Giter Club home page Giter Club logo

nextdns-config's People

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

nextdns-config's Issues

Questions concerning Guideline for NextDNS - Speed?

Hi,

first of all thx for the guideline and efforts in that category.

I do have some questions concerning the guideline:

  • AI-Driven Threat Detection: As it's still Beta, why enable (cannot find any explanation for this part)?
  • Google Safe Browsing: nearly every browser does have it enabled (why not disable it within NextDNS?)
  • Cryptojacking Protection: isn't it already integrated within blocklists?
  • IDN Homograph Attacks Protection: I would be careful with german "Umlaute" websites
  • Block Dynamic DNS Hostnames: What if you use own DDNS services?

I'm thinking about having as less as possible activated, so that NextDNS doesn't get slow... Or does it not matter concerning speed of NextDNS?

ControlD-Config by yokoffing

It would be interesting to see a similar guide for ControlD DNS. It is more complex than NextDNS, but it is the closest alternative that exists.

Xbox achievements

Hi, these domains are blocked by hagezi Ultimate but are needed for Xbox Achievements. I think these would be a great addition to the "allowlist" section.

v10.events.data.microsoft.com
v20.events.data.microsoft.com

Apple domains are redundant

All of the apple domains recommended in the denylist section are included in either NextDNS' built in apple tracking protection, or Hagezi.
You can verify it for yourself by trying to access the domains and viewing the NextDNS log.

The only one which doesn't seem to by blocked is feedbackws.fe.apple-dns.net

I also checked the recommended Twitter and Nvidia domains, those are indeed not blocked by Hagezi.

Some questions

First of all, Happy New Year and thank you for this helpful guide!

  1. How do you manage the use of multiple browsers on the iPhone? If I use Orion for my daily browsing, then Safari would no longer be used?
  2. As adblock for Safari is AdGuard better than 1Blocker or Ghostery for iOS? How do you configure AdGuard if one already has protection with some lists through NextDNS? (Will the free version be enough?)

Cheers!

add Cloudflare DNS

the config/settings page don't work well on chrome in windows using high contrast

windows high contrast theme dark black . makes the toggle buttons show as all black with just a border line .
there's no way to tell if the buttons are on or off .
in the allowlist page the button are like but i can tell if on/off , because when its off the text/url become shadowed/grayed .
if u make the settings page like this too it can be usable .

Warning

Due to the very hight amount of blocklist dead in NEXTDNS (I do not know why they don't rotate those list)

a warning can be useful for those who follow (check the last time update and number of rule) some are not updated (because dead) and some are empty 0 rules.

Whitelist

b-graph.facebook.com is needed for Facebook mobile login.

energized is dead

Re Native Tracking Protection

Disabling Native Tracking Protection for brands which manufacture IoT and connected/"smart" devices and appliances, could prevent confining them, and sometimes even discovering them via their mobile apps.

For example, when trying to update the changed home WiFi settings for Amazon Echo device, I could not access its configuration page in Alexa mobile app on iPhone even after connecting the iPhone to the speaker's own default WiFi which it emits in a set-up mode.

I disabled Native Tracking Protection for Amazon in my NextDNS profile for iPhone, and was able to have this speaker be "discovered" in the app and access its config page.
It could scan and discover my new home WiFi, I entered the password for it, but the speaker was not able to finish the set up for for a new WiFi. Only when I disabled Native Tracking Protection for Amazon in the NextDNS profile for my router, the procedure could be completed.

Then I re-enabled blocking (Native Tracking Protection) for Amazon and the Echo speaker kept working fine, including all interaction between it and Alexa mobile app.

So this is a warning, that at least during discovery/configuration of IoT and connected/"smart" devices, you might need to disable Native Tracking Protection for their manufacturer brand.

replace oisd to notracking

Hi @yokoffing

Please consider replace oisd to notracking blocklist.
notracking does not have any major false positives.
oisd after several months using it is for me too liberal with whitelisting
Also developer does not ping Original Maintainers about whitelists issue.
NoTracking have solid base with small amount false positives (if any).
Alongside with 1Hosts (Mini) and small custom whitelists NextDNS works like a charm.
Please note: oisd does not have included Steven Black hosts originals and denied adding them.

I used following whitelists (against some apps issues)

adocean.pl
c.msn.com
cdn-settings.appsflyersdk.com
click.redditmail.com
crashlyticsreports-pa.googleapis.com
google-analytics.com
googleads.g.doubleclick.net
googletagmanager.com
gvt1.com
gvt2.com
gvt3.com
insideruser.microsoft.com
launches.appsflyer.com
media-lab.ai
mybbc-analytics.files.bbci.co.uk
oaprodlogging.yo-digital.com
sdk-02.moengage.com
self.events.data.microsoft.com
stats.g.doubleclick.net

https://github.com/notracking/hosts-blocklists

"Does NextDNS hide activity from my Internet Service Provider (ISP)?"

The answer to this is misleading. Encrypted DNS does prevent ISP from seeing web searches in a url as well as browsing. Sure, they can see you connect to AWS, but not not what devices made the request, what site on AWS is accessed, etc. without DPI. Is it a VPN? No, but it goes a long way to protecting privacy.

Thanks for your work.

Question regarding cryptojacking toggle

All recommended lists (and alternate) include the cryptojacking list in NextDNS's built in cryptojacking protection. (with additional false positives removed).

So my question is why advise people to enable it? One of the lists are not maintained often and hagezi has stripped some false positives out of it.

[help] if I use HaGeZi ultimate does it cover all?

hi,

thank you for this easy-to-follow guide

I'm not nitpicking, just tying to understand, if I use 'HaGeZi ultimate' list, then, do I still need to use 'HaGeZi Normal' and 'HaGeZi pro+' as suggested in the guide...

in short, does HaGeZi Ultimate cover all of HaGeZi's lists combined

thanks

NX Enhanced extension

Came across this really useful extension NX Enhanced, thought you should add it in your config since adds really nice features like:

  • Allow/Deny buttons in the logs
  • Refine a search with multiple search terms or exclusion terms
  • Ability to export/import all settings from/to a config
  • Option to show only queries from unnamed devices
  • Collapse the list of blocklists enabled
  • Sort alphabetically the list of blocklists & more..

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.