this post was submitted on 29 Apr 2024
318 points (97.9% liked)
Technology
59770 readers
3095 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each another!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Currently, yes and no.
Yes, in that pihole can filter ad servers, but no because backup DNS servers are hard coded in the software; you have to block those too from your router.
Not sure about the new changes planned.
I haven't seen a seen a single home screen Roku ad since I installed Pi-Hole.
This will be my last Roku, it has become such a horrible ad-ridden experience since I first got it years ago.
At first, Pi-hole was enough, but some devices had a software update a year or two ago that used Google (if memory serves) DNS as a backup. It was sneaky, but adding a block rule closed that loophole.
Not all devices had that change though. I'm hoping mine is old enough to be ignored for the new video ads.
I imagine they'll eventually work around block rules with DNS over https.
Then you block that too at the router level (port 853 if my memory is correct)
DNS over TLS (aka DoT) uses port 853. DNS over HTTPS (aka DoH) uses port 443 so that it looks the same as any other web traffic for privacy reasons.
Yeah, that’s going to be an issue.
I’m wondering if they managed to break that, too. I tried forcing my Roku to use my pi-hole by blocking Google DNS (what it seems to be hardcoded with) at my router and the Roku just stops recognizing that it even has an Internet connection.
How can I block their hard coded DNS servers? Is it based on their IP numbers and if so how do we determine what they are?