Pihole-Antitelemetry
github.com
github.com
For sure, because it's empty.
Depends on whose firewall config, but I don’t suppose most firewalls are setup as whitelists for outgoing connections…
I appreciate your dedication but this seems like a huge pain. Like a restrictive Little Snitch config but with worse UI most likely.
Most firewalls are set up as whitelists for incoming connections. Similarly, I set up DNS and HTTP "firewalls" as whitelists for outgoing connections. Zonefiles define the RRs that applications are able to query and lists/maps/tables define the hostnames/URLs that are accepted by the proxy.
I can’t see this being workable for the vast majority of people.
It might postpone the divorce by about 5 minutes while you try to explain it.
> edgeos-dnsmasq-blacklist has been tested on the EdgeRouter ERLite-3, ERPoe-5, ER-X, ER4, UniFi Security Gateway USG3 and USG4 routers
https://someonewhocares.org/hosts/
Hasn't broken anything yet on my machines, and does a pretty good job (with my AdBlockPlus, uBlock Origin, NoScript, Privacy Badger).
Actually blocking IPs as you’ve said is a harder problem sadly.
I'd think that the best workaround for doing these kinds of shenanigans will be using some form of DoH, in which case the countermeasure would be to set up an HTTP proxy which wouldn't allow http connections to "naked" IP addresses.
Any normal home users can setup dnscrypt-proxy or PiHole and have it 'protect' their whole home network, but actually filtering your whole network's traffic based on IP is out of reach for most.
Bunch of JSON files there - any advice on which ones to use??
Internet tracking is completely out of control.
On the other hand if you poison the well you compromise other user data as well. Detecting and filtering out invalid data takes time and effort and by the time it is detected the bogus data has already been replicated and used to drive decisions. BTW would it be legal to inject bogus telemetry?
But help me understand, obiwan, why is an empty file useful in this instance?
All my browsers have some form of adblock extension. uBlock for Firefox/Linux and Edge/Win10, and AdGuard on Safari/MacOS.
According to the stats of my pi-hole over the last 24 hours, more than 50% of the queries originating from my Win 10 PC were blocked (6277 blocked out of 11930 total).
For comparison, my Mac, which is the computer I've used the most for actual browsing since last Friday afternoon, only had 1292 blocked queries out of 7100.
The Linux PC usually has extremely low numbers of blocked queries. It's probably thanks to the combination of uBlock and uMatrix and it running Arch, so practically nothing even tries to phone home.
Not sure if it's still the best tool for this, but in case someone wants to try it: https://www.oo-software.com/en/shutup10
Blocking some interceptable calls to some of their servers doesn't do shit.
Lobby them or your government to protect your privacy, or switch.
I just set up a pi-hole here a few weeks ago.
Are there other good lists that people recommend I add?
Of course the PiHole default ‘Steven Black’ list is also a combination of many well maintained lists and so even if you don’t add lists, his project is regularly adding new sources.
But "open-source", amirite? Thanks Google.
There is nothing you can do about devices/apps that really want to use their own servers (DNS over HTTPS, pinned certificate), short of keeping them offline.
Cf. Edgerouter: https://www.reddit.com/r/Ubiquiti/comments/6lndq4/question_r...
You can sell someone a physical device that makes a lot of noise and then sit outside their home and write down each time they use it. Nobody would be able to stop you.
Having such long ToS-es that "protect" the company against any eventuality should be by itself illegal.
It's a rigged system is what this whole thing is. Let's not pretend otherwise, please.
This is already on offer, but not from Google.
https://www.eff.org/wp/clicks-bind-ways-users-agree-online-t... and many many others if you search for "click through terms of service readability"