SURF has 3 DNS resolvers for its customers to use:
It is only possible to use the SURF resolvers if your Internet connection runs via the SURF network, and your institute's security policy allows you to configure your resolver. If in doubt, please contact your local system administrator or IT service centre.
The SURF DNS resolvers also support DNS-over-TLS. If you want to use the strict profile for DNS-over-TLS, you need a public key fingerprint. For all SURF DNS resolvers, this fingerprint is: