<?xml version="1.0" encoding="UTF-8"?>        <rss version="2.0"
             xmlns:atom="http://www.w3.org/2005/Atom"
             xmlns:dc="http://purl.org/dc/elements/1.1/"
             xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
             xmlns:admin="http://webns.net/mvcb/"
             xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
             xmlns:content="http://purl.org/rss/1.0/modules/content/">
        <channel>
            <title>
									eBlocker Open Source Forum - Recent Topics				            </title>
            <link>https://eblocker.org/community/</link>
            <description>Discuss anything regarding eBlocker Open Source</description>
            <language>de</language>
            <lastBuildDate>Fri, 24 Apr 2026 03:45:36 +0000</lastBuildDate>
            <generator>wpForo</generator>
            <ttl>60</ttl>
							                    <item>
                        <title>eblocker Mobile Vodafone</title>
                        <link>https://eblocker.org/community/bugs-features/eblocker-mobile-vodafone/</link>
                        <pubDate>Mon, 23 Mar 2026 17:33:57 +0000</pubDate>
                        <description><![CDATA[I have a problem on my iPhone where my eBlocker Mobile VPN connects successfully since switching providers from Telekom mobile to Vodafone mobile contract but I no longer have access to the ...]]></description>
                        <content:encoded><![CDATA[<p>I have a problem on my iPhone where my eBlocker Mobile VPN connects successfully since switching providers from Telekom mobile to Vodafone mobile contract but I no longer have access to the eBlocker or any of my network devices. Does Vodafone use the same address range as eBlocker Mobile? Does anyone know this issue and does anyone have a solution for me?​​​​​​​​​​​​​​​​</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>Dino</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/bugs-features/eblocker-mobile-vodafone/</guid>
                    </item>
				                    <item>
                        <title>Unifi DNS settings for internal websit</title>
                        <link>https://eblocker.org/community/main-forum/unifi-dns-settings-for-internal-websit/</link>
                        <pubDate>Tue, 17 Mar 2026 01:14:27 +0000</pubDate>
                        <description><![CDATA[Hi,
&nbsp;
I have a new UniFi network and added my Eblocker onto the network. I’ve changed the DHCP settings on the cloud gateway to point both the DNS and Default gateway to the eblocker ...]]></description>
                        <content:encoded><![CDATA[<p>Hi,</p>
<p>&nbsp;</p>
<p>I have a new UniFi network and added my Eblocker onto the network. I’ve changed the DHCP settings on the cloud gateway to point both the DNS and Default gateway to the eblocker under the DHCP settings in UniFi. <br /><br /></p>
<p>I’ve configured eblocker DHCP to expert mode and set the DHCP to external. <br /><br /></p>
<p>Eblocker is fine, but my hosted website on my network is no longer accessible from the internet. <br /><br /></p>
<p>Is there anything else I need to do on the Eblocker to get it accessible again?</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>DeepUnder</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/main-forum/unifi-dns-settings-for-internal-websit/</guid>
                    </item>
				                    <item>
                        <title>eBlocker with Fritzbox and fixed IP addresses</title>
                        <link>https://eblocker.org/community/bugs-features/eblocker-with-fritzbox-and-fixed-ip-addresses/</link>
                        <pubDate>Mon, 09 Mar 2026 08:17:59 +0000</pubDate>
                        <description><![CDATA[I run the DHCP server at eBlocker 3.2.3. The DHCP server at my Fritzbox 7690 v8.0.2 ist switched off. I want to set single-digit fixed IPv4 addresses for the infrastructure devices, i.e. rep...]]></description>
                        <content:encoded><![CDATA[<p>I run the DHCP server at eBlocker 3.2.3. The DHCP server at my Fritzbox 7690 v8.0.2 ist switched off. <br /><br />I want to set single-digit fixed IPv4 addresses for the infrastructure devices, i.e. repeaters and LAN access points, and two-digit fixed IPv4 for stationary devices, e.g. TV, PV inverter, AppleTV, Apple HomePods etc. And for all mobile devices the DHCP server should assign the IP addresses from the three digit number range.<br /><br />As far as I see, I can not assign in the GUI of eBlocker how to specifically assign a fixed IP address to a specific gadget. But in the GUI of the Fritzbox it seems to possible.<br /><br />Is it the right way to assign the fixed IP addresses in the Fritzbox GUI? Or is an other approach more appropriate?</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>facebita</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/bugs-features/eblocker-with-fritzbox-and-fixed-ip-addresses/</guid>
                    </item>
				                    <item>
                        <title>Bandwith impact using eBlocker</title>
                        <link>https://eblocker.org/community/bugs-features/bandwith-impact-using-eblocker/</link>
                        <pubDate>Wed, 28 Jan 2026 16:36:44 +0000</pubDate>
                        <description><![CDATA[Hi. As I continue my testing before rolling out eBlocker fully, I came across a problem today and need advice.
In short the speedtests when using eBlocker on a client the bandwidth is impac...]]></description>
                        <content:encoded><![CDATA[<p>Hi. As I continue my testing before rolling out eBlocker fully, I came across a problem today and need advice.</p>
<p>In short the speedtests when using eBlocker on a client the bandwidth is impacted too much.</p>
<p>Testing using Windows client, https enabled, cert added to firefox where the tests are made.</p>
<p>Test sites speed.cloudflare.com and fast.com.</p>
<p>eBlocker version 4 up to date. On a VM. First 2 GB memory, increased to 3 GB (yes not a multiple of 2) but when on 2 GB the usage peaked only to 90%. Removed the firewall from the virtio NIC, I am using VirtIO NIC as is the most performant. I have tested increasing to 2 and 4 queues for this NIC. MTU is same as bridge. </p>
<p>For CPU it was as per the VM definition with x86-64-v2-AES but I have also tested with "Host". The host cpu is modern Ryzen 5.</p>
<p>Results: eBlocker enabled on client, 10 Mbps. eBlocker paused for device, 160 Mbps fast.com, 128 speed.cloudflare . ISP contract 510 Mbps.</p>
<p>WiFi connection on 5 GHz band (channel 116), link speed 961/1081 Mbps, 802.11ax protocol. Sec: WPA3-Personal.</p>
<p>This particular corner of the house doesn't get full speed despite strong signal so the question is not why not full 500 Mbps but why 10 Mbps with eBlocker, 160 Mbps without ? Of course there will be a hit from doing MiM inspection but is this 16 X impact expected? Not a complaint, only wanting to understand and if there are suggestions on what to check.</p>
<p>&nbsp;</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>cooks</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/bugs-features/bandwith-impact-using-eblocker/</guid>
                    </item>
				                    <item>
                        <title>Packet flow</title>
                        <link>https://eblocker.org/community/main-forum/packet-flow/</link>
                        <pubDate>Fri, 23 Jan 2026 11:27:44 +0000</pubDate>
                        <description><![CDATA[Hello. I am testing eBlocker now on version 4.0.3 VM edition. VM in proxmox.
I have three testing clients: Android mobile phone, Windows 10 laptop, Ubuntu linux 24.04 laptop.
My network se...]]></description>
                        <content:encoded><![CDATA[<p>Hello. I am testing eBlocker now on version 4.0.3 VM edition. VM in proxmox.</p>
<p>I have three testing clients: Android mobile phone, Windows 10 laptop, Ubuntu linux 24.04 laptop.</p>
<p>My network setup is non-standard and for that I am testing with eBlocker in-line, not replacing any other of my network components (yet). But I am lacking understanding of the flow.</p>
<ol>
<li>I want to keep my own DHCP server.</li>
<li>I want to keep my AdGuardHome ads blocker but only recording stats. It will not be blocking anything.</li>
<li>I want to keep my own local DNS resolver (Unbound).</li>
</ol>
<p>Therefore my currently desired flow for traffic is Client -&gt; eBlocker -&gt; AdGuardHome -&gt; Unbound.</p>
<p>To achieve this I have these settings:<br />On the client:</p>
<ul>
<li>Manually set the DNS server to ip of eBlocker.</li>
<li>Enabled https and installed cert in firefox browser.</li>
</ul>
<p>On eBlocker:</p>
<ul>
<li>Network mode is Automatic. It shows the correct settings like ip address of eBlocker, the network mask and the Gateway. If I changed to use expert mode it would not need to change.</li>
</ul>
<p>Now the questions. In this setup for the client with eBlocker set to enabled from the eBlocker dashboard, what type of traffic will go to eBlocker? All plain text DNS queries to port tcp/udp 53. Will it also identify DoT and/or DoH ? What about other non-DNS traffic, will it all go through eBlocker's decryption?</p>
<p>What will happen if I disabled eBlocker for the client in the dashboard? Does eBlocker use its upstream DNS server to simply forward the queries?</p>
<p>What I'm trying to get at is how to have eBlocker used for some not all devices. I am concerned about a single point of failure so understanding the flows and behaviours is very important to me.</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>cooks</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/main-forum/packet-flow/</guid>
                    </item>
				                    <item>
                        <title>Requesting opinion and advice</title>
                        <link>https://eblocker.org/community/main-forum/requesting-opinion-and-advice/</link>
                        <pubDate>Tue, 20 Jan 2026 11:30:39 +0000</pubDate>
                        <description><![CDATA[Hello. I have only learned of the existence of eBlocker and I am super impressed and excited to try it.
I have downloaded the latest v3 vmdk disk and created a proxmox VM. Started it and se...]]></description>
                        <content:encoded><![CDATA[<p>Hello. I have only learned of the existence of eBlocker and I am super impressed and excited to try it.</p>
<p>I have downloaded the latest v3 vmdk disk and created a proxmox VM. Started it and seems good to try it soon. However I want to ask opinions on if it is even possible to use it the way I want. Let me explain:</p>
<p>My current setup has a Router/Firewall (OPNSense) on a proxmox VM. WAN port goes to a Fibre ONT. LAN port goes to a managed Mikrotik switch (Layer 2 only). Some wired clients go to the switch. One WiFi (eero 6) goes into the switch and there are two more eero nodes around the house providing mesh WiFi. This all works perfectly well. This all in a single VLAN. There is another VLAN but that is separate is not part of the question yet. I use only IPV4.</p>
<p>Now to the logical part. For DNS and privacy but also for learning purposes my setup is:</p>
<p>- ISC DHCP4 on the router issues clients with an IP address or are set with static lease. They are given the DNS ip:port as part of the lease. This is lan-router-ip:53</p>
<p>- AdGuardHome runs on the router listening on port 53. AdGH has as its upstream DNS the router ip:5353. In other words it comes back to the router on a different port.</p>
<p>- Unbound the DNS resolver is listening on port 5353 on all the router interfaces. It takes the queries from AdGuardHome.</p>
<p>- Last part, also on the router I run "Stubby" the DNS over TLS stub resolver from nlnet. stubby listens on port 8053 and is configured to use a few DNS over TLS public resolvers. Unbound is set to send all the queries to stubby, and stubby goes out to the internet on DoT encrypted.</p>
<p>Client -&gt; AdGH -&gt; Unbound -&gt; stubby -&gt; DoT public.</p>
<p>Convoluted, yes. But works well and my dns queries go encrypted to more than one provider. I've been using this setup for some years. I have firewall rules that force any client to go this way if is configured with their own hardcoded dns servers.</p>
<p>Additionally I have Zenarmor which inspects the SNI name from the TLS certificate for TLS connections. This is not a full decrypt and is only a bit better than no TLS SNI inspection.</p>
<p>BUT I know I have gaps. All this works if clients are NOT using DoT or DoH and those are more common now. These TLS encrypted DNS queries brought me here.</p>
<p>I have administrative control of all parts of this network so I can try different things.</p>
<p>MY GOAL: to test eBlocker to use full TLS inspection, for stopping ads and tracking.</p>
<p>To reach my goal I am thinking I likely remove Zenarmor and AdGuardHome, they might be duplicating functions of eBlocker, but only if it block as much AdGH but I also like the visibility of actions on the UI and customisation it allows like per client settings. Where I am not clear is if I should also remove or keep Unbound and Stubby. I keep looking at the documentation and I am a bit unclear.</p>
<p>- I want to retain control of DHCP server - seems I can, eBlocker has option to enable <span style="color:#aaa">removed link</span> </p>
<p>- It seems eBlocker can be set to use my own DNS server. Then I can just put eBlocker in the chain instead of AdGH. Good.</p>
<p>If you have read so far, can anyone suggest or critique the idea. I also would like to know is this setup a bad idea?</p>
<p>Client -&gt; eBlocker -&gt; Unbound -&gt; stubby -&gt; DoT public.</p>
<p>Great work on eBlocker by the way.</p>]]></content:encoded>
						                            <category domain="https://eblocker.org/community/"></category>                        <dc:creator>cooks</dc:creator>
                        <guid isPermaLink="true">https://eblocker.org/community/main-forum/requesting-opinion-and-advice/</guid>
                    </item>
							        </channel>
        </rss>
		