DNS is the internet's phone book, and attackers have been exploiting it for decades — yet most professionals still aren't sure how to properly defend it. In this eye-opening interview on Chris Greer's channel, host Chris sits down with Ross Gibson, an engineer at Infoblox and contributor to the latest NIST guidance on DNS security, to cut through the confusion and explain what modern DNS protection actually looks like in practice.
Ross walks viewers through the critical distinctions between four key technologies: DNSSEC, DNS over HTTPS (DoH), DNS over TLS (DoT), and the emerging DNS over QUIC (DoQ). Rather than treating them as interchangeable buzzwords, he explains exactly what problem each one solves, how they work under the hood, and — crucially — when to reach for each one. The conversation also dives into Protective DNS, a powerful but underutilized approach that analyzes client requests to proactively block threats before they cause damage.
Whether you're a network engineer hardening infrastructure, a security analyst trying to make sense of encrypted DNS traffic, or simply someone who wants to level up their understanding of how the internet actually works, this video delivers rare clarity straight from someone helping shape industry best practices. It's a masterclass in a topic that's far more important — and far more nuanced — than most people realize.


