Outils pour utilisateurs

Outils du site


dns-blocklist-en

Différences

Ci-dessous, les différences entre deux révisions de la page.

Lien vers cette vue comparative

Les deux révisions précédentesRévision précédente
Prochaine révision
Révision précédente
dns-blocklist-en [2020/05/18 06:45] – [Sources] sebsauvagedns-blocklist-en [2024/01/02 13:19] (Version actuelle) – [Sources] sebsauvage
Ligne 24: Ligne 24:
 Drawbacks: Drawbacks:
   * Does not filter //everything//.   * Does not filter //everything//.
 +  * Some software may perform DNS resolution themselves instead of using the system DNS. They may therefore work around your DNS blocklist.
  
 You do not need to worry: The setup is easy to reverse. You do not need to worry: The setup is easy to reverse.
Ligne 33: Ligne 34:
 ===== List ===== ===== List =====
  
-<WRAP center round box 60% centeralign caution> +<WRAP center round box 60% caution centeralign>
-\\ +
 <html><big><big></html>URL to use: **https://sebsauvage.net/hosts/hosts**<html></big></big></html> <html><big><big></html>URL to use: **https://sebsauvage.net/hosts/hosts**<html></big></big></html>
 </WRAP> </WRAP>
Ligne 64: Ligne 64:
   * https://adaway.org/hosts.txt   * https://adaway.org/hosts.txt
   * https://someonewhocares.org/hosts/hosts   * https://someonewhocares.org/hosts/hosts
-  * https://raw.githubusercontent.com/notracking/hosts-blocklists/master/dnscrypt-proxy/dnscrypt-proxy.blacklist.txt +  * https://winhelp2002.mvps.org/hosts.txt
-  * https://mirror.cedia.org.ec/malwaredomains/justdomains +
-  * https://mirror.cedia.org.ec/malwaredomains/immortal_domains.txt +
-  * https://www.malwaredomainlist.com/hostslist/hosts.txt +
-  * http://winhelp2002.mvps.org/hosts.txt+
   * https://pgl.yoyo.org/adservers/serverlist.php?hostformat=hosts&showintro=1&mimetype=plaintext   * https://pgl.yoyo.org/adservers/serverlist.php?hostformat=hosts&showintro=1&mimetype=plaintext
   * https://hostfiles.frogeye.fr/firstparty-only-trackers-hosts.txt   * https://hostfiles.frogeye.fr/firstparty-only-trackers-hosts.txt
- +  * https://raw.githubusercontent.com/StevenBlack/hosts/master/hosts 
- +  * https://justdomains.github.io/blocklists/lists/easylist-justdomains.txt 
-<note>**Note April 3rd, 2020**: [[https://hosts-file.net/ad_servers.txt|hosts-file.net]] is not longer maintainedIt has been replaced with [[https://github.com/notracking/hosts-blocklists|NoTracking]]Please let me know if it causes any problem.</note>+  https://justdomains.github.io/blocklists/lists/easyprivacy-justdomains.txt 
 +  https://justdomains.github.io/blocklists/lists/adguarddns-justdomains.txt 
 +  https://justdomains.github.io/blocklists/lists/nocoin-justdomains.txt 
 +  https://small.oisd.nl/ 
 +  * https://blocklistproject.github.io/Lists/phishing.txt 
 +  * https://blocklistproject.github.io/Lists/ransomware.txt 
 +  * https://dl.red.flag.domains/red.flag.domains.txt 
 +  * <del>https://mirror.cedia.org.ec/malwaredomains/justdomains</del> 
 +  * <del>https://mirror.cedia.org.ec/malwaredomains/immortal_domains.txt</del> 
 +  * <del>https://www.malwaredomainlist.com/hostslist/hosts.txt</del> 
 +  * <del>https://raw.githubusercontent.com/notracking/hosts-blocklists/master/dnscrypt-proxy/dnscrypt-proxy.blacklist.txt</del> 
 +  * <del>https://blocklistproject.github.io/Lists/tracking.txt</del>
  
 The blocklist is available in several formats: The blocklist is available in several formats:
  
-^ URL ^ Size ^ Notes ^ +^ URL ^ Notes ^ 
-| **<wrap hi>https://sebsauvage.net/hosts/hosts</wrap>** \\ **[RECOMMENDED]** | 4.6 Mb | hosts format (//''0.0.0.0 hostname''//) \\ **Suited for Android and computers** \\ This hosts file can be used as is in Windows, Linux, MaOSX and in Blokada and DNS66 on Android. | +| **<wrap hi>https://sebsauvage.net/hosts/hosts</wrap>** \\ **[RECOMMENDED]** | hosts format (//''0.0.0.0 hostname''//) \\ **Suited for Android and computers** \\ This hosts file can be used as is in Windows, Linux, MaOSX and in personalDNSFilterr and DNS66 on Android. | 
-| **https://sebsauvage.net/hosts/hosts-adguard** | 3.6 Mb | AdGuard/uBlock-Origin format (//''||hostname''//) \\ **Suited for Android and computers** \\ This list can be used in AdGuard (on Android) and uBlock-Origin. | +| **https://sebsauvage.net/hosts/hosts-adguard** | AdGuard/uBlock-Origin format (//''||hostname^''//) \\ **Suited for Android and computers** \\ This list can be used in AdGuard (on Android) and uBlock-Origin. | 
-| **https://sebsauvage.net/hosts/raw** | 3.2 Mb | Raw format (//''hostname''//) (just the domains, no headers) |+| **https://sebsauvage.net/hosts/raw** | Raw format (//''hostname''//) (just the domains, no headers) |
  
 === Whitelist === === Whitelist ===
Ligne 101: Ligne 108:
 |vboxsvr.ovh.net|Shared hosting at OVH| |vboxsvr.ovh.net|Shared hosting at OVH|
 |cdn.tagcommander.com|Required for LaPoste webmail| |cdn.tagcommander.com|Required for LaPoste webmail|
 +|ae01.alicdn.com|Required to display images in AliExpress|
 +|www.sugarsync.com|Required for SugarSync cloud synchronization.|
 +|lilo.org|Searchengine|
 +|www.ismonaco.org|University|
 +|cpc.cx|URL shortener of CanardPC.|
 +|simplelogin.fr, simplelogin.io|Antispam mail service|
 +|go.icann.org|Non-profit internet coordination organization|
 +|idp.impots.gouv.fr|French IRS|
 +|ipfs.scalaproject.io|IPFS Gateway|
 +|app.simplelogin.io|Antispam email|
 +|t.co|Twitter URL shortener|
 +|transfer.sh|File transfer service|
 +|woopic.com|CDN used by Orange ISP|
 +|pushbullet.com|Automation API|
 +|l.bfmtv.com|BFMTV short URLs|
 </hidden> </hidden>
  
Ligne 123: Ligne 145:
 # Update the DNS blocklist from the web # Update the DNS blocklist from the web
 logger "hosts-update: Updating hosts." logger "hosts-update: Updating hosts."
-tempname=`tempfile`+tempname=`mktemp`
 echo "127.0.0.1 `hostname`" > $tempname echo "127.0.0.1 `hostname`" > $tempname
 printf "\n\n" >> $tempname printf "\n\n" >> $tempname
Ligne 152: Ligne 174:
 There are several Android applications capable to downloading and applying a blocklist. Please note that these applications use the VPN feature of Android. It's the only way for an application to collect network traffic of all other applications. You can use one of these applications: There are several Android applications capable to downloading and applying a blocklist. Please note that these applications use the VPN feature of Android. It's the only way for an application to collect network traffic of all other applications. You can use one of these applications:
  
-  * [[https://f-droid.org/fr/packages/org.blokada.alarm/|Blokada]] (sur F-Droid)+  * [[https://f-droid.org/fr/packages/dnsfilter.android/|personalDNSFilter]] (sur F-Droid)
   * [[https://f-droid.org/fr/packages/org.jak_linux.dns66/|DNS66]] (sur F-Droid)   * [[https://f-droid.org/fr/packages/org.jak_linux.dns66/|DNS66]] (sur F-Droid)
-  * [[https://f-droid.org/fr/packages/dnsfilter.android/|DNSFilter]] (sur F-Droid) 
  
 <note>As DNS filtering application use the VPN feature of Android, you cannot have your VPN **//and//** one of these three applications running simultaneously. It's either VPN or DNS filtering.</note> <note>As DNS filtering application use the VPN feature of Android, you cannot have your VPN **//and//** one of these three applications running simultaneously. It's either VPN or DNS filtering.</note>
  
 In each of these applications, disable the lists provided by default and add https://sebsauvage.net/hosts/hosts In each of these applications, disable the lists provided by default and add https://sebsauvage.net/hosts/hosts
- 
-| {{ :dns-blocklist:blokada-1-principal.png?direct&250 |}} | {{ :dns-blocklist:blokada-2-ajouter-source.png?direct&250 |}} | {{ :dns-blocklist:blokada-3-garder-en-vie.png?direct&250 |}} | 
-| Blokada main screen | In blacklists, use this button to add a new source with [[https://sebsauvage.net/hosts/hosts|this URL]] and disable other blocklists. | If Blokada is killed by Android, make sure these two options are enabled. | 
- 
-By default, Blokada will display a notification for each blocked domain. Give it a try ! Open your favorites applications to see what you are spared of. After a moment, you will probably want to disable the notifications: 
- 
-{{ :dns-blocklist:blokada-4-notifications.png?200 |}} 
  
 For an extra layer of security, you can use alternate DNS resolvers such as Quad9 (9.9.9.9/149.112.112.112): This resolver also dynamically blocks botnets. For an extra layer of security, you can use alternate DNS resolvers such as Quad9 (9.9.9.9/149.112.112.112): This resolver also dynamically blocks botnets.
- 
-<note important>Regarding **Blokada**: 
-  * I do **not** recommend the default blocklist provided by Blokada (//Energized Blue//) because it blocks legitimate websites (such as //www.commentcamarche.net//). 
-  * By default, Blokada imposes not restriction on GooglePlay, GoogleDrive and other Google applications. You should disable whitelists. 
-</note> 
- 
  
 ---- ----
Ligne 179: Ligne 187:
 ===== Update ===== ===== Update =====
  
-I recommend updating the list every week. \\ Under Android, //Blokada// and //DNS66// are capable of updating the list automatically on a regular basis.+I recommend updating the list every week. \\ Under Android, //personalDNSFilter// and //DNS66// are capable of updating the list automatically on a regular basis.
  
 ---- ----
Ligne 200: Ligne 208:
  
   * //Which Android application do you recommend ?//   * //Which Android application do you recommend ?//
-    * The three applications are equaly good, but DNSFilter is much lighter than Blokada and DNS66. I recommend DNSFilter.+    * personalDSNFilter is light and does a very good job.
   * //Why use 0.0.0.0 instead of 127.0.0.1 ?//   * //Why use 0.0.0.0 instead of 127.0.0.1 ?//
     * 0.0.0.0 is a valid, but non-routable address. It will fail immediately. Which is not the case of 127.0.0.1 which adds some latency.     * 0.0.0.0 is a valid, but non-routable address. It will fail immediately. Which is not the case of 127.0.0.1 which adds some latency.
   * //Why not add list X ?//   * //Why not add list X ?//
-    * //[[https://github.com/EnergizedProtection/block|Energized]] ?// +    * [[https://github.com/EnergizedProtection/block|Energized]] ? 
-      * Abusive blocking (eg. it blocks //www.commentcamarche.net// which is a computer science learning site.)+      * Abusive blocking (eg. it blocks www.commentcamarche.net which is a computer science learning site.)
     * //[[https://hosts-file.net/emd.txt|Malwares]] from hosts-file.net ?//     * //[[https://hosts-file.net/emd.txt|Malwares]] from hosts-file.net ?//
       * Abusive blocking (it blocks //mail.gandi.net//, which is the mail server of a large french hosting provider).       * Abusive blocking (it blocks //mail.gandi.net//, which is the mail server of a large french hosting provider).
Ligne 211: Ligne 219:
     * Your browser will simply display a "website not found" screen like the site never existed.     * Your browser will simply display a "website not found" screen like the site never existed.
   * //How often do you update your list ?//   * //How often do you update your list ?//
-    * On an irregular basis, but a least once a month.+    * Every day.
   * //What if your website disappears ?//   * //What if your website disappears ?//
     * My website has been online longer than Facebook and Twitter. Satisfied ?     * My website has been online longer than Facebook and Twitter. Satisfied ?
dns-blocklist-en.1589784353.txt.gz · Dernière modification : 2020/05/18 06:45 de sebsauvage