Outline ·
[ Standard ] ·
Linear+
Unifi Official TM UniFi High Speed Broadband Thread V42, READ 1ST PAGE FOR RELEVANT WIFI INFO!
|
BladeRider88
|
Sep 4 2024, 02:42 PM
|
|
QUOTE(countingcrows @ Sep 4 2024, 02:39 PM) If the simplest solution where I just replace 8888 with another #### DNS in my router/PC/devices stops working. I'm thinking of using dnscrypt-proxy. Is it difficult to set up? Actually no...you can follow many tutorials in YouTube
|
|
|
|
|
|
syahpian
|
Sep 4 2024, 02:45 PM
|
|
QUOTE(The.Lucas.DaY @ Sep 4 2024, 02:27 PM) This ControlD need to pay for using an account? there free and paid account https://controld.com/free-dnsyou can get cheap paid account by just registering on https://windscribe.com/and use your username there as promo code on controld
|
|
|
|
|
|
countingcrows
|
Sep 4 2024, 02:54 PM
|
Getting Started

|
QUOTE(BladeRider88 @ Sep 4 2024, 02:42 PM) Actually no...you can follow many tutorials in YouTube Ok, will check it out. Thanks.
|
|
|
|
|
|
blacktubi
|
Sep 4 2024, 02:58 PM
|
-
|
For those with resources to setup their own DNS resolver or those sysadmin here.
Can anyone verify if ISP is hijacking private DNS resolver as well?
Cause it seems fine on my end. I am trying to avoid DoH and DoT due to performance impact.
|
|
|
|
|
|
waja7968
|
Sep 4 2024, 03:04 PM
|
Getting Started

|
QUOTE(blacktubi @ Sep 4 2024, 02:58 PM) For those with resources to setup their own DNS resolver or those sysadmin here. Can anyone verify if ISP is hijacking private DNS resolver as well? Cause it seems fine on my end. I am trying to avoid DoH and DoT due to performance impact. Try --> https://www.olevod.tv/ (website to watch most recent movies) to verify. If your browser just spining and timeout then 100% it is block. Use DoH also no help on some DNS resolvers , need to find those resolvers not so well known and might have the chance to bypass the block. Most mobile operators block it and Unifi fiber block it starting today This post has been edited by waja7968: Sep 4 2024, 03:07 PM
|
|
|
|
|
|
jusbella
|
Sep 4 2024, 03:08 PM
|
|
QUOTE(waja7968 @ Sep 4 2024, 02:24 PM) Try --> https://www.olevod.tv/ (website to watch most recent movies) Most mobile operators block it and Unifi fiber block it starting today Attached thumbnail(s)
|
|
|
|
|
|
PJng
|
Sep 4 2024, 03:10 PM
|
|
QUOTE(waja7968 @ Sep 4 2024, 03:04 PM) Try --> https://www.olevod.tv/ (website to watch most recent movies) to verify. If your browser just spining and timeout then 100% it is block. Use DoH also no help on some DNS resolvers , need to find those resolvers not so well known and might have the chance to bypass the block. Most mobile operators block it and Unifi fiber block it starting today Digi phone cannot load
|
|
|
|
|
|
BladeRider88
|
Sep 4 2024, 03:10 PM
|
|
QUOTE(waja7968 @ Sep 4 2024, 03:04 PM) Try --> https://www.olevod.tv/ (website to watch most recent movies) to verify. If your browser just spining and timeout then 100% it is block. Use DoH also no help on some DNS resolvers , need to find those resolvers not so well known and might have the chance to bypass the block. Most mobile operators block it and Unifi fiber block it starting today Test with Digi Mobile Operator with 5G, if i turn on DoH on my mobile phone, yes i can access the website If i turn off ny DoH, nope i cannot access
|
|
|
|
|
|
blacktubi
|
Sep 4 2024, 03:11 PM
|
-
|
QUOTE(waja7968 @ Sep 4 2024, 03:04 PM) Try --> https://www.olevod.tv/ (website to watch most recent movies) to verify. If your browser just spining and timeout then 100% it is block. Use DoH also no help on some DNS resolvers , need to find those resolvers not so well known and might have the chance to bypass the block. Most mobile operators block it and Unifi fiber block it starting today You cannot access this site even via DoH with public resolver e.g. Google DNS now?
|
|
|
|
|
|
BladeRider88
|
Sep 4 2024, 03:11 PM
|
|
QUOTE(blacktubi @ Sep 4 2024, 02:58 PM) For those with resources to setup their own DNS resolver or those sysadmin here. Can anyone verify if ISP is hijacking private DNS resolver as well? Cause it seems fine on my end. I am trying to avoid DoH and DoT due to performance impact. Your definition of private dns resolver as in like Azure that kind? This post has been edited by BladeRider88: Sep 4 2024, 03:12 PM
|
|
|
|
|
|
waja7968
|
Sep 4 2024, 03:14 PM
|
Getting Started

|
QUOTE(PJng @ Sep 4 2024, 03:10 PM) If yours is Android phone, goto settings and key in "DNS" to search, chosse setup private/custom dns, then put in "dns.google".
|
|
|
|
|
|
jasontanky
|
Sep 4 2024, 03:15 PM
|
|
QUOTE(blacktubi @ Sep 4 2024, 02:58 PM) For those with resources to setup their own DNS resolver or those sysadmin here. Can anyone verify if ISP is hijacking private DNS resolver as well? Cause it seems fine on my end. I am trying to avoid DoH and DoT due to performance impact. DoT over one of the Japanese famous DNS resolver still working (I something J) For now, using less well known public DNS that is based in Malaysia or Singapore is still the most ideal solution with minimal bottleneck This post has been edited by jasontanky: Sep 4 2024, 03:16 PM
|
|
|
|
|
|
PJng
|
Sep 4 2024, 03:17 PM
|
|
QUOTE(waja7968 @ Sep 4 2024, 03:14 PM) If yours is Android phone, goto settings and key in "DNS" to search, chosse setup private/custom dns, then put in "dns.google". Yes, i set that, can load
|
|
|
|
|
|
waja7968
|
Sep 4 2024, 03:18 PM
|
Getting Started

|
QUOTE(blacktubi @ Sep 4 2024, 03:11 PM) You cannot access this site even via DoH with public resolver e.g. Google DNS now? I know Adguard's DoH is 100% block. Not sure about other resolvers DoH.
|
|
|
|
|
|
enixcv123
|
Sep 4 2024, 03:21 PM
|
|
QUOTE(syahpian @ Sep 4 2024, 02:45 PM) there free and paid account https://controld.com/free-dnsyou can get cheap paid account by just registering on https://windscribe.com/and use your username there as promo code on controld  thanks for sharing, just subscribe with tiral 30 days period. Work nicely, see how it goes after 28 days to confirm on the yearly subscription
|
|
|
|
|
|
isr25
|
Sep 4 2024, 03:25 PM
|
|
QUOTE(enixcv123 @ Sep 4 2024, 03:21 PM) thanks for sharing, just subscribe with tiral 30 days period. Work nicely, see how it goes after 28 days to confirm on the yearly subscription  Or use NextDNS. Cheaper at RM80/year - or 300k lookups free monthly This post has been edited by isr25: Sep 4 2024, 03:25 PM
|
|
|
|
|
|
zerorating
|
Sep 4 2024, 03:26 PM
|
|
QUOTE(blacktubi @ Sep 4 2024, 02:58 PM) For those with resources to setup their own DNS resolver or those sysadmin here. Can anyone verify if ISP is hijacking private DNS resolver as well? Cause it seems fine on my end. I am trying to avoid DoH and DoT due to performance impact. fine with me. (dns server on my sig) company that i work used opendns, still working (network provider: arc net ntt) QUOTE > google.com Server: dns.umbrella.com Address: 208.67.222.222
Non-authoritative answer: Name: google.com Addresses: 2404:6800:4003:c11::8a 2404:6800:4003:c11::64 2404:6800:4003:c11::65 2404:6800:4003:c11::71 142.251.12.138 142.251.12.139 142.251.12.100 142.251.12.101 142.251.12.102 142.251.12.113
> murrayhunter.substack.com Server: dns.umbrella.com Address: 208.67.222.222
Non-authoritative answer: Name: murrayhunter.substack.com Addresses: 2606:4700:4400::6812:25c8 2606:4700:4400::ac40:9638 104.18.37.200 172.64.150.56 This post has been edited by zerorating: Sep 4 2024, 03:35 PM
|
|
|
|
|
|
blacktubi
|
Sep 4 2024, 03:37 PM
|
-
|
QUOTE(zerorating @ Sep 4 2024, 03:26 PM) fine with me. (dns server on my sig) Beware of DNS amplification attack  I have a similar configuration but with ACL for AS4788 and AS9534 only Edit: I wonder if Unifi Biz affective by this as well. But I guess any decent corp or MNC have their own internal DNS already anyways. This post has been edited by blacktubi: Sep 4 2024, 03:39 PM
|
|
|
|
|
|
zerorating
|
Sep 4 2024, 03:43 PM
|
|
QUOTE(blacktubi @ Sep 4 2024, 03:37 PM) Beware of DNS amplification attack  I have a similar configuration but with ACL for AS4788 and AS9534 only Edit: I wonder if Unifi Biz affective by this as well. But I guess any decent corp or MNC have their own internal DNS already anyways. already kena targetted previously. but short period of time only. i dont know if dnsmasq could do IP filtering on BGP autonomous system(AS). I dont think SKMM or the ISP will kacau enterprise customer on this, our proxy server already block prawn, illegal content provider, webmail from the start. we got no time to defame gomen lel. This post has been edited by zerorating: Sep 4 2024, 03:45 PM
|
|
|
|
|