this post was submitted on 13 Aug 2023
11 points (86.7% liked)

Privacy

32191 readers
597 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

My Pi-hole is handling my DHCP, and I have Tailscale set up for remote access.

But how to I set my devices (for example, phone outside of my LAN) to route as follows: device > Pi-hole > NordVPN? Is that even possible?

The end goal being to combine the benefits of Pi-hole with a paid VPN, regardless of location.

all 10 comments
sorted by: hot top controversial new old
[–] [email protected] 6 points 1 year ago (1 children)

It is possible if you use pivpn (or any other VPN software) and double hop it to your pivpn provider.

Device -> pivpn (uses pihole) -> mullvad -> internet

I just get the wireguard configs from mullvad and edit them to properly work. Also works to get around device limits of the VPN.

[–] [email protected] 3 points 1 year ago (2 children)

Are you trying to route your DNS queries through your VPN device or all of your traffic?

Just your DNS queries is easy, set up the VPN as the default route for the device (using netplan or iproute2), then all queries from PiHole will go via that.

All traffic is a bit harder, unless your PiHole device is the only thing between your regular devices and the internet.

[–] LazerDickMcCheese 2 points 1 year ago (1 children)

I'm trying to get all traffic through the Pi-hole and VPN. Do you mean more than setting the Pi-hole as the DHCP server?

[–] [email protected] 3 points 1 year ago (1 children)

Setting up the PiHole device as a DNS server & DHCP server still won't make all traffic flow through it, you need it to be a gateway for all traffic that isn't destined for an internal subnet.

To do that, you'll need to set up your device as a router, with the necessary entries in iproute2 and iptables in order to keep lock out external connections without conntracks. You might be able to route to a turnkey container of some kind.

[–] LazerDickMcCheese 1 points 1 year ago (1 children)

Is there a good dummy-proof guide on setting that up? That sounds exactly like why I bought the Pi in the first place

[–] [email protected] 0 points 1 year ago

The easiest way is installing OpenWRT on the Pi

[–] [email protected] 1 points 1 year ago (1 children)

Would setting the pihole as the exit node work here if the pihole then routes all it’s traffic through the VPN? Or does that break things and/or add unnecessary complexity?

[–] LazerDickMcCheese 1 points 1 year ago

Yeah, I have the same question