HairyA00
Senior Member
I'll dig out my code that customises the dnsmasq instance that is spun up by Diversion. I imagine it's just a case of specifying a different upstream nameserver
DNS options per MAC address while still being forced through DNSMASQ would make me very happy, that's for sure. Really powerful feature if you have different aged users on your network. Even for YazFi... would be awesome to send guests upstream to something like OpenDNS while still going through DNSMASQ for ad-blocking.
For the whole home, I use the following blocklists:
https://hosts-file.net/emd.txt
https://hosts-file.net/exp.txt
https://hosts-file.net/hjk.txt
https://hosts-file.net/mmt.txt
https://hosts-file.net/psh.txt
http://sysctl.org/cameleon/hosts
https://raw.githubusercontent.com/StevenBlack/hosts/master/alternates/gambling/hosts
https://hosts-file.net/ad_servers.txt
https://mirror1.malwaredomains.com/files/domains.hosts
For one subset of users, I bypass Diversion and go to one Pi-hole that uses the same blocklists plus customized OpenDNS. Trust me, if I could find an alternative to using OpenDNS, I would... a magic blocklist to filter out the following categories would be great. My guest network also goes upstream to this Pi-hole using YazFi.
Academic Fraud
Drugs
Gambling
P2P/File sharing
Proxy/Anonymizer
Adware
Web Spam
Tasteless
And for one single user on the network, I bypass Diversion and go to one Pi-hole that uses the same blocklists plus Cleanbrowsing Family (not over DoT, that would be another cool feature for DNSFilter):
https://cleanbrowsing.org/filters
What I'm getting at, I suppose, is I am managing three appliances (router plus pi-hole 1 and pi-hole 2). I could just say, "ehh, who cares if the ads aren't blocked for the handful of devices", but I really appreciate the benefit of Diversion or Pi-hole in all cases.
Last edited: