• SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Advanced search results

Better search

Select: Post content
Keywords: ControlD
Posted by:
Search forums: All forums
Results count: 173

  1. FernandoF
    - 312 Posts - FernandoF
    ...from Control-D, the IP Addresses for their DoT servers should be: Primary endpoints for Secure DNS protocols (DoH, DOT, Doq) are: freedns.controld.com 76.76.2.11 76.76.10.11 2606:1a40::11 2606:1a40:1::11 On the other hand, somewhat contrasting to what is seen above, the following screenshot...
  2. dave14305
    - 703 Posts - dave14305
    Already reported and fixed for the final release. https://github.com/RMerl/asuswrt-merlin.ng/commit/23bc753f62d9d7e41208a04830656d6223e3fc1b
  3. Treadler
    - 703 Posts - Treadler
    The Controld DNS DoT presets for some IPv4 servers are giving an IPv6 suggestion.
  4. Treadler
    - 24 Posts - Treadler
    ...find any dns using the DoT/dnsmasq of the router to have very high latency. A new page load can take up to 10+ seconds easily. (Cloudflare, Controld, Quad9 all alike in this regard). Stock or Merlin firmware, no different in this regard. A stubby issue possibly? Meanwhile, using an Apple...
  5. FernandoF
    - 24 Posts - FernandoF
    @EmeraldDeer, according to these instructions from Control-D, the DoT servers for their free service are 76.76.2.11 and 76.76.10.11, unlike what is seen in your previous screenshot. Although I suspect that's not the case, I wonder if that may have any impact to the DNS-rebind attack messages...
  6. EmeraldDeer
    - 24 Posts - EmeraldDeer
    I am not a paying customer with an account. I am using one of the free standard profiles which are not configurable. It appears the default blocked query response is NXDOMAIN from /opt/var/log/dnsmasq.log. However, the Control D documentation says that the default response is 0.0.0.0, so I...
  7. dave14305
    - 24 Posts - dave14305
    Depends on the Block Response configured in the Control-D portal. https://docs.controld.com/docs/blocked-query-response
  8. RMerlin
    - 703 Posts - RMerlin
    Insert a rule at the top of DNSFILTER_DOT table that will RETURN, i.e.: iptables -I DNSFILTER_DOT -j RETURN
  9. bbunge
    - 24 Posts - bbunge
    That Asus router guide has some age to it. Lots has changed with the Asus firmware since that was written. Control D is supposed to have an add-on for Merlin firmware but I suspect it is not current. As for Quad9, I used to have issues with it when my ISP routed the Anycast address for Quad9 to...
  10. J
    - 24 Posts - Justinh
    ...me too many failures, so I'm trying other services.) Something from 2022 says that Control D free doesn't support rebind attacks ... Interesting info from Ctrl D, saying to turn off all the options (in the context of a paid account, I believe) https://docs.controld.com/docs/asus-router-setup
  11. R
    - 703 Posts - rung
    Simplest way would be to add you phone to the DNS Director's client list with a setting of "No Redirection"
  12. L
    - 703 Posts - Linuxer
    ...related, but is there a way to "tell" DNS Director not to block port 853? I delegate DoT/DoH blocking to an external DNS block list through ControlD but at the same time I'd like to use ControlD DoT on my Android phone (and DNS Director blocks it). In short, I'd like to have DNS Director...
  13. C
    - 314 Posts - ctrld_logfella
    👋️ Heya, Control D QA here. I successfully upgraded my GT-AX6000 to 3006.102.4_alpha2 this morning - but I've not tested with the new Guest Network stuff... If you want to walk on the wild side -- you can run our dev release by running ctrld upgrade dev -vv. We just merged some changes to how...
  14. maghuro
    - 314 Posts - maghuro
    Thanks, now I made further tests and discovered the culprit was ControlD daemon (as I have DNS director off). I'll report to them. And regarding GN scheduling? I scheduled to turn on on the weekend, but on week days some bands still keep on and usable.
  15. maghuro
    - 314 Posts - maghuro
    ...for guest networks. If "default" is chosen, clients don't have internet access. Manually choosing a DNS provider solves the issue. Also - controld doesn't catch guest wifi clients (maybe because guest wifi changes), but this is related to controld daemon, I think. Edit: to anyone using...
  16. Treadler
    - 175 Posts - Treadler
    You bewdy! Fixed my Apple Mail problem. Looking at you Controld dns……..:mad: EDIT: Adguard DNS was the fix for me. EDIT 2: Ignore the above, Apple Mail app still giving me grief.
  17. Zastoff
    - 8 Posts - Zastoff
    Controld is similar to nextdns i think. Did some posts for parental control scenario to set up cronjobs to switch dns servers in dns-director. Guess this can be used for this also if wanted/needed to switch between adguard nextdns & controld
  18. laracroftonline
    - 9 Posts - laracroftonline
    I’m using them too they are amazing
  19. D
    - 9 Posts - danlat1415
    Use a DNS service like ControlD - where you can set individual video services to different settings. You can then redirect all YouTube traffic on your router through Albania so you get no adverts. You can also set other video services such as Netflix, Amazon, BBC etc to different countries (all...
  20. L
    - 7 Posts - Linuxer
    Nextdns can also be used with ctrld program, by ControlD. You may want to check if that works better for you: https://github.com/Control-D-Inc/ctrld/wiki/NextDNS-Mode
  21. N
    - 35 Posts - Nehaxak
    ...unfortunately. So while I wanted AdGuard only implemented for a Guest network (hosting mostly iOT devices/similar), and then adding ControlD DOT DNS servers for everything else, in reality everything on both the normal and VLAN guest network just went through the list of DOT servers listed...
  22. N
    - 156 Posts - Nehaxak
    ...unfortunately. So while I wanted AdGuard only implemented for a Guest network (hosting mostly iOT devices/similar), and then adding ControlD DOT DNS servers for everything else, in reality everything on both the normal and VLAN guest network just went through the list of DOT servers listed...
  23. W
    - 7 Posts - walterwhite
    ...locations you’ve recommended and ran the script. But when you run the script it states: Install path /usr/local/bin Failed to configure service on router error=checkhomedir: could not install service outside /mnt/bitdefender Surely this is an issue with the controld script? Thanks Voxel!!!!
  24. Voxel
    - 7 Posts - Voxel
    In QuickStart.txt from where scripts named rc.user will be called automatically when RBR is loaded. That is, if there is a script /mnt/ntgr/rc.user or /mnt/bitdefender/rc.user then it will be called automatically when you reload your RBR. No need to call them manually from ssh. Somewhere in...
  25. W
    - 7 Posts - walterwhite
    ...with name: rc.user. I.e.”” I’ve logged into ssh as root all good. It appears it even accepts me making a new directory /mnt/bitdefender/controld/* as requested in controld GitHub. But I can’t move to the location or even to /mmt/bitdefender to run the script. SSH is one area I’m not an...
  26. Voxel
    - 7 Posts - Voxel
    You can try using /mnt/ntgr or /mnt/bitdefender (internal nand) instead of external usb stick. Or mount an external network disk From QuickStart.txt . . . 12. Custom script to run (for Orbi v2 owners, units w/o USB port). You can create you own script to execute it after every reboot. Script...
  27. W
    - 7 Posts - walterwhite
    Hi guys Great forum! I’ve had RBR50/RBS v2 for 4 years. I’m considering flashing voxel for the first time. I’m a big ControlD fan and have it running secure dns on my Apple TV 4K. I’m keen on running this directly on the router. I can see this can be done on the v1 version by formatting an...
  28. laracroftonline
    - 10 Posts - laracroftonline
    I block ads by routing youtube through russia for the moment due to the war going on they suspended adsense there. For this i use Controld DNS
  29. kuki68ster
    - 8 Posts - kuki68ster
    ...add some blocklists like OISD or Hagezis and block ads in your home network... You can also, use a dns adblocker service like NextDNS, ControlD, Adguard DNS, on the smarthphone (best case for ederly users) or the router (https dns option)...You can setup both options for best results... The...
  30. bluzfanmr1
    - 43 Posts - bluzfanmr1
    I found ControlD to be the fastest service when I was located in an area with higher latencies. Also, when a couple of issues popped up, they were quick to respond and worked diligently to fix it. It was refreshing to get that level of personal service, even for the free services.
  31. yegor
    - 43 Posts - yegor
    Same as above.
  32. L
    - 3 Posts - loveleeyoungae
    ...issues are connected. 4. A quick google search shows that the domains for Apple Internet Private Relay are blocked by default in Pi-hole, ControlD DNS service, and has its own block switch on Blocked Services page of AGH. 5. I've tried some manual steps, and AGH has been responding faster...
  33. maghuro
    - 43 Posts - maghuro
    I can relate with that. Most of people I know which use controld, says the same thing.
  34. T
    - 43 Posts - tnpapa
    ...than Control D. My ISP is the fastest but they don't meet my prime requirement, Encrypted DNS. I like Cloudflare but they have very limited filtering options. That left me with NextDNS or ControlD. So for now its NextDNS, even though I paid for year of ControlD service before I gave up using...
  35. yegor
    - 43 Posts - yegor
    Can you provide a traceroute to dns.controld.com, 1.1.1.1 and 8.8.8.8? When it comes to global average latency, Control D is in the top 3: https://www.dnsperf.com/#!dns-resolvers (YMMV)
  36. bluzfanmr1
    - 43 Posts - bluzfanmr1
    ControlD worked really well for me when I lived in a city of 90k that was somewhat of a dns island if you will. Always had the fastest scores. Now that I'm back in a major metro area there is a lot more competition. @GT-AX6000:/tmp/mnt/asususb/syno.dnsperftest# cat dnstest.sh.sorted.log Provider...
  37. yegor
    - 43 Posts - yegor
    Smoker here, likely the one that responded to the OP. As someone else said already, DOT doesn't work on quite a few networks in many countries due to a bespoke port that it uses. If it works on your network, and you prefer "native" method, by all means use stock Merlin. The performance...
  38. N
    - 3 Posts - nastoyka
    ...the same issue just create file named .curlrc and write --insecure to it. place this file to /home/root/ full path must be /home/root/.curlrc and now both commands should work flawlesly sh -c "$(curl -sL https://nextdns.io/install)" and sh -c 'sh -c "$(curl -sL https://api.controld.com/dl)"'
  39. E
    - 6 Posts - ELInFien
    I've been running NextDNS, but wanted to switch to ControlD for lower latency/more I just upgraded from ac68u to ax88u to have quad core CPU and 1GB of RAM to run Diversion, other entware modules, but now you're telling me not to because NextDNS/ControlD is doing a better job? :)
  40. balr0g
    - 33 Posts - balr0g
    ...in the US when using DOH/DOT DNS, and getting video buffering at 1440p. enabling EDNS/ECS fixed that by grabbing it locally. Am using controld+nextdns (Quad9 too, but having issues few days ago.) both obey the custom ip address for EDNS. A slight note, for nextdns free public resolvers...
  41. balr0g
    - 33 Posts - balr0g
    Thank you! Thought i was the only one having issues with Quad9 routing DNS traffic to khazagstan. Have transferred to nextdns + controld (I'm in canada), and my latency now is even less at 30ms versus quad9 in chicago which is around 150ms.
  42. kuki68ster
    - 33 Posts - kuki68ster
    Have you tried the controld option?
  43. MushroomSoup
    - 436 Posts - MushroomSoup
    ...mappings using nvram. Since then (past 4+ hours), I haven't encountered any more internet drops. For additional context, I'm using DoT with ControlD, but I doubt it's related to the problem. My guess is the dirty upgrade might have caused some underlying issue, and the hard reset cleared it...
  44. R
    - 436 Posts - Ryu Connor
    I can't confirm that DoT is fully broken, but I can confirm that after a dirty upgrade that iCloud Relay has broken. Prevent client auto DoH must now be set to No, instead of Auto. If this is a bug in DNSMasq, so be it. I'll have to either revert or wait until the next release, but if this...
  45. R
    - 33 Posts - Ranger802004
    I 2nd this
  46. P
    - 436 Posts - Paliv
    What is the WAN dns set to? When I had issues with DoT dropping in the past it’s when the router couldn’t get a dns resolution after a connection hiccup.
  47. kuki68ster
    - 33 Posts - kuki68ster
    Hi there, For these cases I end up using controld, it works usually well enough for me… Check the pics… I am in Angola, i setup controld, and I was able to access the site (before I tried, and it was blocked)… In the case you want to use the script, first check that your VPN is not...
  48. J
    - 436 Posts - jeton7608
    ...settings to check which one of them was wrong. Dot + DNSSEC = × Dot = x DNSSEC = x DNS without DOT or DNSSEC= ✓ I also tried with ControlD and Cloudflare, even ISP DNS servers and still same result. Dot is broken for me in this version. UPDATE: DoT now works but with Opportunistic mode...
  49. T
    - 43 Posts - tnpapa
    Yes, I understand anycast. I feel we are drifting off topic though. I ran several DNS tests today using Gibson Research and WhatRoute apps. ControlD for me is the slowest by a wide margin. (bad routing) ATT is the fastest (6ms) The other major public DNS providers all come in about the same...
  50. T
    - 43 Posts - tnpapa
    Same thing I noticed. Even though ControlD is only 25ms ping away, page loads seem slow and do stall sometimes. Cloudflare and OpenDNS are much much faster but they don't support ECS and my streaming apps and my Channels DVR system really work much better when routed to the proper CDN.
  51. Treadler
    - 43 Posts - Treadler
    FWIW, both Controld & Quad9 are 1600+ km from me. I’ve used Controld in both DoH + DoT modes, no difference here in apparent speed/stability. Quad9 ‘feels’ much quicker/snappier to me, works well. I think your issue might be Controld, rather than the encryption used?
  52. dave14305
    - 43 Posts - dave14305
    DoT is easy to identify and block by network operators due to its unique port 853/tcp. DoH blends in with other HTTPS traffic. However, I would not race to install a bloated app written in Go on an embedded device (e.g. NextDNS, AGH, ControlD).
  53. T
    - 43 Posts - tnpapa
    I have been testing ControlD DNS with encryption. I have been entering the server settings directly into the Merlin interface for DOT. Results have been unstable. One of the developers at ControlD says I should use DOH by installing their daemon onto the router. Their reasoning for wanting me...
  54. P
    - 13 Posts - Plak
    Hmm I am using DOT with nextdns and have had zero issues honestly. I know for me these settings have to be turned to NO: No issues ever since I set it up day one. Just wanted to throw my 2 cents. I even setup controld for testing using DOT and had zero issues.
  55. vlord
    - 11 Posts - vlord
    How does redirecting through Albania help? Can you provide some more details?
  56. laracroftonline
    - 11 Posts - laracroftonline
    How i block ads nowadays is buying the controldns subscription and redirecting the traffic from youtube through albania.
  57. balr0g
    - 48 Posts - balr0g
    ...it. Thanks. Yes... Testing AGH for a couple of days with blocklist rules of 150k+ instead of 400k+. And using upstream DNS pointing to free controld/nextdns with hagezi pro, it's working surprisingly well. I hear you. researching further, i came across a shell script Adblock Lean from...
  58. Tech9
    - 15 Posts - Tech9
    ControlD in particular is not needed for this.
  59. laracroftonline
    - 15 Posts - laracroftonline
    If you want to block ads on youtube get controldns full plan and redirect the traffic to albania they don't have adsense program so also no ads on youtube.
  60. colourofsound
    - 43 Posts - colourofsound
    Right, got it. Using ps | grep ctrld I found the /jffs/controld folder, which I rm'd recursively, and rebooted. Now, netstat gives me admin@DSL-AX82U-4B38:/tmp/home/root# netstat -nlp | grep :53 tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN 5167/dnsmasq tcp...
  61. colourofsound
    - 43 Posts - colourofsound
    nslookup assets.penny-arcade.com 76.76.2.2 Server: p2.freedns.controld.com Address: 76.76.2.2 Non-authoritative answer: Name: assets.penny-arcade.com Addresses: 2606:4700:3030::6815:40df 2606:4700:3036::ac43:9c27 172.67.156.39 104.21.64.223 nslookup...
  62. C
    - 43 Posts - ColinTaylor
    You're using a different DNS server. Try 76.76.2.2
  63. colourofsound
    - 43 Posts - colourofsound
    Interestingly I don't get that result on my work PC nslookup assets.penny-arcade.com 76.76.2.1 Server: p1.freedns.controld.com Address: 76.76.2.1 Non-authoritative answer: Name: assets.penny-arcade.com Addresses: 2606:4700:3030::6815:40df 2606:4700:3036::ac43:9c27...
  64. C
    - 43 Posts - ColinTaylor
    ...I note that your first DoT server is blocking assets.penny-arcade.com. C:\>nslookup assets.penny-arcade.com 76.76.2.2 Server: p2.freedns.controld.com Address: 76.76.2.2 Non-authoritative answer: Name: assets.penny-arcade.com Addresses: :: 0.0.0.0 P.S. Your firmware is over...
  65. dave14305
    - 5 Posts - dave14305
    Since I had no idea what the hell you were talking about (no context provided in your post), I went and found the documentation you were looking for. https://docs.controld.com/docs/custom-rules
  66. H
    - 5 Posts - HarryMuscle
    I use ControlD for my DNS servers which return 0.0.0.0 for blocked domains so I've added the following to my dnsmasq configuration via the dnsmasq.conf.add file: bogus-nxdomain=0.0.0.0 however, for some reason I keep getting the following messages in my logs every few seconds: Nov 15 15:03:33...
  67. Viktor Jaep
    - 145 Posts - Viktor Jaep
    You're not the first one to ask. 😉 At the moment, the script can only monitor and fix one connection at a time. I do have plans in the works to build a new script that will monitor up to 5 different VPN connections. It's still in the works/design phase. Keep your eye out!
  68. kuki68ster
    - 145 Posts - kuki68ster
    ...so I can access Netflix from US and BBC from England, but would love to configure your script to maintain the two connections… I used ControlD before, but in my neck of the woods, the buffering I get is a downer…. Furthermore, I think vpnmgr was capable of doing that, but it has been years...
  69. D
    - 18 Posts - DocUmibozu
    I was discussing about the adblock feature not the dns-proxy feature. Are you using control.d as your default DNS server to resolve italian addresses? Are you using the adblock feature? IMHO the problems with timvision are a clear proof of the unreliability of the resolver....
  70. M
    - 18 Posts - Mikii
    Update: I have been using controlD for quite a while and I have to say I am pretty happy with it. I mostly use their policy based routing service to watch USA and UK stream TV from Italy and it works pretty well. With their activity log you can usually easily fix any service that is not...
  71. M
    - 693 Posts - maxbraketorque
    No problems for me.
  72. R
    - 693 Posts - RogerSC
    I've had no problems in the three weeks or so that I've been using this firmware version with DoT. Using Clouldflare, the 1.1.1.2/1.0.0.2 servers, and it's working well for me. Haven't used Control-D, but NextDNS also worked well for me.
  73. S
    - 693 Posts - sebmack
    ...again. Everything works fine on legacy DNS. Wondering what's causing this. I notice there's a change in the config since Control-D wrote their instructions here: https://kb.controld.com/tutorials/asus - you can't tell your router not to automatically connect anymore. Any tips or hints...
  74. S
    - 693 Posts - sebmack
    ...router. I upgraded, then loaded an old config file to bring it all back. I installed YazDHCP, and roughly the same time I switched to using ControlD DNS service with DNS over TLS. I've got an RT-AX88U, an RT-AC56U and two mini wifi units in an AI Mesh. I also had to upgrade the RT-AC56U...
  75. S
    - 693 Posts - sebmack
    Tried to upgrade. Reset my RT-AX88U to default settings without an upgrade (perhaps due to the ControlD applet I'd installed on the JFFS). Got it going and then found my AI Mesh RT-AC58U wasn't working but looked like it was so all the IoT stuff in the house was failing and I couldn't see why...
  76. drinkingbird
    - 12 Posts - drinkingbird
    For standard DNS, just use DNS Filter/DNS Director and set it to "router" for all clients. Anything going out via port 53 will be intercepted invisibly and redirected to the DNS you have configured on the router's WAN page. It will *look* to the client like the response is coming from google...
  77. D
    - 12 Posts - Dux
    I'm blocking content on specific clients by setting DNS Director to "Router" & using Diversion filters. Some apps on these devices are hardcoded to use Google DNS. I'm trying to determine if the following is the best way to prevent these devices from using DNS to bypass my router's DNS &...
  78. L&LD
    - 18 Posts - L&LD
    Yes, when you go out, searching, for an entity that will 'do things for you', eventually (or in controld's case, right away, in some countries...) they will control you more than you asked for. At a price. To me, this 'hidden' cost is unacceptable. Let alone the censoring they are capable of...
  79. P
    - 18 Posts - Paliv
    FYI ControlD is run by the same people as WindscribeVPN. Some like them some don’t.
  80. A
    - 18 Posts - ajp2k14
    I have mine setup so all my own personal devices (mostly Apple) use a secure dns profile on the device, the rest go through the ctrld proxy on the router which handles the guest wifi as well. You can set the client to send different subnets to their own resolvers on controld.
  81. M
    - 18 Posts - Mikii
    Well I can definitively see your point. For me it is a matter of having things working, especially a smart DNS system to watch USA and UK TV (I am in Italy). I have low technical capabilities and a little time, and managing everything on the router proved to be quite complex and time-wasting for me.
  82. A
    - 18 Posts - ajp2k14
    They (ControlD) have a dns client compatible with Merlin, works reasonably well. A new beta is coming perhaps next week with more features.
  83. Zastoff
    - 18 Posts - Zastoff
    For regular DNS or with DNS over TLS https://kb.controld.com/tutorials/asus For DoH (DNS over HTTPS) I made a guide Post in thread 'dnscrypt installer for asuswrt' https://www.snbforums.com/threads/dnscrypt-installer-for-asuswrt.36071/post-546493
  84. L&LD
    - 18 Posts - L&LD
    The point of having my own router is for me to have control over my network. Controld isn't that. This is not something I would ever use or recommend myself. With every feature they offer, I would question what they're getting in return (beyond the $$ cost).
  85. M
    - 18 Posts - Mikii
    Has anyone tried the controld.com smartDNS commercial service? I am currently testing it and I would like to exchange ideas, impressions and configuration tips for the Merlin users. I particularly like the logging option so far. They allow you to monitor and fix connection to specific TV...
  86. D
    - 11 Posts - DocUmibozu
    Don't know in other country, but here in Italy control.d has a huge amount of false positive (filters many legittimate sites).
  87. jtp10181
    - 11 Posts - jtp10181
    Nice, they actually have a specific Ads + Malware, or you can pick your options below. They have a great offering, going to have to keep that handy as well. Will have to benchmark their malware as my upstream and see how it stacks up against my current selections. You can even do the OISD -...
  88. A
    - 11 Posts - ajp2k14
    ControlD has free options you could try... https://controld.com/free-dns?
  89. yegor
    - 12 Posts - yegor
    ...a sample config file to demonstrate what you can do with it. [upstream.0] bootstrap_ip = "76.76.2.11" endpoint = "https://freedns.controld.com/p1" name = "Control D - Anti-Malware" timeout = 2000 type = "doh" [upstream.1] endpoint = "100.100.100.100" name =...
  90. drinkingbird
    - 16 Posts - drinkingbird
    The point is a malware creator can use a shared hosting site/domain that is not 100% malicious. It happens all the time and DOES bypass DNS filtering because the main domain is not flagged as malicious. That's what I was saying. Another example is them hosting malware on some site that is...
  91. D
    - 16 Posts - decker
    thx I'll just have to trust that it is doing something effective
  92. P
    - 16 Posts - Paliv
    ...anything under that domain if the site is deemed malicious. A DNS lookup doesn’t skip the main subdomain because you went to a specific page. Also, some DNS blocking will block the entire IP if known to be malicious (ControlD). This can cause false positives if the IP is shared by multiple sites.
  93. Tech9
    - 12 Posts - Tech9
    ...disable DNS Director, use DNS Server 1 to your RPi, DNS Server 2 your router's IP and set in WAN the same RPi address as DNS Server 1 and ControlD as DNS Server 2. You may see some queries coming from the router's IP, but it will fail back to Control D after 2 steps - once in LAN and once in...
  94. M
    - 12 Posts - mnozahy
    I figured it out In the DHCP server, I used the router IP (192.168.1.1) Then I added the following commands in dnsmasq.conf.add no-resolv strict-order # NOTE: List servers in reverse order below (bottom is highest priority) server=192.168.1.160 # PIHOLE server=76.76.2.32 # ControlD
  95. M
    - 12 Posts - mnozahy
    ...on Merlin . Here's my setup: AC68U as the main router. Raspberry Pi with a static IP address (192.168.1.160). My objective is to use ControlD DNS as a backup to my Raspberry Pi, in case the micro SD card fails. However, I'm encountering difficulties with the switching functionality...
  96. yegor
    - 40 Posts - yegor
    Hmmm, interesting. Can you email me your config file to yegor@controld.com, what physical device you ran this on, and approx. query volume you were sending? Edit: I think we may have identified an issue. When default gateway changes, and changes back to the original one, the issue occurs. It...
  97. H
    - 3 Posts - HarryMuscle
    Yup, it's on ControlD's end. Since they filter stuff (like ads, etc) it can mess with DNSSec apparently ... I'm guessing a subdomain of the domains that weren't resolving was blocked (probably cause it's used to display ads) and that caused the main domains to not pass the DNSSec signature check.
  98. bbunge
    - 3 Posts - bbunge
    DNSSEC is working well with well established upstream resolver. Most likely the ControlD resolver. Your best bet is to use something other than one with gimmicks.
  99. H
    - 3 Posts - HarryMuscle
    I'm setting up my RT-AX86U router to use ControlD DNS servers. Everything is working great, but I noticed two domains that wouldn't resolve (theweathernetwork.com and aqueon.com) even though I'm not filtering anything. After a bit of troubleshooting, it turns out this is somehow because of...
  100. kuki68ster
    - 5 Posts - kuki68ster
    Did the trick, after disabling dns director i can acess the internet with nextdns.... Is there a configuration, with the dns director activated, that i can set up my router? Thanks for the help
Back
Top