Because Some Country government and ISP Tamper DNS data or other network data.
Whether at the gateway to add an encryption function,choose to protect the data of the port and interface or host.
such as: host 192.168.1.2 port 53 all data protect or encryption transfer to internet.
there has some about dns protect or encryption informations and codes.
http://www.opendns.com/technology/dnscrypt/http://www.unixwiz.net/techtips/iguide-kaminsky-dns-vuln.htmlhttps://github.com/opendns/dnscrypt-proxy/http://dnscurve.orghttp://curvedns.on2it.nethttp://nacl.cace-project.eu/above codes work in freebsd.
I Think if we can do these thing in pfsense gateway will better. Do you think?
