From 7b02224217aa0b63c79842bc9079063d1157219e Mon Sep 17 00:00:00 2001 From: mia00 Date: Mon, 11 Feb 2019 10:43:41 +0000 Subject: [PATCH 1/3] Update 'what-to-do.md' --- what-to-do.md | 26 +++++++++++--------------- 1 file changed, 11 insertions(+), 15 deletions(-) diff --git a/what-to-do.md b/what-to-do.md index b8fb12dc..2699035b 100644 --- a/what-to-do.md +++ b/what-to-do.md @@ -1,21 +1,6 @@ ##### What you can do to resist Cloudflare? -###### Mozilla Firefox user - -- Don't use firefox nightly - -- Report a bug on mozilla's tracker, telling them not to use Cloudflare/TRR -(and then tell us so there's only one bug at a time) - -- Enter about:config in the address bar - Search for network.trr - Set network.trr.mode = 5 to completely disable it - -- Tell us if you see this functionality start to creep up beyond Firefox Nightly into more stable versions of Firefox - -https://ungleich.ch/en-us/cms/blog/2018/08/04/mozillas-new-dns-resolution-is-dangerous/ - ###### Website consumer - If the website you like is using Cloudflare, tell them not to use Cloudflare. @@ -77,6 +62,17 @@ Let's talk about _other software's privacy_... +###### "Mozilla Firefox" user + +- Don't use Firefox Nightly. It will send debug-level information to Mozilla servers without opt-out method. Mozilla servers are [behing Cloudflare](https://www.digwebinterface.com/?hostnames=www.mozilla.org%0D%0Amozilla.cloudflare-dns.com&type=&ns=resolver&useresolver=8.8.4.4&nameservers=). + +- ~~Report a bug on mozilla's tracker, telling them not to use Cloudflare/TRR.~~ There was a bug report on bugzilla. Many people were posted their concern, however the bug was hidden by the admin last year. + +- To disable DOH, enter about:config in the address bar, search for "network.trr" then set "network.trr.mode" to 5 to completely disable it. + +- Tell us if you see [this functionality](https://ungleich.ch/en-us/cms/blog/2018/08/04/mozillas-new-dns-resolution-is-dangerous/) start to creep up beyond Firefox Nightly into more stable versions of Firefox. + + ###### Action - Tell others around you about the dangers of Cloudflare. But don't talk with NSA employee; you'll be _definitely_ marked... just kidding! From 17ad93743c44a6a95996653e49517b0dc6424b85 Mon Sep 17 00:00:00 2001 From: mia00 Date: Mon, 11 Feb 2019 10:44:20 +0000 Subject: [PATCH 2/3] Update 'what-to-do.md' --- what-to-do.md | 1 + 1 file changed, 1 insertion(+) diff --git a/what-to-do.md b/what-to-do.md index 2699035b..a7e76b6d 100644 --- a/what-to-do.md +++ b/what-to-do.md @@ -1,6 +1,7 @@ ##### What you can do to resist Cloudflare? + ###### Website consumer - If the website you like is using Cloudflare, tell them not to use Cloudflare. From 4517bf64c9e89460662c0adebdd5f1bf8c87d139 Mon Sep 17 00:00:00 2001 From: mia00 Date: Mon, 11 Feb 2019 10:49:44 +0000 Subject: [PATCH 3/3] Update 'what-to-do.md' --- what-to-do.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/what-to-do.md b/what-to-do.md index a7e76b6d..82b6eb1a 100644 --- a/what-to-do.md +++ b/what-to-do.md @@ -67,13 +67,16 @@ Let's talk about _other software's privacy_... - Don't use Firefox Nightly. It will send debug-level information to Mozilla servers without opt-out method. Mozilla servers are [behing Cloudflare](https://www.digwebinterface.com/?hostnames=www.mozilla.org%0D%0Amozilla.cloudflare-dns.com&type=&ns=resolver&useresolver=8.8.4.4&nameservers=). +- It is possible to prohibit Firefox to connect to Mozilla servers. Create a file "distribution/policies.json" file. Search "*Firefox policies.json WebFilter*" to learn more. + - ~~Report a bug on mozilla's tracker, telling them not to use Cloudflare/TRR.~~ There was a bug report on bugzilla. Many people were posted their concern, however the bug was hidden by the admin last year. -- To disable DOH, enter about:config in the address bar, search for "network.trr" then set "network.trr.mode" to 5 to completely disable it. +- To disable DOH, enter about:config in the address bar, search for "network.trr" then set "network.trr.mode" to 5 to completely disable it. (If you really need to use non-ISP DNS, consider using [OpenNIC Tier2 DNS service(185.121.177.177)](https://wiki.opennic.org/start). - Tell us if you see [this functionality](https://ungleich.ch/en-us/cms/blog/2018/08/04/mozillas-new-dns-resolution-is-dangerous/) start to creep up beyond Firefox Nightly into more stable versions of Firefox. + ###### Action - Tell others around you about the dangers of Cloudflare. But don't talk with NSA employee; you'll be _definitely_ marked... just kidding!