mastodon.ie is one of the many independent Mastodon servers you can use to participate in the fediverse.
Irish Mastodon - run from Ireland, we welcome all who respect the community rules and members.

Administered by:

Server stats:

1.8K
active users

#pihole

13 posts11 participants0 posts today

Edit: Lösung ist rebind-Schutz

Ich stehe gerade wie ein Ochs vorm Berg.
Ich habe 2 #pihole Instanzen im Netz laufen.
Denen habe ich lokale DNS-Einträge für einen existierenden DNS record eingetragen.
Frage ich die Server direkt, bekomme ich auch die (lokale) IP zurück.
Frage ich die #FritzBox, die diese beiden Pihole-Instanzen als Upstream konfiguriert hat, bekomme ich ein "Unknown host" zurück.

Warum?

Replied in thread

@bradley I'm NOT exposing my #pihole (s) directly to the internet - I use one at home and another one via #wireguard #vpn whereever I may roam 🙂 Exposed ports for GUI and "healtchecks" are on a "random" highport which keeps logs mostly clear of "noise". Sometimes some scanners like #censys (or #shodan ) might also find these ports, but #iptables is very helpful 😉
Feel free to ask my via PM if something is not clear. I like feedback to make my docs better.

Continued thread

@michaelrowe01 observed quite a number of rabbit holes for proposed #PiHole lists…

Example:
avoidthehack.com/best-pihole-b

Will see how my journey progresses before meandering down too many…
…and will be seeking to add whitelists for sites that offer splendidly meaningful services!

Avoid the Hack (avoidthehack!) · Avoid The Hack: The Best Pi-Hole Blocklists (2024) | Avoid the Hack (avoidthehack!)By avoidthehack!
Continued thread

#Synology: CloudSync spamt den DNS mit Anfragen. Dutzende Mal in der Sekunde. Leider funktioniert die Lösung oben nicht bei mir, weil #PiHole auf der Synology läuft. Ich hätte dann beide DNSe auf dem gleichen System.

Der Support sagt, das sei ein "notwendiger Aspekt des Designs der Cloud Sync-Bibliothek (#cURL)".

Aber cURL kann doch #DNS-Ergebnisse cachen, oder verstehe ich das falsch?

everything.curl.dev/libcurl/ca

everything.curl.devCaches - everything curleverything there is to know about curl, libcurl and the cURL project

@michaelrowe01 after far too much procrastination - finally deployed Pi-Hole onto local NAS. You have voiced endorsement on many a GatW.B episode!

Tested = doing the desired task!
Added extra blocklists (github.com/jacklul/pihole-upda)

Also trained allowed-list with regex for #quad9 ;) = thankful for their DNS service

Might you share your ☯️ lists?

Yet to setup backup local #PiHole instance on separate low-power hungry device (contemplating bringing back online #NSLU2 for this purpose)

I guess it is time to find a cooler place for my PiHole Raspi, since the CPU runs above 60 °C - and it is not even under any meaningful stress (AFAIK).

Maybe the kitchen closet top is not the perfect place for it after all.

@tailscale Hello! I'm discovering #tailscale and want to thank you and congratulate you, this is splendid!

I'm facing 1 weird issue when trying to make tailscale work with #pihole

My Pihole setup works when tailscale is off. When I turn it up, I:
- make sure that my client has "use tailscale for DNS" set to "ON"
- on my tailscale admin > DNS, I have added the tailscale IP of my Pihole as the *only* "Global nameservers" and I make sure that "Override DNS Servers" is set to "ON".

But then, no URL gets resolved anymore 😰

Did I miss something despite have read tailscale.com/kb/1114/pi-hole ?

Thank you!

TailscaleAccess a Pi-hole from anywhere · Tailscale DocsSet up your Raspberry Pi as a DNS server for network-wide ad blocking with Pi-hole.

Estoy pensándome lo de #Pihole. ¿Alguien lo tiene? ¿Qué tal funciona?

Y mejor: si tenéis un tutorial explicado para usuario normal de Linux que tampoco controla mucho de manejar la terminal, os lo agradezco.