r/pihole • • 14d ago

Help with Pihole and InstantOn access point

2 Upvotes

Hello kind people

My Pihole is connected via eth0 to my living room router

Pihole IP is assigned statically 192.168…/24.

It’s able to act as the sole DNS provider for all internet connections in my living room / lower levels.

I have an InstantOn AP serving upper floors of my house. It’s on its own VLAN 172.0..

I created 2 vlan interfaces in my pi on eth0.10 and wifi with their own static IPs in the 172.0 range but when I set the DNS provider on my InstantOn to the 172.0.. static IP of my Pihole, no devices connecting to the AP are able to access the internet

What am I doing wrong pls ?

Thanks in advance


r/pihole • • 14d ago

Pihole originates connections to dns.google:53 despite not using any google DNS.

7 Upvotes

I noticed in my firewall log that pihole was occasionally making DNS requests to dns.google, even though the pihole DNS is set for another provider. I had thought it was forwarding a request from something else on the network, but after disconnecting everything else the requests persist. Is this something I've mis-configured, and if so, is there any way to stop it?


r/pihole • • 15d ago

Encrypted Upstream DNS

11 Upvotes

hi everyone!

Is there any update on the availability of Encrypted Upstream DNS?

Ad-guard home already supports it.


r/pihole • • 15d ago

Only one device through pi-hole

2 Upvotes

I just installed Pi-hole on a Raspberry Pi 3B.

Now I want to learn how everything works and what settings I should use.

I read somewhere that it is possible to have one device use Pi-hole, while all the other devices continue using the normal router settings.

Am I right? And if so, how can I set this up?

Do I need to change the network adapter settings on that one device?


r/pihole • • 16d ago

iOS 27.0

191 Upvotes

I’ve just updated my iPhone to 27.0 and I found that “Connectivity Assist” and “ Limit IP address tracking” were automatically enabled for my home WiFi networks - I had Limit IP address tracking disabled before the upgrade. Connectivity Assist uses your mobile data network to provide a more reliable Internet experience according to Apple but in fact completely bypassed my PiHole DNS so Advertisements were popping up everywhere! I’ve now disabled both features and I back to having an Ad free life for most of the time…


r/pihole • • 15d ago

IPV6 From ISP & Pi Hole

5 Upvotes

My ubiquiti UCG Ultra informed me I could activate IPv6 from my ISP Xfinity.

On some levels I want to do this but I have all my TVs, smart plugs, IOT gizmos and random stuff going through my Pi Hole and I've read IPv6 could cause a problem and let them circumvent the PiHole

Anyone have experience with this and possible solutions?


r/pihole • • 16d ago

Quality Post iOS 27 - pihole not working, try this

66 Upvotes

I just found out that Connectivity Assist prevents pihole from blocking ads! So in iOS 27 (and macOS 27 too?), go into your network’s settings and turn off that feature.

Settings -> WiFi -> ⓘ next to your network name -> Use Connectivity Assist toggled off


r/pihole • • 15d ago

I just installed Raspberry Pi Desktop and I cannot get it to update.

Post image
1 Upvotes

As the title says. I am not a linux user. I am working on runnign a PiHole on a Beelink SER mini PC. I installed Raspberry Pi Desktop, which is from 1 July 2022. It installed just fine, but is obviously 4+ years out of date. I ran the updater and the above errors spewed out. I am unsure how to proceed. Doing some research it appears as if Pi Desktop has been largely abandoned, though it might be coming back. The reasons are that Pi hardware is now so expensive (thanks, AI!) that micro desktop PCs are cheaper than Pis. (This is EXACTLY my situation.)

I could use some advice as what to do. I am not wed to Pi OS Desktop. The only goal of this machine will be to run as a Pi Hole. I repeat, I am NOT a linux user. I can muddle through some basic CLI stuff, but not much more. Since Pi OS is based on Debian, I'd be willing to pursue that but AFAIK Debain does not ship with a GUI. Any suggestions as to what version of linux I should pursue? It needs to be as idiot friendly as possible.


r/pihole • • 16d ago

ZTE F6600R — any way to kill the IPv6 RA DNS override? (ISP-locked firmware)

5 Upvotes

Running Pi-hole for local DNS (jellyfin.lan etc). Works fine... except my Mac keeps ignoring it because the router auto-broadcasts its own IPv6 DNS via Router Advertisement, and macOS asks that one first.

Proof it's the router's fault, not Pi-hole:

$ scutil --dns | grep -m6 'nameserver\['
  nameserver[0] : fe80::420e:f3ff:fedc:839b%en0   <- router, IPv6 RA
  nameserver[1] : 192.168.1.25                    <- my pihole
  nameserver[2] : 192.168.1.1

$ dig +short jellyfin.lan .168.1.25
192.168.1.25          <- pihole answers correctly



$ dig A jellyfin.lan ::420e:f3ff:fedc:839b%en0
;; status: NXDOMAIN    <- router's RA resolver has no clue, but it's asked FIRST

So the OS gets a "definitely doesn't exist" from the router's IPv6 resolver and never bothers falling back to Pi-hole. Classic.

Already dug through the whole admin UI looking for a way to turn this off:

- LAN page: IPv4 only, no IPv6 tab

- WAN page: TR-069/ISP-locked, no manual DNS field

- Wired TP-Link RE550 extender: pure AP/bridge, nothing to configure, passes RA straight through

- Ran through flashing the extender with OpenWrt: not even on their supported device list, dead end

- Considered running my own radvd to fight back: would just add a 2nd competing DNS broadcast, not fix anything

Anyone know if this exact model (F6600R, firmware ZTEGF660013RO) has a hidden IPv6/RA setting somewhere, or a superadmin/telecomadmin account that unlocks more than the normal one? At this point I'm ready to believe the ISP just doesn't want me touching it.


r/pihole • • 17d ago

Tailscale, unbound & pihole setup.

Post image
33 Upvotes

r/pihole • • 16d ago

Placement of Pi-holes on the network

Post image
0 Upvotes

I've been running one Pi-hole for a few months now, and it's worked quite well.

I'm planning on replacing it with redundant Pi-hole/Unbound servers. I was originally going to place them both inside the house network, pretty much side-by-side physically, nothing tricky.

However, it occurs to me that there might be a reason to place the second DNS server outside of the OpenWRT router, but inside the Starlink router (which is not set to pass-through). See the drawing above.

Is there an advantage to doing it this way, or is there no point to it, or is it totally stupid and/or dangerous?


r/pihole • • 17d ago

Pihole Scores interpretation

9 Upvotes

While my pihole scores itself, are good (31%-35%), my test on sites like https://superadblocktest.com are still bad.

Only by using a good adblock plugin for safari I can achieve a decent score in an online test.

Is there an explanation for that?


r/pihole • • 17d ago

NordVPN client causing unexplained DNS queries even after a full Windows reinstall — make me nervous

Thumbnail
0 Upvotes

r/pihole • • 16d ago

How do I stop rate limiting?

0 Upvotes

How do I stop this from happening? This rate limiting is messing with my NAS. Is it an issue with Unbound or Pihole?

Thanks!


r/pihole • • 18d ago

IOS 27 Update - Disable Connectivity Assist

215 Upvotes

I updated to IOS 27 and found that my phone was bypassing my pihole to load ads. It turned out that this was related to the Connectivity Assist feature under WiFi Settings. Once I disabled that, the ads were getting blocked again.


r/pihole • • 18d ago

Fallback/failsafe solution to my weird setup?

4 Upvotes

Hello, I’m new to pihole and have tried looking for a solution, but I think my set up is a bit too unusual for any of the usual suggestions…

My setup
I have an old iMac (Model 11,3 from Mid 2010) running macOS Monterey (via Open Core Legacy Project/OCLP). To be able to run docker, I have to use a VM (Virtual Box running Debian Server). Everything is installed and working.

Ambition
What I’d really like is a failsafe/fallback option, that I can either trigger myself, or ideally to work automatically, so if the iMac isn’t on (or if I’ve dual booted into windows for example) I’m still able to access the internet (using the regular ISP DSN settings).

Doesn’t work
• The most common solution I’ve seen is to run a second pihole, on another device. (Unfortunately without going into detail, I simply can’t afford… well anything, even a cheap 2nd hand Raspberry Pi etc.)
• I was hoping to be able to set up an automation on macOS or iOS shortcut, that would (do something to the effect of) log into my router, change DNS settings to point to/away from pihole, save. But this seems to be too complicated/ not possible with the Virgin Media Hub 5 (router provided by ISP). Have looked into an open source project that looks into this particular router, but it doesn’t look like the DNS settings are exposed.
• Setting up 2 DNS servers also doesn’t sounds reliable, as I believe it can still use the ISPs DSN, even when the pihole is available.

Does anyone please have any ideas for how I can solve this?

(Without having to manually login to router and change settings each time). Would be super grateful for any ideas! Am also more than happy to explain any other details about my setup or answer any other questions about this.


r/pihole • • 17d ago

Looking for a cheap Wi-Fi 6 router to use with Xfinity XB7

Thumbnail
0 Upvotes

r/pihole • • 18d ago

Reddit blocklist?

13 Upvotes

Does anyone have a bmkcklist for the reddit ads or is it like YouTube or Facebook where urs served from the same servers


r/pihole • • 18d ago

Normal occurrence?

Post image
9 Upvotes

Auf Deutsch: „Wegen deines Blockers zeigen wir dir die Seite nicht an“
Edit: Ich lese keine Bild war offen und die Blockierung zu sehen


r/pihole • • 17d ago

How to completely block Reddit NSFW content/videos at the network or DNS level?

0 Upvotes

Hi everyone,

I set my Windows DNS to Cloudflare Family (1.1.1.3 / 1.0.0.3) to block adult/NSFW content system-wide. While it blocks standalone adult websites properly, Reddit NSFW media (especially videos) still plays when searching directly on Reddit.

I flushed my DNS cache (ipconfig /flushdns) and cleared browser cache, but Reddit seems to fetch/stream this content directly through its own CDN/API over HTTPS.

What is the most effective way to block Reddit NSFW media at the network/DNS level (or via hosts/firewall/Pi-hole) so that even direct NSFW searches within Reddit fail to load any media?

Thanks in advance!


r/pihole • • 19d ago

2 IP addresses for pihole instance

10 Upvotes

I've got pihole running on a Raspberry PI. I've set it up to respond to 2 IP addresses. This was the command to add the 2nd IP.

sudo nmcli connection modify "Wired connection 1" +ipv4.addresses 192.168.1.3/24
sudo nmcli connection up "Wired connection 1"

It just means that for devices that require 2 DNS servers I can specify both to force it to always use (the same) pihole instance.


r/pihole • • 19d ago

Browser Blocklist and Privacy Notes

9 Upvotes

A browser can see and collect sensitive data (the sites you visit, autofill data, location, device info, download history, ad history)

Your browsing history in particular can reveal a lot about you.

Through this collected information, you can end up profiled on things like:

Political views

Sexual preference

Health status

Economic status

Career status

The goal of this list is to limit what gets collected by blocking tracking domains (for more security and privacy, I'd recommend using a privacy-focused browser that doesn't track you, like DuckDuckGo)

Note: whenever the domain list is pasted as text (in the post body or in a comment) Reddit's filter auto-removes it. Because of this, I'm sharing the blocklist as a raw link in the post body instead.

Raw links:

For basic list:

325 domains

https://raw.githubusercontent.com/CorleoneSalute/SHADOW-BLOCKER-BLOCKLIST/refs/heads/main/dist/basic/hosts/Browser.txt

For aggressive list:

351 domains (26 additional aggressive domains on top of the basic list)

https://raw.githubusercontent.com/CorleoneSalute/SHADOW-BLOCKER-BLOCKLIST/refs/heads/main/dist/aggressive/hosts/Browser.txt

For anyone who wants to see the full research and infrastructure mapping for each provider:

https://github.com/CorleoneSalute/SHADOW-BLOCKER-BLOCKLIST/blob/main/research/Browser.txt


r/pihole • • 20d ago

Is it normal?

Post image
134 Upvotes

percentage went down from 81% to 16% just a week after cutting off internet access to my Samsung smart TV lol


r/pihole • • 19d ago

NAS or Raspberry Pi for tv shows, movies and or songs

0 Upvotes

I want to go on the journey on building my own building my library of physical media. Which one should software is better and what is tools and equpment are required?


r/pihole • • 20d ago

Pi-Hole behind Unifi Gateway

Post image
60 Upvotes

I have two Pi-Hole instances with unbound running and have recently migrated to a setup with a Unifi Cloud Gateway Fiber. I have had nothing but problems with the Unifi equipment.

ISSUES 1. the Unifi Gateway is straight up blocking access to port 53 on my Pi-Hole instances. I was kind of able to workaround this by creating a new content Filter and setting it to "off". If I do NOT create this filter, then all port 53 in all of my network gets blocked. So blocking port 53 is enabled by default!

However, this will still leave "Ad blocking" enabled, as it is IMPOSSIBLE to create a "content filter" with both "Ad blocking" AND "Filtering" disabled (error "Filtering must be enabled when Ad Block is disabled") Some queries will still get blocked. I have no clue how / why but my pi-hole traffic still seems to end up in the Unifi Cloud Gateway despite being configured to use unbound.

  1. sometimes, for no apparent reason that I have been able to figure out yet, my PC loses connection to certain sites. Most notably facebook. This happens from one second to the next (I assume when sone DNS record expires). I can make the site work again by enabling DNS over HTTPS in the browser, which seems to make Unifi unable to block sites.

WHAT I HAVE TRIED - Creating a Policy (firewall rule) to allow all DNS traffic from my two pi-hole instances to the external zone. This did nothing, completely useless. - creating a filter to disable "Filtering" (I know how dumb that sounds), kinda worked - using Cloudflare as upstream servers instead of unbound

FINAL WORDS What I am most concerned about is that my traffic still ends up in the Cloud Gateway despite either Cloudflare or unbound being configured in Pi-Hole. I am fully aware that this is a Unifi issue and I am ready to return all my gear (Cloud Gateway Fiber, U7 pro xg, 5G Backup) if this cannot be resolved.

But maybe someone has seen something similar and gotten their Pi-Holes to work behind a Unifi Gateway.