Two evolving improvements to DNS privacy have recently made the news: DNS over HTTPS or "DoH" and DNS over TLS (Transport Layer Security) or "DoT." We want to educate you on what these changes to DNS are, why they are coming about, and our recommendations on what companies should do to act now, as both mechanisms change how DNS operates, and they create difficulties for security administrators by circumventing established DNS security controls.