#unbound — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #unbound, aggregated by home.social.
-
@tuell
Kommt drauf an: Wenn die Werbung als "normales" Video daherkommt (wie seit neulich in den Shorts) oder von Streamern während des Streams präsentiert wird, wird das natürlich nicht gefiltert (da dürfte jedoch auch der DuckDuckGo-Browser einknicken). Alles andere wird bei mir gefiltert und ins Datennirvana geschickt. Ich habe weder vor noch während noch nach den Streams irgendwelche von utube eingespielte Werbeblöcke oder Werbung neben dem Player.
Das funktioniert übrigens nicht nur bei utube, sondern auch bei allen anderen Seiten, die irgendwelche Werbung schalten.
Meine Plugins:
#uBlockOrigin
#NoScript
#PrivacyBadger
#SpoofGeolocation -
Where in the hell is this coming from?
All I am trying to do is clean up some rules in unbound and it is "MALWARE"!
Need a little better detection and the ability to turn this off or down when needed.
I know what I copied and I know what I am going to paste!
-
Having followed a tutorial, I could make #WireGuard wg-quick work on my #OpenBSD, but not without DNS query leaks, so I learned I must figure out #unbound - however, a noob like me can only seem to manage to fix configuration errors while unbound itself apparently won't start because of this (which I found out after learning there's more than one way to debug unbound - not elegant, imho):
[1781449588] unbound[95585:0] error: bind: address already in use
[1781449588] unbound[95585:0] fatal error: could not open portsI figured I should add my VPN interfaces to unbound.conf, but other than that I'm still clueless what else do I need to add or delete.
Thanks for your patience.
-
Having followed a tutorial, I could make #WireGuard wg-quick work on my #OpenBSD, but not without DNS query leaks, so I learned I must figure out #unbound - however, a noob like me can only seem to manage to fix configuration errors while unbound itself apparently won't start because of this (which I found out after learning there's more than one way to debug unbound - not elegant, imho):
[1781449588] unbound[95585:0] error: bind: address already in use
[1781449588] unbound[95585:0] fatal error: could not open portsI figured I should add my VPN interfaces to unbound.conf, but other than that I'm still clueless what else do I need to add or delete.
Thanks for your patience.
-
Hey bike racing fans ! Read it and let me know if it was not worth your time.
https://velo.outsideonline.com/gravel/mike-woods-unbound-gravel-race-blog-2026/
-
Hey bike racing fans ! Read it and let me know if it was not worth your time.
https://velo.outsideonline.com/gravel/mike-woods-unbound-gravel-race-blog-2026/
-
Cool, habe gerade #unbound zusätzlich auf meinem #pihole #ubuntu #linux server eingerichtet !
Für alle die nicht wissen von was ich rede https://publicdns.info/guides/setup-unbound-recursive-dns-server.html
-
Unbound-Ergebnis: Gemperle gewinnt die XL auf 32-Zoll. Jones verliert den 200er — den holt Mads Würtz Schmidt auf 700c.
32 Zoll funktioniert im richtigen Kontext: XL-Distanz, Schlamm, Ermüdung. Der 200er ist ein anderes Rennen.
Wir haben vorher so eingeschätzt:
cxberlin.net/head-in-the-cloud-32-zoll-mtb-und-gravel-eine-branche-sucht-ihre-erzaehlungvelo.outsideonline.com/gravel/gravel-gear/32-inch-wheels-unbound-gravel-results/
-
Unbound-Ergebnis: Gemperle gewinnt die XL auf 32-Zoll. Jones verliert den 200er — den holt Mads Würtz Schmidt auf 700c.
32 Zoll funktioniert im richtigen Kontext: XL-Distanz, Schlamm, Ermüdung. Der 200er ist ein anderes Rennen.
Wir haben vorher so eingeschätzt:
cxberlin.net/head-in-the-cloud-32-zoll-mtb-und-gravel-eine-branche-sucht-ihre-erzaehlungvelo.outsideonline.com/gravel/gravel-gear/32-inch-wheels-unbound-gravel-results/
-
Ahaha, Unbound kinda muddy this year: https://escapecollective.com/brief-report-and-big-gallery-a-mudfest-at-unbound-gravel-200/
-
Arch Linux'ta systemd-resolved ve Unbound ile Split-DNS Çözümü
Aynı anda hem WireGuard hem de OpenVPN tünelleri aktifken systemd-resolved'un önbellek mekanizması ve DNS yönlendirmesi saçmalayabiliyor. Bu DNS karmaşasını ve AWS VPC endpoint çakışmalarını, yerel bir Unbound DNS sunucusu kurup split-DNS kurallarını tanımlayarak çözdüm. Çözüm adımları ve config dosyaları burada.
https://yuceltoluyag.github.io/arch-linux-dns-vpn-systemd-resolved-unbound/
-
Good for Robin. His win is very well deserved. But I'm afraid with the 32'' thing, we're not going to hear the end of it. 🫣
(A rider would probably have won on a 29'' as well...) -
Good for Robin. His win is very well deserved. But I'm afraid with the 32'' thing, we're not going to hear the end of it. 🫣
(A rider would probably have won on a 29'' as well...) -
@nlnetlabs We proudly ship #canary & canary #QUIC #docker builds of #unbound No worries! 💚
-
@nlnetlabs We proudly ship #canary & canary #QUIC #docker builds of #unbound No worries! 💚
-
My wife has an #iPhone, and used to use #FitBit to keep track of her daily exercise and eating habits, etc., weight management, all that stuff.
#Google has now thoroughly broken all that, with the revamp of FitBit to Google #Health. Which relies so much on advertisement connections, that the app won't load on our home network with #PiHole and #Unbound.
Anyway, long story, short question:
What's the best FitBit alternative for #iOS? -
My wife has an #iPhone, and used to use #FitBit to keep track of her daily exercise and eating habits, etc., weight management, all that stuff.
#Google has now thoroughly broken all that, with the revamp of FitBit to Google #Health. Which relies so much on advertisement connections, that the app won't load on our home network with #PiHole and #Unbound.
Anyway, long story, short question:
What's the best FitBit alternative for #iOS? -
#Unbound 1.25.1 has been released ( #DNS / #DNSOverTLS / #DNSOverHTTPS / #DNSSEC / #NLnetLabs / #CVE / #SecurityVulnerability ) https://unbound.net/
-
#Unbound 1.25.1 has been released ( #DNS / #DNSOverTLS / #DNSOverHTTPS / #DNSSEC / #NLnetLabs / #CVE / #SecurityVulnerability ) https://unbound.net/
-
QNAME minimisation на практике: RFC 7816, реализация, грабли
Когда вы открываете mail.google.com , ваш рекурсивный резолвер делает три-четыре шага: спрашивает root, потом TLD, потом authoritative для google.com , иногда ещё один уровень. Десятилетиями каждому из этих серверов отправлялся один и тот же вопрос целиком: «дай мне mail.google.com ». Root-серверу, который понятия не имеет про google. TLD-серверу, который умеет только делегации com. . Каждый из них видел всю строку, хотя для своей работы нуждался в одной метке. В 2016 году Стефан Бортцмайер написал RFC 7816 и сказал: ребята, это странно. Давайте резолвер будет спрашивать ровно столько, сколько нужно для следующего хопа. Идея простая до неприличия. И с этого момента началось десять лет внедрения. Где течёт DNS
https://habr.com/ru/articles/1035648/
#QNAME_minimisation #RFC_7816 #DNS_privacy #recursive_resolver #Go #Unbound #leak
-
Many changes! Shipping STABLE @nlnetlabs Unbound QUIC builds aside our non QUIC variant&our cutting-edge canary builds soon! The supported architectures have been ramped up too: ppc64le, s390x, riscv64 joined the party. No own unbound.conf anymore, now we're just patching the needed #recursor settings at buildtime.
Test driving our builds verifies everything is nice. 💚
https://github.com/madnuttah/unbound-docker
#DNS #DNSSEC #DoT #DoH #QUIC #HTTP3 #Unbound #FOSS #SelfHosting #Homelab #Privacy #Security #ci #cd
-
Many changes! Shipping STABLE @nlnetlabs Unbound QUIC builds aside our non QUIC variant&our cutting-edge canary builds soon! The supported architectures have been ramped up too: ppc64le, s390x, riscv64 joined the party. No own unbound.conf anymore, now we're just patching the needed #recursor settings at buildtime.
Test driving our builds verifies everything is nice. 💚
https://github.com/madnuttah/unbound-docker
#DNS #DNSSEC #DoT #DoH #QUIC #HTTP3 #Unbound #FOSS #SelfHosting #Homelab #Privacy #Security #ci #cd
-
Я написал свой DNS-резолвер на Go вместо того, чтобы взять Unbound. Вот почему и что из этого вышло
Три месяца назад я начал делать NextDNS-clone для Европы. Рекурсивный DNS с фильтрацией рекламы, трекеров и malware. Первый день: открываю Unbound, читаю man, всё понятно. К вечеру понимаю, что не подходит. Через неделю пишу свой резолвер на Go и вспоминаю поговорку про человека, который решил написать почтовый сервер. Никогда такого не было, и вот опять. Сейчас в проде: 10 нод по миру, отвечает на DoH/DoT, фильтрует по миллионам доменов, RAM 60 МБ на ноду. Расскажу, почему ушёл от готового, что было больно, и где Unbound всё ещё быстрее. Спойлер: почти везде, но в наших условиях это не имеет значения. Зачем я полез в DNS
https://habr.com/ru/articles/1035394/
#DNS #recursive_resolver #Go #Unbound #privacy #DoH #edge #golang #RFC
-
New canary Unbound QUIC build is out. Runs on basically any platform @nlnetlabs Unbound supports. Distroless, and built using our hardened native and mighty 🦾 OpenSSL 3.6.2 + QUIC build environment! (https://github.com/madnuttah/openssl-buildenv)
Full DNSSEC support, QUIC/HTTP3 via ngtcp2/nghttp3... So much fun!
cc @nlnetlabs 💚
https://github.com/madnuttah/unbound-docker
https://hub.docker.com/r/madnuttah/unbound
#DNS #DNSSEC #DoT #DoH #QUIC #HTTP3 #Unbound #FOSS #SelfHosting #Homelab #Privacy
-
New canary Unbound QUIC build is out. Runs on basically any platform @nlnetlabs Unbound supports. Distroless, and built using our hardened native and mighty 🦾 OpenSSL 3.6.2 + QUIC build environment! (https://github.com/madnuttah/openssl-buildenv)
Full DNSSEC support, QUIC/HTTP3 via ngtcp2/nghttp3... So much fun!
cc @nlnetlabs 💚
https://github.com/madnuttah/unbound-docker
https://hub.docker.com/r/madnuttah/unbound
#DNS #DNSSEC #DoT #DoH #QUIC #HTTP3 #Unbound #FOSS #SelfHosting #Homelab #Privacy
-
https://www.wacoca.com/games/1374486/ 『Stellar Blade』次回作はソニーから離れ、Shift Upによる自社パブリッシングへ ##GAMING #Game #GameNews #games #GamingNews #Grezzz #ShiftUp #StellerBlade #unbound #ゲーミング #ゲーム #ゲーム攻略 #ゲーム最新情報 #ソニー・インタラクティブエンタテインメント #ニュース
-
Paper Cup
その一言が胸を焼き尽くす
Ця душа горить і даліhttps://www.deviantart.com/poison-raika/art/Paper-Cup-1290481593
<>
#AI生成 #beat #drop #shadow #side #light #smile #hide #scream #silence #chain #contract #never #unbound #only #moment #need #longer #home #word #burn #through #chest #still #look #proof #sweat #dream #cup
-
Den gestrigen Di.Day habe ich zum Anlass genommen, meine digitale Unabhängigkeit noch einmal massiv auszubauen:
Ab sofort läuft bei mir auf einer kleinen Hetzner VPS ein AdGuard und ein Unbound DNS mit DNS over TLS. Jeglicher Netzwerktraffic der durch meine OPNsense und dann durch die Fritz!Box nach aussen geht, geht per DNS over TLS über meinen eigenen DNS mit entsprechenden Blocklisten.
Ja, es ist kein VPN involviert. Vodafone bekommt also zumindest noch die IP Adressen mit.
Aber in erster Linie ging es mir vor allem um den DNS Rebind Schutz und die Blocklisten.
#diday #adguard #unbound #dns #opnsense #vodafone #unabhängigkeit #digitalesouveranitat
-
Den gestrigen Di.Day habe ich zum Anlass genommen, meine digitale Unabhängigkeit noch einmal massiv auszubauen:
Ab sofort läuft bei mir auf einer kleinen Hetzner VPS ein AdGuard und ein Unbound DNS mit DNS over TLS. Jeglicher Netzwerktraffic der durch meine OPNsense und dann durch die Fritz!Box nach aussen geht, geht per DNS over TLS über meinen eigenen DNS mit entsprechenden Blocklisten.
Ja, es ist kein VPN involviert. Vodafone bekommt also zumindest noch die IP Adressen mit.
Aber in erster Linie ging es mir vor allem um den DNS Rebind Schutz und die Blocklisten.
#diday #adguard #unbound #dns #opnsense #vodafone #unabhängigkeit #digitalesouveranitat
-
Ein bisschen mehr 'Netzneutralität' privat geschaffen.
@TheMorpheus erklärt euch, wie das geht in seinem Video.
#DigitalIndependenceDay #digitalerUnabhängigskeitstag #DUT #DID #DNS #Internet #Domain #DomainRegistrar #ICANN
-
Ein bisschen mehr 'Netzneutralität' privat geschaffen.
@TheMorpheus erklärt euch, wie das geht in seinem Video.
#DigitalIndependenceDay #digitalerUnabhängigskeitstag #DUT #DID #DNS #Internet #Domain #DomainRegistrar #ICANN
-
and then my DNS failed again 😭
But this time it was my upstream non-HA unbound on opnsense that just terminated.
unbound is serving my local dhcp entries and some magic.. those are not replicated to the backup system :(monit to the rescue! it will (re)start unbound no in case of failure.
-
and then my DNS failed again 😭
But this time it was my upstream non-HA unbound on opnsense that just terminated.
unbound is serving my local dhcp entries and some magic.. those are not replicated to the backup system :(monit to the rescue! it will (re)start unbound no in case of failure.
-
-
-
I recently found a blog post about setting up redundant Pi-holes. Unfortunately it was missing a key part of the config so I wrote a little reply on how to fix the setup.
#pihole #unbound
https://log.dataprolet.de/high-availability-pi-hole
https://log.dataprolet.de/high-availability-pi-hole/ -
Updated my #homelab to #k3s 1.35, deployed #vaultwarden, #pihole with #unbound and #forgejo with #woodpecker. All the web guis have #letsencryt certificates. Storage redundancy is achieved by #longhorn which maintains redundant copies of pvcs across the nodes. The nodes are vms controlled by #incus, so that I can shut down the whole k8s thingy with a simple incus stop command when I’m done playing.
k3s is really nice and easy to deploy and well documented, getting things to run in k8s though is mainly pasting yaml from the internet and hoping for the best. -
Updated my #homelab to #k3s 1.35, deployed #vaultwarden, #pihole with #unbound and #forgejo with #woodpecker. All the web guis have #letsencryt certificates. Storage redundancy is achieved by #longhorn which maintains redundant copies of pvcs across the nodes. The nodes are vms controlled by #incus, so that I can shut down the whole k8s thingy with a simple incus stop command when I’m done playing.
k3s is really nice and easy to deploy and well documented, getting things to run in k8s though is mainly pasting yaml from the internet and hoping for the best. -
My unbound servers are deployed. I can now remove the "ansible_host" variables from my inventory.