A dns proxy that supports Do53, DoT and DoH upstreams
2.6K
Docker image of https://github.com/AdguardTeam/dnsproxy, which is a very useful dns proxy server supporting all types of upstream services (Do53, DoT, DoH). This image makes a very nice companion to a pihole docker as an upstream target allowing you to use encrypted upstreams (like Google, Quad9, etc.) with your pihole. In essence, this allows you to configure your LAN to leverage the ad blocking power of pihole such that all external DNS queries are guaranteed to be encrypted^, keeping unwanted entities (your ISP, for example) from snooping on or even modifying your DNS queries in transit. Pihole itself only supports Do53 upstreams, but by leveraging dnsproxy, we can set pihole to use dnsproxy as its upstream while dnsproxy uses DoT and/or DoH targets as its upstream.
Images are built automatically as new releases of dnsproxy are posted to github.
^ Firewall configuration required to ensure all external DNS queries are encrypted
TODO: Sample execution of docker
TODO: Sample docker-compose showing pihole using this image as the upstream
TODO: Discuss firewall config example ensuring all DNS queries that leave the LAN are encrypted
Content type
Image
Digest
Size
33.2 MB
Last updated
over 4 years ago
docker pull slugger/dnsproxy