NextDNS had some connection failures with Stubby (see TLS Connection Failures - Stubby - Bug Reports - NextDNS Help Center) which might explain some of the reliability issues that have been observed.

Personally, I’d like to see two features in future versions of the GL.iNet firmware:

  • The ability to specify customer DoT resolvers. Sure, we can edit /etc/stubby/stubby.yml, but it’d be nice to be able to do it from the GUI
  • Support for DoH (using, e.g the https-dns-proxy package). Since DoH uses tcp/443, it’s less likely to be blocked than tcp/853