Ideally you’d use both. Something like a pihole to serve as a first wall of defense for the entire network, and then additional things like uBlock Origin for any device with a browser that supports it, for some more granular control.
I’m the kind of person who also uses the hosts file from DivestOS on my PC, because why not. Always fun to see how the pihole doesn’t have to block anything on that device because of this.
On that note, Safings’ Portmaster is a nice app if you want to have a graphical overview of what’s going on on a device.
Well DNS based blocking has its problems mainly devices bypassing your network defined DNS with some encrypted DNS(DoT,DoH) or using hardcoded custom DNS servers.
A. Device part of a business infrastructure:
Just don’t change anything; those policy are there for a reason!B. Consumer device:
1/ If we’re talking about proprietary hardware/software forcing your network to use a specific DNS, then you need to provide more details because you should be able to change it.2/ There is also the case for a malware:
A fresh start is preferable.
Disinfect the system while offline, then back up the needed files.
Reinstall the system on a new/old formatted drive.
With the exception of taking your privacy/security seriously this time.Sounds like you shouldn’t use those devices. I go for custom software personally so I can control the device itself
What is local app based tracker blocking ? Like ublock origin?
On Android, DuckDuckGo provide an app called App Tracking Protection which blocks everything trying to track you/phone home via the apps you’ve got installed. Drawbacks are you that you can’t run a VPN client at the same time.
I use this too
Honestly I use both on my phone via RethinkDNS, which also can act as a firewall.
How does it compare to NextDNS? i’ve never heard of it but it looks good!
open source proxy / DNS blocker don’t (or shouldn’t) have commercial agendas & obligations that commercial OS & Browsers may impose.
Do I need a DNS-based blocker with ProtonVPN? From what I gather, ProtonVPN has its own adblocking DNS servers.
For me its a moot point - my ISP doesn’t allow altering DNS on my router so I just installed Mullvad on all my devices and use their DNS.
I disabled DHCP on the ISP router and my rsspberry pi with Pihole is the DHCP server now, serving it’s own IP address as DNS for all devices.
DNS based blocking never works for me.
Reason ?