@Suiseiseki@freesoftwareextremist.com Not going to happen for a self-hosted recursive resolver, at least not until all domain names in the world have encrypted DNS. You can trust a 3rd party and encrypt the last-mile link, but it just pushes the problem to the upstream instead.