• dingdongitsabear@lemmy.ml
    link
    fedilink
    English
    arrow-up
    7
    ·
    3 days ago

    upgrade went without a hitch (docker), only thing needed changing is the web UI password in docker-compose.yml. everything works, UI is infinitely faster, first impressions very positive.

  • Lemmling@lemm.ee
    link
    fedilink
    English
    arrow-up
    5
    ·
    3 days ago

    Good news! Hope they implement detailed query log and support for upstream DoH DNS next.

    • Darkassassin07@lemmy.ca
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      3 days ago

      They’ve added a bit more info to the query log, when you click on individual items.

      It’s still not a native feature, but; You can add DOH using cloudflared, incl configuring which upstream(s) to use (you don’t have to use cloudflare itself, just the tool).

      There’s even a docker version.

  • Karna@lemmy.ml
    link
    fedilink
    English
    arrow-up
    6
    ·
    3 days ago

    If Pi-Hole starts supporting DoH out-of-the-box, I’ll happily switch from AdguardHome.

      • rumba@lemmy.zip
        link
        fedilink
        English
        arrow-up
        8
        ·
        3 days ago

        DNS Over Https

        Not to be confused with

        DNS Over TLS

        It’s just a way of keeping your ISP from reading your DNS requests.

        • KairuByte@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          5
          ·
          3 days ago

          Not just reading. A while back, some ISPs moved towards replacing DNS queries to known DNS servers with their own replies.

          • rumba@lemmy.zip
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            3 days ago

            Yeah, I still want to be over ISPs replacing DNS failures with their own search engines been happening for decades

      • GenderNeutralBro@lemmy.sdf.org
        link
        fedilink
        English
        arrow-up
        4
        ·
        3 days ago

        DNS over HTTPS. It allows encrypted DNS lookup with a URL, which allows for url-based customizations not possible with traditional DNS lookups (e.g. the server could have /ads or /trackers endpoints so you can choose what to block).

        DNS Over TLS (DoT) is similar, but it doesn’t use URLs, just IP addresses like generic DNS. Both are encrypted.

        • FauxLiving@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          3 days ago

          I use it in this configuration.

          It works well except, if you lose connection temporarily the cloudflared stops responding until some, long (60s or so) timeout period.

          A minor annoyance, I usually just manuirestart the service… but I cannot find the setting that is causing this.

  • ramble81@lemm.ee
    link
    fedilink
    English
    arrow-up
    5
    ·
    3 days ago

    How much is Pi-hole worth it assuming I’m using UBO and also have most non-ad based streaming services?

    I’m thinking phones and less often used devices?

    • ddh@lemmy.sdf.org
      link
      fedilink
      English
      arrow-up
      15
      ·
      3 days ago

      It’s extra protection, especially if you use non-browser apps on your devices it can limit tracking.

    • Darkassassin07@lemmy.ca
      link
      fedilink
      English
      arrow-up
      4
      ·
      3 days ago

      It’s really nice for random browsing/apps. Games, free tools, general web browsing; none of it loads ads.

      Some mobile games will even attempt to load ads, fail, then give you the reward for ‘watching’ the ad.

      It also stops devices from phoning home to upload telemetry and blocks known malware domains. (depends on the lists you use, heres a source for some lists)

    • calm.like.a.bomb@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      5
      ·
      3 days ago

      I can tell you something: I’m using some free apps on my Android phone and never notice ads at home, but when I’m on the mobile network or on a different wifi (at work or some public place) I start seeing them.

      • Confused_Emus@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        3 days ago

        This is one of the reasons why I set up a Wireguard VPN connection to my home network, and an on-demand VPN connection on my phone that automatically turns on anytime I’m not on the home network. Even away from home I get the benefits of my Pi-hole+Unbound (running as recursive resolver) setup.

        • OminousOrange@lemmy.ca
          link
          fedilink
          English
          arrow-up
          2
          ·
          3 days ago

          This is my setup too. I use WG-Tunnel to manage the VPN connection on my phone. It just monitors whenever you disconnect from your trusted WiFi network and automatically enables the VPN.

          Only hiccup I’ve found is wireless Android Auto isn’t a fan of a VPN.

    • TK420@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      3 days ago

      I layer up. Always pihole, and whatever I can run locally on a machine or browser.

    • csm10495@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 days ago

      I have both but just use pihole as a local DNS server/forwarder. I bump into too many random times where sites or redirects don’t work properly since they get blocked.

    • 4am@lemm.ee
      link
      fedilink
      English
      arrow-up
      2
      ·
      3 days ago

      I’m partial to AdGuardHome myself, but PiHole does the job well

  • chriscrutch@lemm.ee
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 days ago

    I was running Pi-hole on an actual Raspberry Pi 4 that was apparently running Raspbian 10. My upgrade did not go smoothly. But I got it and I’m liking the new version. The only issue I see so far is that the admin panel in v5 used to have a “remember me for 7 days” checkbox when logging in, this version does not.

    • Morphit @feddit.uk
      link
      fedilink
      English
      arrow-up
      6
      ·
      3 days ago

      That says it will only function for 300,000 queries per month. Based on my last 24 hours from pi-hole, that wouldn’t even last a week. Are you using a paid plan?

      • Artaca@lemdro.id
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        1
        ·
        3 days ago

        I am. Paid plan equates to like $2-3 per month. Tied it into Tailscale (I think TS has official docs explaining how) and haven’t given it another thought.

      • const_void@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 day ago

        The biggest feature for me is the ability to use it on any network (cellular, vpn, WiFi, etc). I never see ads. Pihole can’t (easily) do that.

    • Karna@lemmy.ml
      link
      fedilink
      English
      arrow-up
      8
      ·
      3 days ago

      NextDNS doesn’t support unlimited DNS query for free, I think.

    • Darkassassin07@lemmy.ca
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      3 days ago

      Little of column A little of column B.

      I use pihole on the LAN, then upstream is cloudflared translating DNS to DOH using NextDNS as the primary and Quad9 as the fallback.

      Looking at the last 24hrs; my whole LAN network has made 91k DNS requests, 14.5% of that being passed to the upstream (the rest is locally cached responses or blocked) so ~12.7k served by NextDNS. When/if that 300k limit is reached, cloudflared will just fallback to Quad9.

      With this I get the blocking from NextDNS as well as whatever additional lists I want to use; plus pihole serves local only records for self-hosted services and fixed names for LAN devices (I find standard broadcasted hostnames unreliable at best).