Comment on I finally figured out how to virtualize my OPNsense firewall. Suck it, Roku.

<- View Parent
jubilationtcornpone@sh.itjust.works ⁨1⁩ ⁨year⁩ ago

That’s correct. I block DoT in my firewall and block known DoH domains in piHole. I’m sure stuff slips through occasionally but the vast majority of my DNS requests are handled by piHole.

Traditional DNS over UDP/53 is insecure but I’m using ProtonVPN’s DNS server over VPN externally so I’m not worried about that.

source
Sort:hotnewtop