I use Pi-Hole and works great. I’ve heard about AdGuard and seems the same thing as PiHole, but you have to install an app/extension. Everyone in this community recommend NextDNS. Whats the difference between them?

  • Vexz@kbin.social
    link
    fedilink
    arrow-up
    1
    ·
    1 year ago

    … any app can bypass easily your DHCP DNS provided…

    In my network it can only do that if the app has a hardcoded encrypted DNS server because I use NAT rules to force all unencrypted DNS to be processed by my OPNsense (which uses NextDNS as upstream DNS servers). And I highly doubt many apps even have a hardcoded DNS server anyway (no matter if unencrypted or encrypted).

    and as I said, I don’t install any weird app on my phone, I just use it as a phone, to communicate, chat and to download podcasts to listen on night.

    That’s your personal use case but not everyone elses. I do much more with my phone. For example browsing. And I think most people do it too. Anyway, as long as you use mobile internet even your OS on your phone could spy on you with tracker domains. Most people don’t use a custom ROM so you’re just one of few people who this doesn’t apply to.

    While you just win at your local home network… xD

    Wrong. I use NextDNS so I have it everywhere. ;)

    • blkpws@lemmy.ml
      link
      fedilink
      arrow-up
      1
      arrow-down
      1
      ·
      edit-2
      1 year ago

      Wrong. I use NextDNS so I have it everywhere. ;)

      I have it everywhere too and I was talking about Pi-Hole.
      Firefox and Telegram for example has built-in DNS if I’m not wrong. (you can disable it easily)

      That’s your personal use case but not everyone elses.

      We are sharing our use cases. And my context was “I don’t understand why people even talks about Pi-Hole” and you are replying to this, not saying anything about NextDNS, just Pi-Hole.

      EDIT: Also, I think using your phone for other things is wrong, they aren’t really designed for that, they aren’t that secure as a PC can be.

      • Vexz@kbin.social
        link
        fedilink
        arrow-up
        2
        ·
        1 year ago

        and I was talking about Pi-Hole

        Well, you said “you” so I thought you were talking about me since you replied to my comment.

        Firefox and Telegram for example has built-in DNS if I’m not wrong. (you can disable it easily)

        Right. I don’t know about Telegram but in Firefoxes case I think it’s disabled by default. I specifically checked that on my Firefox so it won’t bypass my OPNsense.

        We are sharing our use cases. And my context was “I don’t understand why people even talks about Pi-Hole”

        You don’t see it, do you? First you talk about your use case but then you talk about other people. So not your use case anymore. In their use case a Pi-hole, AdGuard Home, NextDNS or whatever else maybe makes sense and isn’t a bad choice.

        EDIT: Also, I think using your phone for other things is wrong, they aren’t really designed for that, they aren’t that secure as a PC can be.

        Erm… what?? Smartphones are designed for many different things. Browsing the internet is just one of many things it’s made for. It’s called “smartphone” for a reason.

        • blkpws@lemmy.ml
          link
          fedilink
          arrow-up
          1
          ·
          1 year ago

          Firefoxes case I think it’s disabled by default

          No, it is not off by default, it is set on “Default Protection: Firefox decides when to use secure DNS to protect your privacy.”.

          You don’t see it, do you? First you talk about your use case but then you talk about other people. So not your use case anymore. In their use case a Pi-hole, AdGuard Home, NextDNS or whatever else maybe makes sense and isn’t a bad choice.

          What happened here is: People shares their use-case, I say I don’t understand why they do that, and I share my use case… I don’t understand what’s wrong with that… or what’s your problem here. It’s cool to know you are using NextDNS, it is not a self-hosted RPi that runs Pi-Hole that only works on local network.

          Then you replied me with:

          In my network it can only do that if the app has a hardcoded encrypted DNS server because I use NAT rules to force all unencrypted DNS to be processed by my OPNsense (which uses NextDNS as upstream DNS servers). And I highly doubt many apps even have a hardcoded DNS server anyway (no matter if unencrypted or encrypted).

          Which is all super cool, but not related with what I said about Pi-Hole.

          Erm… what?? Smartphones are designed for many different things. Browsing the internet is just one of many things it’s made for. It’s called “smartphone” for a reason.

          Smartphones are still phones (makes call when you type a number) but smart to have a contact list, a browser, calculator… that makes it smart, like accessing to your bank with their app that normally then ensure to be safe to use, but it wasn’t initially designed for that, it’s not a PC (I know it can do the same, but you are forcing a small device to do something that isn’t designed to do), it started without being secure by design, they needed many Android versions to start implementing security and still there is some mess with permissions. It is not designed to game, watch Instagram or stuff that makes you addicted to their content…, and then it usually gets too hot and only damages your health and the device health. Now it evolved and companies tries to make you addicted to it to collect as more data as they can to provide you some ad-targeting, while making it cheap as they can with those labor-forced works (stealing resources on other countries) to make a super-mega-fast-all-in-one device that makes you think you are a professional photographer for example, adds you fake filters… That’s all bullshit, and I think this is the main reason why kids are growing so wrongly, too many shit influencers and toxic society, people living in their bubble and browsing from devices like those. Most apps require many permissions that allow to collect many data, and NextDNS does nothing about this if those apps bypass your system DNS.