Hacker News new | ask | show | jobs
by joeywas 1103 days ago
Yes. pihole coupled with a router that can intercept outbound traffic on port 53 and force it to the pihole is how my home network is configured. That way it catches all those sneaky devices that have hard coded dns servers.
1 comments

I've also added (pfSense with pfBlocker) a list-rule to block all Public DNS servers (https://public-dns.info/). If you want to resolve a name, you gotta go through my DNS server.

The UDP:53 block gets almost everything, but I'm preparing for DoH.