• SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Advanced search results

Better search

Select: Post content
Keywords: ControlD
Posted by:
Search forums: All forums
Results count: 173

  1. yegor
    - 5 Posts - yegor
    You should try pinging dns.controld.com and dns.nextdns.io and see if you get a response. For Control D specifically you can visit this exact URL: https://dns.controld.com/info If it doesn't load then the domain or IP address is resolves to is blocked on your network.
  2. Tech9
    - 5 Posts - Tech9
    I would first disable DNS Director for this device and try again. If your phone is using DoT to NextDNS or ControlD - the requests are blocked.
  3. kuki68ster
    - 5 Posts - kuki68ster
    ...target eth7 ssid 7c:10:c9:e5:b9:6c Feb 13 22:25:28 bsd: bsd: STA:16:82:60:35:5f:1d no response If i set a private dns (nextdns or controld) in my s23 ultra, the internet in my device gets cut...If i disabled the option in my smartphone, it gets acess to the internet... I deleted unbound...
  4. H
    - 40 Posts - HarryMuscle
    ...-R DNSFILTER $rule_number -d $lan_ip} # Increase the rule number counter rule_number=$(( rule_number + 1 )) done fi exit 0 ControlD ctrld utitlity copied to /jffs/scripts and made executable: https://github.com/Control-D-Inc/ctrld...
  5. Yota
    - 30 Posts - Yota
    In my previous tests, I found that a fatal flaw of DNS Filter/Director is that it cannot forward to local addresses, such as 127.0.0.1, DNS Filter/Director will only create rules in NAT, and then forward the rules to the modem of the upstream ISP rather than a service running locally. Maybe...
  6. H
    - 30 Posts - HarryMuscle
    I did exactly what you are looking for using this utility from ControlD https://github.com/Control-D-Inc/ctrld and a script that rewrites the iptable rules in the DNSFILTER chain to reroute clients to this utility. My setup basically adds DoT support to the DNS Filter/Director functionality...
  7. T
    - 5 Posts - TheDaveAbides
    ...T-mobile Home Internet. I'm now debating what DNS/filtering to go with, as NextDNS hasn't bothered to do much with device IDs as well. I was hoping to not install mobile configs on devices, but that seems like the easiest way to get the correct security as well as ID devices. Checking out...
  8. H
    - 6 Posts - HarryMuscle
    You mean instead of using ControlD? Definitely no. ControlD is a few clicks and everything is done. Running PiHole is way more work.
  9. H
    - 6 Posts - HarryMuscle
    I'm using ControlD DNS servers to block ads and I have Enable DNS Rebind Protection set to Yes on the WAN page, however, whenever a blocked domain gets queried (which ControlD returns NXDOMAIN for) I get the following message in my logs: DATE dnsmasq[1729]: possible DNS-rebind attack detected...
  10. drinkingbird
    - 40 Posts - drinkingbird
    Doubt that is going to get added to merlin unless Asus changes to it. To clarify a bit what has been said already: Set DNS Director to on and mode to "router". That will force any client doing a DNS lookup on port 53 to use the router's DNS, no matter what IP they try to lookup to. It can be...
  11. H
    - 40 Posts - HarryMuscle
    Thanks, that's exactly what I was trying to ask. BTW, there's a new tool from the Windscribe/ControlD people that would be a great replacement and enhancement to DNSFilter/Director. Here's the link: https://github.com/Control-D-Inc/ctrld It's basically a command line version of...
  12. wbennett77
    - 885 Posts - wbennett77
    Would you mind sharing your dot settings. Thanks!
  13. R
    - 885 Posts - rafaj90
    I can confirm this has been now fixed by the ControlD team, you should be good to upgrade now.
  14. R
    - 885 Posts - rafaj90
    I can confirm this has been now fixed by the ControlD team, no longer have to choose between upgrading or CD!!! I can confirm ControlD is working with 388.1 as of today, going strong for several hours now, no issues. Everyone who was having issues prior should be good to go and upgrade now.
  15. bluzfanmr1
    - 885 Posts - bluzfanmr1
    FYI, for anyone that was having issues with DoT and ControlD, it looks like they have fixed the issue and all is well again according to my testing.
  16. L&LD
    - 2 Posts - L&LD
    Advanced search results | SmallNetBuilder Forums (snbforums.com)
  17. bluzfanmr1
    - 885 Posts - bluzfanmr1
    To follow up on my earlier post about this...it definitely is a ControlD issue. Using Quad 9 or any other provider is working fine for me.
  18. Zastoff
    - 7 Posts - Zastoff
    Here is a guide for nextdns/controld dns service for dnscrypt-proxy Also recommend to set DNS-Director to global mode =Router Not sure but you may need to change in VPN-director so it uses the routers internal address as dns in my case 192.168.1.1 then dns will go thru dnscrypt-proxy To...
  19. C
    - 885 Posts - clavas
    Exact same thing happened to me using Quad9 DoT on my AX6000 after upgrading to 388.1 The issue only happens after a router reboot - no clients have DNS to access any websites but router itself can access internet for firmware upgrade check, DDNS client etc I have had to disable DoT as a...
  20. bluzfanmr1
    - 885 Posts - bluzfanmr1
    ...on my GT-AX6000 it appears that stubby/DoT isn't working correctly, at least for me. At first I thought it was the dns servers I was using, ControlD. So I tried Cloudflared and it does the same thing. Can anyone else check and see if they are seeing the same thing? When I run stubby -l it...
  21. RejZoR
    - 12 Posts - RejZoR
    No, I'm using NextDNS as stated in the post.
  22. bluzfanmr1
    - 12 Posts - bluzfanmr1
    Are you by chance using ControlD for your dns? Several of us have had similar issues when upgrading to 388.xx and we all seem to be using ControlD dns.
  23. R
    - 885 Posts - rafaj90
    ...you)!!! I’m not sure the firmware update is the sole culprit here since other DoT providers work just fine with 388.1, I’m guessing that ControlD’s DoT implementation is different than let’s say, NextDNS or AdGuard 2.0, and that is generating now a conflict with something that changed with...
  24. marclafountain
    - 885 Posts - marclafountain
    I'm also having this issue. Control D with DNS-over-TLS (DoT) was working fine under 386.7_2 on my GT-AX11000. Under 388.1 it no longer works. I will downgrade back to 386.7_2 shortly unless anyone has a solution to share. All of that said, many thanks to @RMerlin for adding WireGuard support...
  25. bluzfanmr1
    - 885 Posts - bluzfanmr1
    After reading this, I believe I had this problem as well on my brand new GT-AX6000. I use ControlD and had the same symptoms. I didn't have time to troubleshoot so I went back to 386.7_2 until I can work on it tomorrow.
  26. R
    - 885 Posts - rafaj90
    I can confirm this on my GT-AX11000, I’m having the same issue with ControlD using DoT at a router level. The WAN connection is detected by the router (IP assigned and everything) but there’s no internet connectivity on any device and I can’t see any DNS queries coming from the router being...
  27. pmcarrion
    - 885 Posts - pmcarrion
    DoT doesn't work with Control D on 388.1 on my RT-AX88U. I couldn't get an Internet connection from any device using the router's DNS server. Devices and browsers using DoH were unable to connect either. The only exception is my laptop using dnscrypt-proxy. I reverted to 386.8 and everything...
  28. A
    - 901 Posts - ajp2k14
    Any suggestions? Nobody uses ControlD as their DNS provider?
  29. A
    - 901 Posts - ajp2k14
    ...with the 388.1 betas but only with my dns-provider as far as I can tell, Quad9/Cloudflare etc seem to work. It used to work fine in 386.7. I have tried Dnsmasq and Stubby logging as you can see in the support thread at ControlD here: ControlD Feedback Any suggestions how I can troubleshoot this?
  30. J
    - 1 Posts - jim trudel
    hi, I really like https://controld.com/free-dns/? and I try to use it on my toml file with stamp https://dnscrypt.info/stamps but it does not work, maybe you could help me? this is the address to use :for DOH/3 : https://freedns.controld.com/no-ads-dating-gambling-drugs-malware-typo...
  31. A
    - 901 Posts - ajp2k14
    Opportunistic mode works so I don't know what has changed, always used to run strict mode.
  32. skeal
    - 901 Posts - skeal
    I don't think this is the same problem as I'm having.
  33. A
    - 901 Posts - ajp2k14
    The strange thing is, I don't have local dnssec validation enabled anywhere and it only happens with ControlD DoT-servers. At least CF and Quad9 works... It would be great if someone could try their free DoT servers and see if it works for them (I use their paid version). For example...
  34. B
    - 901 Posts - bbunge
    I too had some DNS failures with DNSSEC enabled yesterday. Initially I had enabled DNSSEC in Stubby, which I noticed is a new version, and then with the default Dnsmasq DNSSEC. Am running DoT to Quad9. Will try again later today. Otherwise all is great! Loaded Diversion via AMTM.
  35. A
    - 901 Posts - ajp2k14
    I don't know if this is the same problem but I ran into dns problems after upgrading to 388.1b. I had DoT configured on the router for ControlD and after the upgrade dns resolution failed almost completely. If I changed to Cloudflare or Quad9 it worked again. Not sure what happed, had to make a...
  36. bluzfanmr1
    - 9 Posts - bluzfanmr1
    https://controld.com/free-dns/ They do have a free dns with tons of options. I've been using it since it came out and it's been better than anything else I've tried.
  37. H
    - 149 Posts - HappyJuicy
    You can use there DNS with no blacklist
  38. P
    - 149 Posts - Paliv
    ControlD is good if you pay for it and can whitelist things. Their free adblocking DNS breaks a lot of services.
  39. H
    - 149 Posts - HappyJuicy
    I highly recommand ControlD owned by windscribe https://controld.com/free-dns/ or Mullvad DNS
  40. SomeWhereOverTheRainBow
    - 1037 Posts - SomeWhereOverTheRainBow
    ...that is your choice. But I hope you understand the considerations you lose out on. The only sections I would edit is: 1.1.1.2 9.9.9.9 tcp://1.1.1.2 tcp://9.9.9.9 replacing it with https://security.cloudflare-dns.com/dns-query https://freedns.controld.com/p1 https://doh.opendns.com/dns-query
  41. F
    - 1037 Posts - FIN
    ...9.9.9.9 tcp://1.1.1.2 tcp://9.9.9.9 to this (like on my pi3 adguard home) https://security.cloudflare-dns.com/dns-query https://freedns.controld.com/p1 https://doh.opendns.com/dns-query will it work? PS on Wan page: DNS-1 1.1.1.2 DNS-2 9.9.9.9 Forward local domain queries to...
  42. P
    - 500 Posts - primitivo
    Strange issue just happened, I was about to blame ControlD but all of the sudden noticed AGH is not working on my R9000! I have router uptime 48 days (which is very good of course). It seems like for whatever reasons AGH went down and did not restart despite having "restart at connection...
  43. laracroftonline
    - 4 Posts - laracroftonline
    https://controld.com/ https://www.rethinkdns.com/
  44. F
    - 504 Posts - Frank Monroe
    I will give you another example. There is a neat DNS filtering/redirection service called ControlD. Some of its features require IPv6. Who knows how many people use this service. But you said, "What isn't working with IPv4 only." Here is another example.
  45. P
    - 8 Posts - primitivo
    ...this thread and my response. Actually I don't mind this behaviour (whether intended or not), because I use Wireguard with DoT profiles from ControlD.com on R9000. I was rather seeking for some more confirmation whether using WG client on Asus router would indeed fall back to DoT DNS or if...
  46. R
    - 193 Posts - R. Gerrits
    This seems to be an issue inside Adguard, and have nothing to do with Kamoj or Aegis. Better check this issue directly with Adguard. Perhaps they can advice you to check some logs or so, or enable debug logging.
  47. P
    - 193 Posts - primitivo
    Thanks for clarification but I don't think everything works properly as it should. I will give you an example: 1. I use ControlD with 2 profiles: Main profile and let's call it Android TV profile. 2. Each profile gets its own DoH / DoT URL. 3. In Adguard's main upstream DNS settings I put Main...
  48. kamoj
    - 332 Posts - kamoj
    Thank you for the reports. The reason is probably that the supervision in the router uses ping and the Netgear "detcable" to check connection. Both of these successfully use brwan/ppp0 and not the tunnel (tun21/wg0). The next add-on fixes this problem, but I have no time to release it now.
  49. jberry
    - 332 Posts - jberry
    AH okay!! I do remember when I was not using AdGuard (thanks for the recommendation by the way), that when I would disconnect WAN (lose connection) and my R9000 would reconnect, I would still have VPN wireguard access (internet is working), when I go home I can check what settings I have for the...
  50. P
    - 332 Posts - primitivo
    I have PPPoE static IP, so that's not about changing IP. Also I had this issue before I started using Adguard, DoH and DoT (ControlD). So that's not it. Question is why kamoj plugin fails to recognize there is no internet? It should recognize it and start retrying the VPN connection. Also the...
  51. Thang
    - 332 Posts - Thang
    Thank you very much. This help is extremely useful for users who have little knowledge about VPNs and many other things.
  52. jberry
    - 332 Posts - jberry
    ...= ServerAddress:PortNumber Hello primitivo, thanks for the reply, I'm starting to understand how beneficial your setup is, especially with ControlD. I rarely do any torrenting, maybe like once a year haha, I just do newsgroups also not often, but I always connect via SSL. So that might be...
  53. P
    - 332 Posts - primitivo
    You have to see how it will work out for you. I am in the UAE and I am using Boston server in the USA on ControlD for Disney+. To USA Boston I have around 200ms. The latency when it comes to streaming does not really matter that much as long as the connection is good and fast. I use ControlD via...
  54. jberry
    - 332 Posts - jberry
    Thank you so much for your lengthy reply. I do remember ControlD when they were first beta testing it, and I did try some settings with R.O.B.E.R.T. such as ad blocking, to see if I would like ControlD (like a better version of R.O.B.E.R.T.) but sometimes the ad blocking would not have the...
  55. B
    - 332 Posts - blueliner
    Hello, If you want to make it more likely for the VPN devices to use the VPN DNS, you could put only the VPN DNS in the Kamoj Add-on's "Custom DNS" on the Settings page. When I do that, leak tests only show the VPN DNS - but then devices that bypass the VPN do not use AdGuard but instead use...
  56. P
    - 332 Posts - primitivo
    ...that the local ones. You can then verify the resolvers via Query Log on Adguard Home (highly recommended). Alternatively you can try controld.com - it is smart DNS by Windscribe, think of it as much better version of R.O.B.E.R.T . You can try it for free for 30 days and if you have...
  57. jberry
    - 332 Posts - jberry
    Yes, the same thought has crossed my mind too, that the DNS in the wireguard config file is "disregarded" and the main DNS in the router is used. The only problem I have with that is, some VPN providers like Windscribe ( I have a residential IP with them ), their DNS for R.O.B.E.R.T is...
  58. P
    - 332 Posts - primitivo
    ...the way Adguard works but the basic default settings are completely sufficient for me for now. I block some other e.g. adult content via ControlD for now. I am pretty sure PPPoE specifics is the source of all the problems with the way VPN behaves. I guess it can be fixed but I would need...
  59. P
    - 332 Posts - primitivo
    ...handles DNS redirection on port 53, so the port provided in adguard setup probably doesn't matter much. I followed 8080 and 5300. Setup ControlD DoH and DoT and they seem to be working very well. I have now also disabled ad-blocking on ControlD, since Adguard handles that. What is nice also...
  60. B
    - 332 Posts - blueliner
    Hello Primitivo, It has been a long time since I set up AdGuard. As I recall, the setup menu gives the option to use an alternate address:port. Mine is set for the web gui to use port 8080 and for the DNS server to listen on port 5300 . I followed the setup from the Kamoj FAQ after making...
  61. jberry
    - 332 Posts - jberry
    Hello primitivo, I just received my R9000 router, and installed the latest version of Voxel and latest beta, b35 for Kamoj. I did notice that when I would reboot my router, the wireguard connection wont connect automatically. I am using PPPoE as well to connect to my ISP. What I figured out is...
  62. P
    - 332 Posts - primitivo
    ...udp 0.0.0.0:53: bind: address already in use" How did you overcome this issue? Also do you have "all interfaces" checked for both? As for controld, I mainly use it to unblock some geo blocked services, but I do have to say that filters come handy such as safe search etc. I do note there is...
  63. B
    - 332 Posts - blueliner
    ...I made a backup using the Add-on's AdGuard Home backup button so I wouldn't have to worry about the configuration file again. To get the Controld DOH and TLS servers added to AdGuard Home, I entered the following into Settings/DNS Settings --> Upstream DNS Servers menu. The AdGuard server...
  64. kamoj
    - 332 Posts - kamoj
    Thank you very much for added information!:) I'm sorry that the documentation could be better, but no one is willing to help me, and my time is very limited. The most usefull log if you talk about the connection supervision is: System Information: Supervision The next log is the wg log. You...
  65. P
    - 332 Posts - primitivo
    ...server etc. But they don't support WG server or client and the router is dual core not 4 core like R9000. In order to setup Adguard and DOH ControlD do I need to pay for Adguard subscription? I see that I need to log in, so I created account on adguard home website but the credentials are...
  66. B
    - 332 Posts - blueliner
    Hello, I had never thought of this! During the beta testing, I found Controld to be an excellent DNS service! After seeing your comment, I tried Controld using AdGuard Home on my R9000. Both DOH and TLS seem to be working (they are the only two DNS servers I am running). I haven't tried it...
  67. P
    - 332 Posts - primitivo
    ...custom DOH setting can be configured on LAN page with 2 clicks.... But it doesn't have Wireguard client. To be precise I started using controld.com which I highly recommend to try out - 1 month free full trial. It is a very customizable DNS provider which offers pre-defined filters such as...
  68. A
    - 10 Posts - adiyogi
    using default ISP resolvers with DOT from provider ControlD, it works fine most of the time but ever since upgrade to 386.2_6, DNS queries fail from all devices intermittently , traceroute to router fails, checked with 2 diff routers, both have same issue.
  69. M
    - 1 Posts - mwolter
    ...# address and parameters used to communicate status curladdr="http://USERNAME:PASSWORD@IPADDRESS/JSON?request=controldevicebyvalue&ref=" # value sent if device is online curlon="&value=100" # value sent if device is offline curloff="&value=0" # start index at 1 i=1 # iternate through name...
  70. Zastoff
    - 1736 Posts - Zastoff
    How to: Install DNSCrypt-proxy and how to set it up with NextDNS/Controld (DNS over HTTPS) with your personal account. DNSCrypt installer in amtm and di The personal sdns stamp can now again be found on NextDNS setup page under setup guides (linux/router) If SDNS Stamp on NextDNS setup page is...
  71. B
    - 3 Posts - Bamsefar
    ...If WAN ip is 178.78.x.x then online, if 192.168.x.x then it is backup if ifconfig | grep -q 178.78; then wget -qO- "xxx/JSON?request=controldevicebylabel&ref=743&label=Online" >/dev/null 2>&1 elif ifconfig | grep -q 192.168; then wget -qO-...
  72. B
    - 21 Posts - Bamsefar
    ..."Borta" ] ; then if [ -f /tmp/CheckUser/User1 ] ; then rm -f /tmp/CheckUser/User1 wget -qO- "192.168.1.5/JSON?request=controldevicebylabel&ref=19&label=Away" >/dev/null 2>&1 fi else if [ ! -f /tmp/CheckUser/User1 ] ; then touch /tmp/CheckUser/User1...
Back
Top