox on that device specifically, but there doesn’t seem to be any way to do this in Wireshark or to even have it use DNS Over HTTPS at all unless it’s using the default OS resolver.