Closed Nyr closed 6 years ago
I seem to be having a problem with dns leaks the vpn always picks opendns even when picking others and changing in vps. Also have problems with dns leaks from my own isp, can you kindly advise me or look into this? Tried multiple vps providers btw
@Ph0enix777 yours is a client side problem unrelated to this issue. Please go to the OpenVPN forums or use the support channels for whatever is the client that you are using.
Thank you and it makes sense only started leaking when I upgraded to Ubuntu 17.10. And I lean more on unfiltered traffic from Quad 9 but do think adding an option for custom dns would be a great addition to the script. Keep up the good work.
I think the script should offer both options, something like "Quad9 Filtred" and "Quad9 Unfiltred", or "safe"/"unsafe". But as you said, It's hard to explain the differences between the two in a word or two.
If this is not possible, then go with the first option. We already have other options that don't have any kind of protection.
I would recommend, if quad9 enabled, you can select one of the current 4 ones.
I have decided against integrating Quad 9 DNS for now.
Main reason, other than the fact that malware filtering at the DNS level is almost useless for the regular user is that the service is still very new. For example, I couldn't even find the .11 and .12 servers advertised on the site.
The "NXDOMAIN only" option doesn't inspire much confidence in future monetization efforts, nor do some of the organizations and persons behind the project. Special mention deserved to Manhattan District Attorney Cyrus Vance Jr. which provided the $25M funding for this project.
We'll see and re-evaluate in the future, if needed.
https://www.quad9.net/
New DNS in town. Anycast, maintained by a reliable organisation and looks good all around.
Their marketing talks mainly about malware blocking, and previously my policy on this has been clear: only anycast, reliable and unfiltered DNS would be added to the script.
This time the situation is a bit different and I think it requires some consideration:
That said, I see three options:
I'm currently gearing towards option 1, but open to arguments if someone wants to chime in.