# Ignore explicit whitelisted domains from query log

**URL:** https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335
**Category:** Duplicate
**Tags:** whitelisting
**Created:** [March 21, 2017, 6:20pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335 "2017-03-21T18:20:18Z")
**Posts on this page:** 16
**Page:** 1

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 21, 2017, 6:20pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/1 "2017-03-21T18:20:19Z")

</div>

I have a heating system at home. That system is polling every 2 seconds to the manufacturer (probably for the "system is disconnected" push notification).

Once whitelisted the domain I was hoping the domain wouldn't show up in the query anymore. But it still appears in the query log, which makes finding domains to block very hard.

Would be great when you explicitely whitelist a domain, it could be filtered from the query log. By default or by a setting?

Thanks anyway for this usefull app for my raspberry

---

<div class="post-metadata">

### Author: ![deathbybandaid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/deathbybandaid/32/893_2.png) [@deathbybandaid](https://discourse.pi-hole.net/u/deathbybandaid)
#### Post date: [March 21, 2017, 7:27pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/2 "2017-03-21T19:27:44Z")

</div>

Had a similar problem with wifi lights pinging every 5 seconds.

Find the mac address and place [this in your /etc/dnsmasq.d/ directory](https://github.com/deathbybandaid/pihole-bypass/blob/master/04-bypass.conf).

`cd /etc/dnsmasq.d/`

`wget https://raw.githubusercontent.com/deathbybandaid/piadvanced/master/piholetweaks/dnsmasqtweaks/04-bypass.conf`

`nano 04-bypass.conf`  
(replace mac address)

`dnsmasq --test`  
(tests the configuration)

`sudo reboot`

---

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 21, 2017, 7:59pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/3 "2017-03-21T19:59:25Z")

</div>

Which mac address do I need to enter? from the remote host or from the local sytem device? and in which format do I need to put it into the file?

---

<div class="post-metadata">

### Author: ![deathbybandaid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/deathbybandaid/32/893_2.png) [@deathbybandaid](https://discourse.pi-hole.net/u/deathbybandaid)
#### Post date: [March 21, 2017, 8:16pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/4 "2017-03-21T20:16:30Z")

</div>

Find the mac address of the heating system.

Where it says M.A.C.A.D.D.R.E.S.S , put your devices mac address there.

Essentially, what this does is completely bypasses the pihole dns, and sends those querys directly to google's dns.

---

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 21, 2017, 8:31pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/5 "2017-03-21T20:31:39Z")

</div>

The reason I asked the format is because it isn't working. Still a lot of entries inside the query log to the heating system API. Two times almost every second ☹

---

<div class="post-metadata">

### Author: ![deathbybandaid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/deathbybandaid/32/893_2.png) [@deathbybandaid](https://discourse.pi-hole.net/u/deathbybandaid)
#### Post date: [March 21, 2017, 9:41pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/6 "2017-03-21T21:41:50Z")

</div>

I know that for my lights, I had to reboot those too. Maybe rebooting your heating system as well.

I'm not sure what you mean by 'format'. Mac addresses look something like

00:A0:C9:14:C8:29

---

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 21, 2017, 10:43pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/7 "2017-03-21T22:43:50Z")

</div>

I was wondering the format for the bypass config file because it has dots for example and I know it's with a semicolon officially but it could be that the config required something else.  
Nevertheless; it doesn't work both.  
Also rebooted all systems but that doesn't work either. Still a lot of entries in the query log.  
I will investigate tomorrow again 🙂 thanks anyway

---

<div class="post-metadata">

### Author: ![Tntdruid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/tntdruid/32/773_2.png) [@Tntdruid](https://discourse.pi-hole.net/u/Tntdruid)
#### Post date: [March 22, 2017, 6:47am UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/8 "2017-03-22T06:47:17Z")

</div>

mac addresses must be in lowercase or it wont work

---

<div class="post-metadata">

### Author: ![DanSchaper](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/danschaper/32/91_2.png) [@DanSchaper](https://discourse.pi-hole.net/u/DanSchaper)
#### Post date: [March 23, 2017, 3:11pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/9 "2017-03-23T15:11:14Z")

</div>

MAC addresses should work in either upper or lowercase, they are just hexadecimal values.

---

<div class="post-metadata">

### Author: ![deathbybandaid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/deathbybandaid/32/893_2.png) [@deathbybandaid](https://discourse.pi-hole.net/u/deathbybandaid)
#### Post date: [March 23, 2017, 5:33pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/10 "2017-03-23T17:33:03Z")

</div>

> [@DanSchaper](#):
>
> MAC addresses should work in either upper or lowercase, they are just hexadecimal values.

That's what I figured,,,, I have mine set up with uppercase, and it works,

---

<div class="post-metadata">

### Author: ![deathbybandaid](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/deathbybandaid/32/893_2.png) [@deathbybandaid](https://discourse.pi-hole.net/u/deathbybandaid)
#### Post date: [March 23, 2017, 5:37pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/11 "2017-03-23T17:37:05Z")

</div>

> [@bertoost](#):
>
> I was wondering the format for the bypass config file because it has dots for example

I updated the file on github with colons to make it a little more intuitive. silly mistake on my part.

---

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 26, 2017, 9:03am UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/12 "2017-03-26T09:03:59Z")

</div>

I tried everything you said guys.. But no luck  
Can it be that the **04-bypass** filename is not reached since I have **01-pihole** first, **02-my-own-local-dns-machines** in place? Do I need to change the order maybe?

---

<div class="post-metadata">

### Author: ![bertoost](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/bertoost/32/938_2.png) [@bertoost](https://discourse.pi-hole.net/u/bertoost)
#### Post date: [March 26, 2017, 9:47am UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/13 "2017-03-26T09:47:18Z")

</div>

Also didn't change anything.. After some searching I found this solution;

```
dhcp-mac=tobeignored,MA:CA:DD:RE:SS
dhcp-ignore=tobeignored

```

And this seems to work!

[edit]  
Bleh! didn't work either.. Pretty annoying the query log from pihole is full with API requests from my Honeywell heating system. Also don't know why it polls so many times in a minute, but okay...

---

<div class="post-metadata">

### Author: ![DanSchaper](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/danschaper/32/91_2.png) [@DanSchaper](https://discourse.pi-hole.net/u/DanSchaper)
#### Post date: [May 31, 2017, 2:29am UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/14 "2017-05-31T02:29:19Z")

</div>

Configurations are read in what's called lexicographical order, meaning a-b0-9, so anything with a higher number is read after the others. Files starting with 99 are usually read last and are for absolute overrides on anything previously read.

---

<div class="post-metadata">

### Author: ![yubiuser](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/yubiuser/32/12100_2.png) [@yubiuser](https://discourse.pi-hole.net/u/yubiuser)
#### Post date: [June 5, 2020, 6:22pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/15 "2020-06-05T18:22:20Z")

</div>

Closing as it is a duplicate of

> [@\[Request\] Add "Filter Whitelisted" checkbox to Query Log](https://discourse.pi-hole.net/t/request-add-filter-whitelisted-checkbox-to-query-log/1661):
>
> I get tons of queries from whitelisted domains in my query log. So much so that even using the "All" settings I sometimes have to go through pages of the same results to get to something interesting. Some of it is caused for example by using the Atom editor which will poll the "atom.io" domain repeatedly for updates etc. This causes entire pages of the query log to be filled with results that I know are irrelevant. Once I have whitelisted a domain I would like to have the option to (permanentl…

---

<div class="post-metadata">

### Author: ![yubiuser](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/yubiuser/32/12100_2.png) [@yubiuser](https://discourse.pi-hole.net/u/yubiuser)
#### Post date: [June 5, 2020, 6:22pm UTC](https://discourse.pi-hole.net/t/ignore-explicit-whitelisted-domains-from-query-log/2335/16 "2020-06-05T18:22:24Z")

</div>


