mirror of
https://github.com/AdguardTeam/AdGuardHome.git
synced 2026-03-04 00:01:12 -05:00
Disabling Plain DNS if DNS-over-Plain-HTTP is used or no DNS used at all #4940
Labels
No labels
P1: Critical
P2: High
P3: Medium
P4: Low
UI
bug
cannot reproduce
compatibility
dependencies
docker
documentation
duplicate
enhancement
enhancement
external libs
feature request
good first issue
help wanted
infrastructure
invalid
localization
needs investigation
performance
potential-duplicate
question
recurrent
research
snap
waiting for data
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/AdGuardHome#4940
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @ammnt on GitHub (Dec 10, 2023).
Prerequisites
I have checked the Wiki and Discussions and found no answer
I have searched other issues and found no duplicates
I want to request a feature or enhancement and not ask a question
The problem
We can not disable plain DNS if we use DoH via unenctypted DoH behind reverse proxy.
Proposed solution
Add ability to disable plain DNS if we use DoH behind proxy like Cloudflare, NGINX etc.
Alternatives considered and additional information
No response
@ainar-g commented on GitHub (Dec 11, 2023):
I'm not even sure any addresses should be required to disable plain DNS. The current requirement of encrypted addresses is really just a limitation of
dnsproxy, and we can probably remove it in the future.@DandelionSprout commented on GitHub (Mar 25, 2024):
My experience with proxies are pretty much none, but would it help to somehow block port 53 on the proxy?
@Hello-World-Traveler commented on GitHub (Oct 29, 2024):
The server that adguard runs on, always has pain DNS, when that is turned off, adguard doesn't process any DNS from that server even without proxy. Is this a bug or do i need to do something in the linux server for DOH?
I understand that plain DNS will use 53.
Dig command
TLS and DOH is active. Version: v0.107.53