Cloudflared DNS over HTTPS

A docker container which runs the cloudflared proxy-dns at port 54 based on alpine with some parameters to enable DNS over HTTPS proxy for pi-hole based on tutorials from Oliver Hough and Scott Helme

Getting Started

Replace amd64 most normal PC's with arm64 or arm for RaspberryPi, BananaPi etc.

Start with Port 54 (Default Port is 53!) for testing purposes

Port 54 on host network so every device on the network can reach the Proxy

docker run -it --rm --name cloudflared --net host knight/cloudflared-dns:amd64

dig @IP_OF_HOST -p 54

If you stop this container it will remove itself!

Start with Default Port 53

You can set up this Host to be a normal DNS resolver. You can put the Host IP into every client like with or or inside your router so you do not need to do it manually.

Examples: Lifewire, The Verge

docker run -d --name cloudflared --restart=always -p 53:54/udp knight/cloudflared-dns:amd64

Pi-holeยฎ: (A black hole for Internet advertisements)

Install Docker curl | sudo bash and Pi-hole

docker run -d --name cloudflared -p --restart=always knight/cloudflared-dns:amd64

Enter IP into Custom 1 (IPv4) within the Pi-Hole Admin Page


You want to contribute? Awesome Badges

Issues, Pull Requests and Wiki additions are very welcome ๐Ÿ˜Š


I wrote some tests in a goss.yaml file which can be executed by dgoss

$ dgoss run --name cloudflared --rm -ti knight1/cloudflared:latest
INFO: Starting docker container
INFO: Container ID: e5bd35d3
INFO: Sleeping for 0.2
INFO: Running Tests
Process: cloudflared: running: matches expectation: [true]
Package: ca-certificates: installed: matches expectation: [true]
Command: cloudflared --version | head -1: exit-status: matches expectation: [0]
Command: cloudflared --version | head -1: stdout: matches expectation: [cloudflared version DEV (built unknown)]

Total Duration: 0.028s
Count: 4, Failed: 0, Skipped: 0
INFO: Deleting container

License ๐Ÿ“œ

MIT Licensed (file LICENSE).


