New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
TLDs are not being blocked anymore when using OpenWrt NextDNS package #669
Comments
Because in that case the TLD is NextDNS should update TLDs, but to resolve your problem, you could add Unfortunatelly for the completeness ATM, you would need to add all of the following, since NextDNS will not allow to add only
|
I thought that may have been the case, but it's not. That example I gave was probably a bad one to give. Also, that does not explain why one request it allowed and the other it denied. See even the tool-tip popup, showing the TLD was the reason for the block. |
I went through the TLD blocklist, and tried accessing random TLDs and they were randomly being blocked or allowed, when they should have all been blocked. This erratic behavior is indicating to me that it might not be a NextDNS client issue, but something instead on the back-end in regards to the TLD blocking. The requests are clearly making it to the NextDNS server as the logs show it, but the logs also show TLDs that are blocked as being allowed. See this example, where all 3 should have been blocked as they are all blocked via the TLD blocking feature, but only 1 was. (this was all done through the NextDNS router client) I have no way to even temporarily fix this as TLDs are not allowed to be added to the Deny List. @rs Did I hit a cap on the amount of TLDs I can block? Update: Other people are reporting similar issues that all began within the past week. So it appears something changed on the server that broke TLD blocking. |
We found the issue and fixed it. |
Context
This issue just recently started to happen.
I have all TLDs blocked via the Security - Block Top-Level Domains (TLDs) settings, minus a few common ones. So for example I have:
However, when I access a
.br
domain when running on WiFi the site is allowed. When I switch over to LTE and no longer use the router the site is blocked. Example below, the bottom request is when using WiFi, and the top is when using LTE.I just don't understand why one request is being allowed and the other is not, as it's the same NextDNS config being used for both those requests. Rebooting the router and/or restarting the NextDNS service has no effect. Other settings are being properly honored no matter if I'm on WiFi or LTE, and show up as being blocked correctly. It just seems to be effecting TLDs.
Even weirder, is if I add the above domain to my denylist it will block correctly in both cases.
The text was updated successfully, but these errors were encountered: