Am always confused about use an app like rethinkdns, invizible pro, adguard, etc. to manage dns requests on my phone or just use the private dns ?

Is there any privacy advantage or security concern over them ? When i use an app, all dns queries can be routed through my preffered dns (like in a bloated phone all tracking requests can be blocked) ? Private dns is easy for the system to bypass ?

I always use rethinkdns and block bypassed dns, so i think now every dns is routed through rethinkdns and its impossible to cause a leak. Is that a myth as no dns app can provide that much privacy or security ?

How effective is an application firewall than a network level firewall like nextdns ?

Allover question is, may i use a application firewall or network level firewall ?

  • Xanza@lemm.ee
    link
    fedilink
    English
    arrow-up
    3
    ·
    20 hours ago

    Is there any privacy advantage or security concern over them ?

    This is more of a philosophical question than anything. If you trust that they’re not using your data for anything nefarious, I really advocate for RethinkDNS. It’s a really great service and truly fills a need between the clear-net and running your own DNS.

    If you don’t trust RethinkDNS, etc, etc, to not do anything nefarious, then it’s time to setup your own.

    I always use rethinkdns and block bypassed dns, so i think now every dns is routed through rethinkdns and its impossible to cause a leak. Is that a myth as no dns app can provide that much privacy or security ?

    I wouldn’t say it’s a myth or anything, but to say you’re 100% secure from leak? Probably don’t trust that feeling. Keep it at 99% secure with 1% suspicion.

    How effective is an application firewall than a network level firewall like nextdns ?

    Like most security software, it depends on how you use them. If you use firewalls effectively, even software based firewalls can work exceptionally well.

    may i use a application firewall or network level firewall ?

    You can do both. Software based requires you to setup something on each device you want to firewall. Network is a blanket and will affect all of your devices with only one setup. But either works just fine–just depends on how much effort you want to put into it, I guess.

    • figurine8051@lemmy.caOP
      link
      fedilink
      arrow-up
      1
      ·
      edit-2
      20 hours ago

      When am using rethinkdns does it matter am using rethinkdns hosted on cludflare / fly.io or just using other dns services (like adguard, nextdns, mullvad, etc.) ? Then it will miss the entire point of using rethink ?

      • Xanza@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        It really doesn’t matter. It tells you the difference between the CDNs right on the usage page.