Black List Additions

Folks,

Been using Pi-hole successfully for over a month now and with the default settings I am getting between 10-20% of my DNS referrals Pi-holed (a new verb).

When I check the query log so many obscure URLs show, I appreciate many may be necessary but many are not.

Any tips as to how to choose which to add to Black List, or is it just try and see what effect?

Geffers

It's usually a lot of searching the Web for clues. Especially the obscure ones. Lots of the big sites like Microsoft, Yahoo, etc. are documented in our commonly whitelisted or blacklisted domains.

That said, here are a few tips:

  • find out which host is making the queries to the domain(s) in questions
  • find out what service is initiating the queries by turning this off one-by-one
  • search Google with you refined knowledge such as "Windows" AND "somedomain.com"
  • look closely at the domain name to determine if it may be a Content Deliver Network (cdn) or it may be collecting telemetry