← Home ← Back to /g/

Thread 105766099

37 posts 18 images /g/
Anonymous No.105766099 [Report] >>105767299 >>105767698 >>105768459 >>105769297 >>105769949 >>105771896 >>105772096 >>105776324 >>105778874 >>105780160
redpill me on quad9, and ways to make my internet browsing more private and safe. i have no idea how dns work. ideally, i'd also love if it could be set up to block ads and porn too.
Anonymous No.105766110 [Report] >>105766153
cleanbrowsing have a dns server that blocks ads and porn, although that also includes 4cuck. my church recommends it
Anonymous No.105766143 [Report] >>105766153 >>105766215
Isn't Mullvad DNS better?
Anonymous No.105766153 [Report] >>105766215
>>105766143
i dont know, im asking you.
>>105766110
seems like it's for usa only. wouldn't that slow down my browsing in europe?
Anonymous No.105766215 [Report] >>105767715 >>105772816
>>105766143
>>105766153
mullvad is only partially open source while quad9 is completely open source.
one is based in sweden the other in switzerland.
mullvad is a private company while quad9 is a non-profit.

mullvad certainly has more features, but i dont know which of the two is better.
Anonymous No.105767299 [Report]
>>105766099 (OP)
I will save you a headache
Use this one
https://controld.com/free-dns
Anonymous No.105767583 [Report]
>"threat" blocking
big nope, they use it to block sites they don't agree with politically and call them "threats"
you should be using no log, no filter DNS servers with good response time.
Anonymous No.105767659 [Report]
I use this: dns.alidns.com
Anonymous No.105767698 [Report]
>>105766099 (OP)
Use this on your desktop, it automatically selects the fastest one for you and encrypts your queries over the wire
https://github.com/DNSCrypt/dnscrypt-proxy
Anonymous No.105767715 [Report]
>>105766215
>mullvad is only partially open source while quad9 is completely open source.

Do you have access to their soft and hardware?
Anonymous No.105768101 [Report] >>105768378
idk man I don't think I want to use mullvad
Anonymous No.105768378 [Report]
>>105768101
nevermind, I have to specify an actual server like https://us-nyc-dns-601.mullvad.net/dns-query instead of just using what's in my pic because otherwise it defaults to a server in singapore
meanwhile quad9 it doesn't do that
Anonymous No.105768459 [Report] >>105768509 >>105768509
>>105766099 (OP)
>make my internet browsing more private and safe
that says nothing. private from whom? safe how?
>block ads and porn
it can do that, but not all ads can be blocked at the DNS level, you'll most likely need an application level blocker anyway, like a browser addon
Anonymous No.105768509 [Report] >>105768584 >>105768587
>>105768459
>private from whom? safe how?
like, my isp not being able to spy and collect data on every single website i use.
>>105768459
>a browser addon
i already use ublock origin, but it would be nice to have some level of ad blocking at the wifi level so that it works for my boomer relatives too and whatnot.
Anonymous No.105768584 [Report]
>>105768509
most of your data is already encrypted with HTTPS. DNS can also be encrypted (over HTTPS or over TLS). Encrypted Client Hello is something that can help obfuscate initial DNS queries. Most websites don't have a fixed IP address nowadays, so the ISP seeing what IPs you connect to won't do much, but you can use a VPN or Tor to obfuscate where you're connecting to. You can even use Tor bridges to obfuscate the fact you're connecting to Tor, if you're that paranoid or if Tor is illegal in your cunt.
Anonymous No.105768587 [Report]
>>105768509
Anonymous No.105769297 [Report]
>>105766099 (OP)
DNSCrypt with pihole or adguard as filter
Anonymous No.105769949 [Report]
>>105766099 (OP)
bump for interest
Anonymous No.105771896 [Report]
>>105766099 (OP)

https://www.youtube.com/watch?v=Q-xDtCxnD0Q
Anonymous No.105772096 [Report] >>105772140
>>105766099 (OP)
>redpill me on quad9,
glowing. created by police.
Anonymous No.105772140 [Report] >>105772899
>>105772096
Not OP, shame everytime I find something new to use and it looks good, I learn about stuff like this. Not a deal breaker I think for the journeyman.
Anonymous No.105772211 [Report] >>105772244
Anything other than pure Unbound with DNSSEC and a couple of blocklists is 100% placebo which won't really do what you think it will, and will never ever change the end result except adding a third party to the chain.
Anonymous No.105772244 [Report]
>>105772211
You are clearly retarded
Anonymous No.105772304 [Report]
just unironically host ur own dns goy
Anonymous No.105772816 [Report] >>105778906
>>105766215
>non-profit
Oh, so CIA/NSA/Mossad
Anonymous No.105772887 [Report]
I use mullvad DNS. Quad9 glows and Saving Portmaster has Quad9 as a default option. I always set it to Mullvad
Anonymous No.105772899 [Report]
>>105772140
How naive are you?
Anonymous No.105775134 [Report] >>105775482
hosting my own dns prevent my isp from poisoning my requests in an attempt to block the pirate bay
Anonymous No.105775482 [Report] >>105778379
>>105775134
surely your ISP/country doesn't suck so bad that every big DNS provider is blocked? just use any of them with encryption and DNSSEC.
Anonymous No.105776324 [Report]
>>105766099 (OP)
>quad 9
i used it for a bit because I like chara and freedom but they are still censoring a ton of DNS locations for things like shared resources like libgen. I hard dropped them for uncensored dns
>how does a dns work
it turns internet addresses into IP numbers.
Anonymous No.105778379 [Report] >>105780202
>>105775482
they literally hijack dns requests so they cant leave my network
Anonymous No.105778478 [Report]
Opinion on Control D? Anyone else using it?
Anonymous No.105778874 [Report]
>>105766099 (OP)
Anonymous No.105778906 [Report]
>>105772816
you wrote the same thing thrice
Anonymous No.105780160 [Report]
>>105766099 (OP)
> Get a box you can run 24/7. It can be a rpi, or a small one. Or a $2 vps or something
> Install docker
> Have a small compose file written for pihole or use
> docker compose pull
> docker compose up -d
> Set the dns of pihole to anzthing
> Configure the dns of piuhole to block ads, porn, antisocial media and whatever
> Set the dns of your boxen to pihole

Advanced:
> Include unbound in your compose file for a fully recursive dns server (that relies on no third parties, but always start querying from the tld routing table)
> Set pihole dns to unbound
Anonymous No.105780202 [Report]
>>105778379
even when you do DoH? how?
Anonymous No.105782011 [Report]
i've been using it for years, and i'd say its the best option bar hosting your own dns. they dont store logs (allegedly, but as with all dns providers you just have to take their word for it) and support DoH.