Skeptical.me
Very Senior Member
Run the install again to upgrade to v1.4.31. They fixed a crash in that version.
There is no a need to update anything in the router GUI.
Ahh, it's working now. Thanks for your help.
Run the install again to upgrade to v1.4.31. They fixed a crash in that version.
There is no a need to update anything in the router GUI.
The answer depends. I prefer "layering" anything security related - routers included. Both Diversion and NextDNS are performing similar services but there may be some areas where they are distinct. For instance, the GUI NextDNS provides is quite helpful on turning on/off specific entities or NextDNS can do some things that Diversion maybe cannot. An example of that is the ability to "blocks third-party trackers disguising as first-party trackers". With Diversion, you retain full control of the filtering and are not dependent on a 3rd party for these services.Just so I understand correctly ... If I install NextDNS I won't need to use Diversion? Or do I just leave it on/installed?
Edit: I have NextDNS installed but the Web UI for NextDNS doesn't indicate the router is connected. And I still have Diversion on.
The answer depends. I prefer "layering" anything security related - routers included. Both Diversion and NextDNS are performing similar services but there may be some areas where they are distinct. For instance, the GUI NextDNS provides is quite helpful on turning on/off specific entities or NextDNS can do some things that Diversion maybe cannot. An example of that is the ability to "blocks third-party trackers disguising as first-party trackers". With Diversion, you retain full control of the filtering and are not dependent on a 3rd party for these services.
I had both installed (manually, not used their script yet) and when NextDNS is installed, it will show your router's IP on the main page and it will log everything permitted or denied in the logs tab on their GUI. The analytics tab will start showing numbers as well.. so if you are not seeing any of that when you login to NextDNS, then I'm doubting your router is talking to their services. Later.
It lists Synology on their github site.Will there be any way to integrate nextdns with the Synology RT2600ac router?
You can use DNSFilter set to Router mode to ensure all clients use the router for DNS, which will then forward to nextdns. NextDNS does not intercept everything.Should I be using DNSFilter, or does the NextDNS router client override all queries by default? (Even device-coded DNS like Google products?)
Also, since DNS Rebind protection is available on NextDNS website, I shouldn't enable it here, and same for DNSSEC right?
I've installed NextDNS somehow on my router via SSH lol. I'm having hard time finding what "Hardened privacy" feature does. Configuration asked me about it, but I was unsure what to select. Searching here only shows me a log of someone with this entry in his debug log so that's not helpful.
Also, do I have to enable DoT for it to work or is it ON by default if NextDNS is installed? NextDNS page seems to register router's NextDNS client install and I can see resolvings on NextDNS page. I just want to be sure everything is configured correctly. Does it matter if DNSFilter is enabled and set to Router or not? I want everything going through router to be resolved by NextDNS.
Also what about DNSSEC and DNS Rebind Protection in Merlin's settings. Just leave it disabled since NextDNS is suppose to do that by itself or not?
EDIT:
Oh, during install it said:
curl: (6) Couldn't resolve host 'sL'
It seems to have installed it regardless. What's with this? Just copied the whole install command as it is on GitHub page...
Hardened privacy mode will only use NextDNS servers located in jurisdictions with strong privacy laws. Note that depending how far your are from those, it may slow down your dns queries significantly.
You should leave DNSSEC and rebinding protection off on your router when using NextDNS. NextDNS will enforce those, and they can interfere with the blocking if left on.
And no need to use DoT when NextDNS daemon is installed.
Ok, thanks for explanation. I'm from Europe so servers with such properties shouldn't be that far physically.
What about the "-sL" switch in the install command for which I got error: curl: (6) Couldn't resolve host 'sL'
I just retyped the command directly from GitHub and it apparently installed NextDNS regardless, I'm just wondering what is it for and if it can be breaking something as a result or it's fine.
Please add DEBUG=1 before the command and send the full transcript of the output.
Warning: it looks like NextDNS overhauled its configuration web site https://my.nextdns.io and in the process reset all blocklists...
Did this happen to other NextDNS users as well?
If so, I can’t believe they did this without any notice; this makes me reconsider becoming a customer. Pretty disappointed about that (even though I know the service is still in beta).
Warning: it looks like NextDNS overhauled its configuration web site https://my.nextdns.io and in the process reset all blocklists...
Did this happen to other NextDNS users as well?
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!