Page 1 of 2 12 LastLast
Results 1 to 16 of 23

Thread: DNS Question

  1. #1
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,843
    Thanks
    1,884
    Thanked
    1,033 times in 785 posts

    DNS Question

    I am using Virgin fibre and I have had so many problems with DNS, whether its slow or page can't be found due to DNS etc so I have been looking at an alternative.

    Wanted something that would work for every device in the house, is it just a case of changing the DNS at the router to something like cloudflare 1.1.1.1 or is it not recommended to change the default DNS on the router?

    I know you can't change it on the Superhub itself but I use the hub in modem mode and have a separate router
    Jon

  2. #2
    Missed by us all - RIP old boy spacein_vader's Avatar
    Join Date
    Sep 2014
    Location
    Darkest Northamptonshire
    Posts
    2,015
    Thanks
    184
    Thanked
    1,086 times in 410 posts
    • spacein_vader's system
      • Motherboard:
      • MSI B450 Tomahawk Max
      • CPU:
      • Ryzen 5 3600
      • Memory:
      • 2x8GB Patriot Steel DDR4 3600mhz
      • Storage:
      • 1tb Sabrent Rocket NVMe (boot), 500GB Crucial MX100, 1TB Crucial MX200
      • Graphics card(s):
      • Gigabyte Radeon RX5700 Gaming OC
      • PSU:
      • Corsair HX 520W modular
      • Case:
      • Fractal Design Meshify C
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • BenQ GW2765, Dell Ultrasharp U2412
      • Internet:
      • Zen Internet

    Re: DNS Question

    Quote Originally Posted by Jonj1611 View Post
    I am using Virgin fibre and I have had so many problems with DNS, whether its slow or page can't be found due to DNS etc so I have been looking at an alternative.

    Wanted something that would work for every device in the house, is it just a case of changing the DNS at the router to something like cloudflare 1.1.1.1 or is it not recommended to change the default DNS on the router?

    I know you can't change it on the Superhub itself but I use the hub in modem mode and have a separate router
    Short answer: Yes.

    Longer answer: Usually yes, unless you have devices with DNS you set manually (which you'd know about,) or that have it hard coded. The latter is usually Google devices that always try to use 8.8.8.8 regardless of network settings.

  3. #3
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,843
    Thanks
    1,884
    Thanked
    1,033 times in 785 posts

    Re: DNS Question

    Thanks for replying, I haven't set anything manually apart from the PC but noticed others have issues with Virgin in the house as well so thought it would be easier to do it from a central location than adjust each device individually
    Jon

  4. #4
    root Member DanceswithUnix's Avatar
    Join Date
    Jan 2006
    Location
    In the middle of a core dump
    Posts
    13,012
    Thanks
    782
    Thanked
    1,570 times in 1,326 posts
    • DanceswithUnix's system
      • Motherboard:
      • Asus X470-PRO
      • CPU:
      • 5900X
      • Memory:
      • 32GB 3200MHz ECC
      • Storage:
      • 2TB Linux, 2TB Games (Win 10)
      • Graphics card(s):
      • Asus Strix RX Vega 56
      • PSU:
      • 650W Corsair TX
      • Case:
      • Antec 300
      • Operating System:
      • Fedora 39 + Win 10 Pro 64 (yuk)
      • Monitor(s):
      • Benq XL2730Z 1440p + Iiyama 27" 1440p
      • Internet:
      • Zen 900Mb/900Mb (CityFibre FttP)

    Re: DNS Question

    Usually the router gives itself as the DNS resolver as part of devices getting a network address using DHCP, and the router then asks to wherever your ISP sets it to (hopefully with some caching). So, if you set it at the router it will hopefully get picked up by the rest of the network.

    I say hopefully, because an ISP can always intercept all DNS traffic regardless of where it is heading and re-point them back to their own servers.

  5. #5
    RIP Peterb ik9000's Avatar
    Join Date
    Nov 2009
    Posts
    7,743
    Thanks
    1,849
    Thanked
    1,442 times in 1,065 posts
    • ik9000's system
      • Motherboard:
      • Asus P7H55-M/USB3
      • CPU:
      • i7-870, Prolimatech Megahalems, 2x Akasa Apache 120mm
      • Memory:
      • 4x4GB Corsair Vengeance 2133 11-11-11-27
      • Storage:
      • 2x256GB Samsung 840-Pro, 1TB Seagate 7200.12, 1TB Seagate ES.2
      • Graphics card(s):
      • Gigabyte GTX 460 1GB SuperOverClocked
      • PSU:
      • NZXT Hale 90 750w
      • Case:
      • BitFenix Survivor + Bitfenix spectre LED fans, LG BluRay R/W optical drive
      • Operating System:
      • Windows 7 Professional
      • Monitor(s):
      • Dell U2414h, U2311h 1920x1080
      • Internet:
      • 200Mb/s Fibre and 4G wifi

    Re: DNS Question

    try swapping to openDNS. IIRC you can also set up an account with them for content filtering if you want to though that may be a router specific feature. I can't remember the details of that side it was a while since I did it.

  6. #6
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,843
    Thanks
    1,884
    Thanked
    1,033 times in 785 posts

    Re: DNS Question

    Thanks for the replies, I was using cloudflare because it is supposed to be quick, I have heard of opendns but never used it
    Jon

  7. #7
    ALT0153™ Rob_B's Avatar
    Join Date
    Jul 2006
    Posts
    6,876
    Thanks
    487
    Thanked
    1,128 times in 729 posts

    Re: DNS Question

    And if you're doing that... Get a pihole

  8. #8
    Missed by us all - RIP old boy spacein_vader's Avatar
    Join Date
    Sep 2014
    Location
    Darkest Northamptonshire
    Posts
    2,015
    Thanks
    184
    Thanked
    1,086 times in 410 posts
    • spacein_vader's system
      • Motherboard:
      • MSI B450 Tomahawk Max
      • CPU:
      • Ryzen 5 3600
      • Memory:
      • 2x8GB Patriot Steel DDR4 3600mhz
      • Storage:
      • 1tb Sabrent Rocket NVMe (boot), 500GB Crucial MX100, 1TB Crucial MX200
      • Graphics card(s):
      • Gigabyte Radeon RX5700 Gaming OC
      • PSU:
      • Corsair HX 520W modular
      • Case:
      • Fractal Design Meshify C
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • BenQ GW2765, Dell Ultrasharp U2412
      • Internet:
      • Zen Internet

    Re: DNS Question

    Quote Originally Posted by Rob_B View Post
    And if you're doing that... Get a pihole
    This. Then use open dns or cloudflare with DNSSEC enabled.

  9. #9
    Senior Member
    Join Date
    Jul 2012
    Location
    By the sea
    Posts
    319
    Thanks
    27
    Thanked
    114 times in 72 posts
    • matts-uk's system
      • Motherboard:
      • Apple iMac
      • CPU:
      • Core i7 3.4Ghz
      • Memory:
      • 12GB DDR3
      • Storage:
      • RAID5 on the twin Xeon server I keep in the airing cupboard
      • Graphics card(s):
      • ATI 7970M
      • Case:
      • A lurvely slimline, all in one aluminium number.
      • Operating System:
      • OSX, Centos, Windows.
      • Monitor(s):
      • 27" LED (Apple), 24" LED (Apple), 2 x 20" TFT Dell
      • Internet:
      • ADSL rubbish

    Re: DNS Question

    Quote Originally Posted by Jonj1611 View Post
    Wanted something that would work for every device in the house, is it just a case of changing the DNS at the router to something like cloudflare 1.1.1.1 or is it not recommended to change the default DNS on the router?
    With a decent broad band link you are generally better off with clients bypassing the router DNS proxy and sending requests directly to the internet. You can usually set the DNS server IP handed to clients by editing the DHCP server settings in the router - DHCP option 6, or fill in the form provided to override the default.

    You can use any public DNS server you like. Cloudflare (1.1.1.1), Google (8.8.8.8) Quad9 (9.9.9.9), CleanBrowsing (185.228.168.9) and so on. Quad9 and CleanBrowsing filter domains with a reputation for phishing and malware.

    Or set up a pihole.

  10. #10
    Senior Member
    Join Date
    Feb 2008
    Posts
    925
    Thanks
    4
    Thanked
    161 times in 148 posts
    • smargh's system
      • Motherboard:
      • Gigabyte GA-EP45-UD3P
      • CPU:
      • Xeon E5450 with 775-to-771 Mod
      • Memory:
      • 16GB Crucial
      • Storage:
      • Intel X25-M G2 80GB/Adaptec 3405 4x 2TB Ultrastar RAID1 / 1x 6TB Hitachi He6 / Dying 2TB Samsung
      • Graphics card(s):
      • GTX 750 Ti
      • PSU:
      • Seasonic X-560
      • Case:
      • Lian-Li PC-A71
      • Operating System:
      • Windows 7 Ultimate 64bit
      • Monitor(s):
      • BenQ G2400WD
      • Internet:
      • Really Crap ADSL2 <3Mbit

    Re: DNS Question

    I'm trying https://nextdns.io/ which works fine and has some configurable options, including support for dynamic DNS, and custom responses also.

    It has logs, which I like from the perspective of being able to look at historic logs to see the first time a specific domain was queried, in case an app or extension is ever modified with malicious code. Others might not like that, but probably most/all DNS providers log for threat intel & analytics anyway.
    Last edited by smargh; 06-02-2021 at 01:04 PM.

  11. #11
    Senior Member
    Join Date
    Jul 2003
    Posts
    12,193
    Thanks
    912
    Thanked
    601 times in 421 posts

    Re: DNS Question

    Not directly an answer to the quuestion, but you might find this useful as a whole..

    https://www.grc.com/dns/benchmark.htm

  12. Received thanks from:

    ik9000 (06-02-2021),kalniel (07-02-2021),kompukare (06-02-2021)

  13. #12
    RIP Peterb ik9000's Avatar
    Join Date
    Nov 2009
    Posts
    7,743
    Thanks
    1,849
    Thanked
    1,442 times in 1,065 posts
    • ik9000's system
      • Motherboard:
      • Asus P7H55-M/USB3
      • CPU:
      • i7-870, Prolimatech Megahalems, 2x Akasa Apache 120mm
      • Memory:
      • 4x4GB Corsair Vengeance 2133 11-11-11-27
      • Storage:
      • 2x256GB Samsung 840-Pro, 1TB Seagate 7200.12, 1TB Seagate ES.2
      • Graphics card(s):
      • Gigabyte GTX 460 1GB SuperOverClocked
      • PSU:
      • NZXT Hale 90 750w
      • Case:
      • BitFenix Survivor + Bitfenix spectre LED fans, LG BluRay R/W optical drive
      • Operating System:
      • Windows 7 Professional
      • Monitor(s):
      • Dell U2414h, U2311h 1920x1080
      • Internet:
      • 200Mb/s Fibre and 4G wifi

    Re: DNS Question

    chaps re pihole, I have a spare pi3b kicking aruond. Will that be good enough, and if so, please can anyone direct me to the how-to + is there anything I should watch out for in setting it up? Peterb suggested i did this back in the day but I got delayed waiting for a chip heatsink (which I now have) and never got around to completing it.

  14. #13
    ALT0153™ Rob_B's Avatar
    Join Date
    Jul 2006
    Posts
    6,876
    Thanks
    487
    Thanked
    1,128 times in 729 posts

    Re: DNS Question

    I run it on a zero so a 3B is plenty. I used this I think https://learn.adafruit.com/pi-hole-a...nstall-pi-hole

    My router didn't have the options I needed so I had to have the pi also be my DHCP server

  15. Received thanks from:

    ik9000 (06-02-2021)

  16. #14
    RIP Peterb ik9000's Avatar
    Join Date
    Nov 2009
    Posts
    7,743
    Thanks
    1,849
    Thanked
    1,442 times in 1,065 posts
    • ik9000's system
      • Motherboard:
      • Asus P7H55-M/USB3
      • CPU:
      • i7-870, Prolimatech Megahalems, 2x Akasa Apache 120mm
      • Memory:
      • 4x4GB Corsair Vengeance 2133 11-11-11-27
      • Storage:
      • 2x256GB Samsung 840-Pro, 1TB Seagate 7200.12, 1TB Seagate ES.2
      • Graphics card(s):
      • Gigabyte GTX 460 1GB SuperOverClocked
      • PSU:
      • NZXT Hale 90 750w
      • Case:
      • BitFenix Survivor + Bitfenix spectre LED fans, LG BluRay R/W optical drive
      • Operating System:
      • Windows 7 Professional
      • Monitor(s):
      • Dell U2414h, U2311h 1920x1080
      • Internet:
      • 200Mb/s Fibre and 4G wifi

    Re: DNS Question

    thanks, silly question - presume this is ok to sit after the firewall? SFAIK you set the router DNS to use the ip of the pihole, and everything therefore is filtered through that, but it still benefits from the router's firewall right? i.e do I need to worry about putting a firewall/IS suite on the pi itself?

  17. #15
    Missed by us all - RIP old boy spacein_vader's Avatar
    Join Date
    Sep 2014
    Location
    Darkest Northamptonshire
    Posts
    2,015
    Thanks
    184
    Thanked
    1,086 times in 410 posts
    • spacein_vader's system
      • Motherboard:
      • MSI B450 Tomahawk Max
      • CPU:
      • Ryzen 5 3600
      • Memory:
      • 2x8GB Patriot Steel DDR4 3600mhz
      • Storage:
      • 1tb Sabrent Rocket NVMe (boot), 500GB Crucial MX100, 1TB Crucial MX200
      • Graphics card(s):
      • Gigabyte Radeon RX5700 Gaming OC
      • PSU:
      • Corsair HX 520W modular
      • Case:
      • Fractal Design Meshify C
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • BenQ GW2765, Dell Ultrasharp U2412
      • Internet:
      • Zen Internet

    Re: DNS Question

    Quote Originally Posted by ik9000 View Post
    thanks, silly question - presume this is ok to sit after the firewall? SFAIK you set the router DNS to use the ip of the pihole, and everything therefore is filtered through that, but it still benefits from the router's firewall right? i.e do I need to worry about putting a firewall/IS suite on the pi itself?
    Correct it's behind your router so you don't have to. You could put UFW on it and set a rule to only accept incoming traffic on port 53 if you wanted to be extra cautious though. Mine is a 3B and it's fast enough.

    Keep an eye on the pihole for the first couple of weeks, particularly the top lists. You'll be surprised what phones home every couple of minutes and can be blocked.

  18. Received thanks from:

    ik9000 (07-02-2021)

  19. #16
    Super Moderator Jonj1611's Avatar
    Join Date
    Jun 2008
    Posts
    5,843
    Thanks
    1,884
    Thanked
    1,033 times in 785 posts

    Re: DNS Question

    Thanks for the replies, not sure pihole is quite where I am at right now but will certainly consider it for the future and will look into it more this afternoon.
    Jon

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •