What's new

Solved Help with Forcing All Traffic to DNS

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

buying other hardware/software or a better router/gateway/firewall that has support for blocking browser based DoH, blocking those DNS addresses that DoH browsers are using
Do you know of any software or router that has these capabilities?
 
Do you know of any software or router that has these capabilities?
The article (pushing one companies products) I posted earlier in this thread appears to discuss options to blocking DoH.
https://www.currentware.com/blog/dns-over-https-how-to-stop-users-from-bypassing-your-web-filter/

Cisco: https://umbrella.cisco.com/blog/doh-dns-over-https-to-block-or-not-to-block
https://support.umbrella.com/hc/en-us/articles/360001371526-Web-Browsers-and-DNS-over-HTTPS-default

If you do an internet search you'll likely find other vendors who are pushing similar products.

PFsense (maybe): https://jpgpi250.github.io/piholemanual/doc/Block DOH with pfsense.pdf

https://support.mozilla.org/en-US/kb/configuring-networks-disable-dns-over-https

Disable DoH on the browser: https://techdocs.akamai.com/etp/docs/disable-doh-browsers
 
I've used both of them and it won't work. Still able to bypass by enabling doh on browser.
 
Just to make sure I am using these correctly..
I am inserting those links into Pihole adlist section... is that the way to do it?

Like this...
1672418488139.png


then hit save, then it shows up in the list below...right?
1672418525313.png


After this, do I need to do change anything else?
 
I don't have Pi-hole to test it for you. It works well on pfBlocker-NG I'm using. Check Pi-hole format compatibility. Flush on-device DNS caches.
 
Just to make sure I am using these correctly..
I am inserting those links into Pihole adlist section... is that the way to do it?

Like this...
View attachment 46787

then hit save, then it shows up in the list below...right?
View attachment 46788

After this, do I need to do change anything else?
Are you updating Gravity (Tools > Update Gravity > Update) after adding the new block list? If not, you need to update Gravity so the Pi-hole updates its database(s).
 
@bennor Updating gravity did the trick! - Not sure which list did the trick though.. won't hurt any having both in there right?
 
@bennor Updating gravity did the trick! - Not sure which list did the trick though.. won't hurt any having both in there right?
Pi-Hole is smart enough when it compiles it's Gravity database to weed out the duplicates addresses/IP's when using multiple ad block lists.
 

Similar threads

Latest threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top