Live data from Hacker News

Shutting down our public encrypted DNS

mullvad.net

81–90 of 226 posts

Re: Shutting down our public encrypted DNS

#81

Earlier quoted context omitted.

[flagged]

They are not far right, AFAICT they are “right” Marxists, probably most similar to Albanian Hoxhaism. If you aren’t familiar with splits inside Marxism-Leninism, the “left” is most often represented by Trotskyism with the “right” tendency being more like Stalinism and North Korean Juche. (Note that these left/right terms aren’t universally used or applied because every faction claims to be correct.)

[deleted]

Re: Shutting down our public encrypted DNS

#82

Earlier quoted context omitted.

> The German courts entirely disregarded our use of geo-IP lookups on queries, and asserted that since tests via a VPN were able to resolve the domain, we were in breach of court orders Seriously, what the fuck? So you're supposed to block VPNs as well? What's next, Tor exit nodes? New VPN and Tor nodes as they pop up? I really don't like where this is going.

There's some irony in Germany using censorship for the purpose of ensuring people don't get into reading materials that might convince them to become... fascists who censor people

There is no irony. The German government is proto-fascist, and has been for a while, as are several other European governments. Apparently the UK now arrests more people per capita for online speech than China does.

Re: Shutting down our public encrypted DNS

#83
post #82

Earlier quoted context omitted.

There's some irony in Germany using censorship for the purpose of ensuring people don't get into reading materials that might convince them to become... fascists who censor people

There is no irony. The German government is proto-fascist, and has been for a while, as are several other European governments. Apparently the UK now arrests more people per capita for online speech than China does.

[flagged]

Re: Shutting down our public encrypted DNS

#84
post #51
post #42

Earlier quoted context omitted.

That's something people should run themselves. I run Adguard Home on my router. Unlike the main Adguard product, Adguard Home is fully FOSS. It's been rock-solid for me, and improves on pi-hole in various ways - like full IPv6 support.

I use Mullvad's adblocking DNS server on my phone which is not always behind my home router.

If you're on Android, FF supports add-ons.

If you're on an iPhone, uBlock is now supported: https://apps.apple.com/us/app/ublock-origin-lite/id674534269...

There's also Orion browser, but I found it to be a bit more glitchy, especially around sites like YouTube (fuck the app, I'm not watching videos there): https://orionbrowser.com/

Re: Shutting down our public encrypted DNS

#85

Earlier quoted context omitted.

For blocking, I would much rather run my own service.

I've been loving the Pihole setup I just set up. It uses Quad9 as the upstream provider and then I do all the blocking myself. I used to use NextDNS but this is so much better and free!

Technitium is also really good as a performant local blocker and recursive dns server. I have been running mine for years now and it is fast as well.

Re: Shutting down our public encrypted DNS

#86
post #42
post #9

Earlier quoted context omitted.

Quad9 doesn't have an adblocking DNS service though, so it's not really a replacement.

That's something people should run themselves. I run Adguard Home on my router. Unlike the main Adguard product, Adguard Home is fully FOSS. It's been rock-solid for me, and improves on pi-hole in various ways - like full IPv6 support.

  > That's something people should run themselves. I run Adguard Home on my router. 
I'll second this. People should really be flashing their routers. OpenWRT is simple enough that if you're on HN I think you'll easily be able to do it. And like most routers, you set it up and forget it.

But you'll also get a bunch more benefits from OpenWRT, to make it worth your while.

  - I was able to buy a router for 
[0] You don't need something like this unless you're getting >1Gbps from your ISP. Big thing I wanted is the 2 10G ports.

Re: Shutting down our public encrypted DNS

#87
post #51

Earlier quoted context omitted.

I use Mullvad's adblocking DNS server on my phone which is not always behind my home router.

If you're on Android, FF supports add-ons. If you're on an iPhone, uBlock is now supported: https://apps.apple.com/us/app/ublock-origin-lite/id674534269... There's also Orion browser, but I found it to be a bit more glitchy, especially around sites like YouTube (fuck the app, I'm not watching videos there): https://orionbrowser.com/

It's not the same thing at all. Mullvad DNS blocks all ads across the system.

Re: Shutting down our public encrypted DNS

#88
post #51

Earlier quoted context omitted.

I use Mullvad's adblocking DNS server on my phone which is not always behind my home router.

If you're on Android, FF supports add-ons. If you're on an iPhone, uBlock is now supported: https://apps.apple.com/us/app/ublock-origin-lite/id674534269... There's also Orion browser, but I found it to be a bit more glitchy, especially around sites like YouTube (fuck the app, I'm not watching videos there): https://orionbrowser.com/

Yes, I use Firefox on Android with ublock origin, it works great. But using adblocking DNS on your phone will also block most in-app ads which is a big quality of life improvement.

I could also use a VPN to keep my phone always on my home network and thus behind my own ad blocking DNS but Mullvad's adblocking DNS was really nice and convenient.

Re: Shutting down our public encrypted DNS

#89
post #42
post #9

Earlier quoted context omitted.

Quad9 doesn't have an adblocking DNS service though, so it's not really a replacement.

That's something people should run themselves. I run Adguard Home on my router. Unlike the main Adguard product, Adguard Home is fully FOSS. It's been rock-solid for me, and improves on pi-hole in various ways - like full IPv6 support.

I could, but DoH/DoT seems very involved to run yourself, and sometimes I need to give a recommendation to someone less tech-savvy.

Re: Shutting down our public encrypted DNS

#90

Earlier quoted context omitted.

> The German courts entirely disregarded our use of geo-IP lookups on queries, and asserted that since tests via a VPN were able to resolve the domain, we were in breach of court orders Seriously, what the fuck? So you're supposed to block VPNs as well? What's next, Tor exit nodes? New VPN and Tor nodes as they pop up? I really don't like where this is going.

The entire point is that it can't be reasonably enforced with any granularity. Rights-holders want it to be like that so a copyright win in a single country means something has to be taken down globally.

Sounds more like we should end copyright worldwide.
Post reply on HN