Debug DNS calls from qubes

I see some strange looking DNS calls (see attached image) in my router originating from the Qubes Laptop.

  1. Anyone know what these calls are?
  2. I want to see which application is making these calls. How do I go about debugging this?

Isn’t it (just) part of RFC 6763:

– the example RFC 6763 - DNS-Based Service Discovery suggests that _http._tcp should be searching for webservers for the domain https.

Disclamer: I’ve just searched for the string and not read the full RFC.


you would have to run opensnitch in each qubes to watch which program is doing what on the network