Part of the Furniture
The encryption is only from Stubby out to the internet to your chosen DoT servers. The DNS traffic from your LAN to dnsmasq and dnsmasq to Stubby is not encrypted. Diversion works within dnsmasq, so it is logging the queries before they are encrypted.Diversion is working flawlessly in my AC86U with 384.16 merlin FW installed but I have a question about DoT, which I am using. I am still being able to see all queries from Dnsmasq on SSH client, on Diversion. Pardon me if this is an obvious one but should'nt it be encrypted and not visible from the log?
Thanks in advance.