Android 9.0 supports Private DNS: which to use? - OnePlus 5 Questions & Answers

Android 9.0 supports Private DNS: which to use?

beautifulsun said:
Android 9.0 supports Private DNS: which to use?
Click to expand...
Click to collapse
just add it 1dot1dot1dot1.cloudflare-dns.com

Two questions about this:
What is Automatic DNS? Does this route DNS lookup requests to a OnePlus-run DNS server?
Why can't I enter 1.1.1.1 as the DNS? (instead of 1dot1dot1dot1.cloudflare-dns.com which would require a DNS lookup right?)

seanp25 said:
Two questions about this:
What is Automatic DNS? Does this route DNS lookup requests to a OnePlus-run DNS server?
Why can't I enter 1.1.1.1 as the DNS? (instead of 1dot1dot1dot1.cloudflare-dns.com which would require a DNS lookup right?)
Click to expand...
Click to collapse
No, it's a elemental setting provided from android pie itself. The automatic dns is the one provided from your provider, see https://www.dnsleaktest.com/
Why you can't enter ip's? Well, it's by Google design when they want a host name

Thanks.
I still don't fully understand the difference between Off and Automatic. dnsleaktest shows the same results for both settings for me.
EDIT: I see now that Automatic encrypts the DNS look up.

seanp25 said:
Thanks.
I still don't fully understand the difference between Off and Automatic. dnsleaktest shows the same results for both settings for me.
EDIT: I see now that Automatic encrypts the DNS look up.
Click to expand...
Click to collapse
that's DNS over TLS and the automatic setting negotiates if it's available on provider site. If not, it's not encrypted as before.

seanp25 said:
Two questions about this:
What is Automatic DNS? Does this route DNS lookup requests to a OnePlus-run DNS server?
Why can't I enter 1.1.1.1 as the DNS? (instead of 1dot1dot1dot1.cloudflare-dns.com which would require a DNS lookup right?)
Click to expand...
Click to collapse
strongst said:
No, it's a elemental setting provided from android pie itself. The automatic dns is the one provided from your provider, see https://www.dnsleaktest.com/
Why you can't enter ip's? Well, it's by Google design when they want a host name
Click to expand...
Click to collapse
For anyone curious, why you can't use an IP address in settings and need to use 1dot1dot1dot1.cloudflare-dns.com. This is because many mobile carrier support IPv4 and IPv6 and this prevents you from entering a potentially obsolete or unreachable IPv4 address.
and also
You need to verify the certificate that the DNS server gives you with the hostname that you put in. Because if that cert is compromised (wrong host name, expired, etc.) then the whole server might as well be compromised. If the cert matches the hostname, then it's good and you are able to secure DNS requests over TLS.
Source :
https://www.reddit.com/r/Android/co...ivate_dns_with_1111_on_android_9_pie/e4b3zcf/
and
https://blog.cloudflare.com/enable-private-dns-with-1-1-1-1-on-android-9-pie/

Thanks!
My last curiosity about this: what DNS does your phone use for resolving 1dot1dot1dot1.cloudflare-dns.com to it's actual IP address? Or how does it do this lookup?

Sorry for the late input. I noticed something while using "Private DNS" option. When I keep it OFF, my DNS always shows as Jio (that's obvious since I use Jio sim). But when I keep it AUTOMATIC, sometimes my DNS shows Jio, but most of the time it shows that my DNS is Google. I don't know how and why. So, I guess on Automatic mode, the device switches in between ISP provided DNS and Google DNS automatically depending on the ping or something. But, like I said, on automatic, the DNS leak test is not static. The DNS keeps changing time to time.

For anyone somewhat interested in privacy, Cloudflare isn't the best choice.
UncensoredDNS works fine, and you can either use this for Anycast:
Code:
anycast.censurfridns.dk
...or this for a single node:
Code:
unicast.censurfridns.dk

Related

Specifying your own DNS Servers

Hello,
I have a HTC PPC-6800 running Windows Mobile 6. Is there a way for me to specify my own DNS servers instead of having the device use my cell phone carriers DNS servers?
I recently moved my domain to a new set of name servers, and changed all the zone records to point to a new IP. It seems mostly all the DNS servers I use have updated and reflect this change now except for my Carriers DNS. This domain hosts my e-mail so i'm not able to check e-mail on my phone right now. It's been over 24 hours since the changes to the domain were made.

Hack to make web browsing faster...

This hack has been around forever but I figured I would mention it because surprisingly few people know about it:
DO THIS:
Settings > Wireless > Wifi Settings > Menu (Button) > Advanced > Use Static IP (check this) > DNS1 Settings (set to 208.67.222.222) > DNS2 Settings (set to 208.67.220.220) > Reboot
Not all roms will allow you to access this, but if yours does, give it a try.
WHAT IT DOES:
When you enter a name like Amazon in your browser, before going to Amazon it needs to translate "Amazon" into an IP address. This can be SLOOOOW. By setting your DNS servers, you give it one single IP address to go to for all IP address translations - i.e., it's faster.
This is an old PC hack and I wasn't sure it would work on a phone but we tried it out over at another forum and everyone was getting MUCH faster page opens in their browsers. Many said their Market was working faster too.
Give it a shot and see what you think. Good luck
** Read more about it here: https://store.opendns.com/setup/
Oh yeah, it's free so no worries.
Wont you run into problems if you move off your home network. Some networks wont give you the static ip you want.
Sent from my PC36100 using XDA App
Dunno. Seemed to have sped up my 3G as well. If it doesn't work you can just uncheck the static ip thing when away from home.
mitchellvii said:
Dunno. Seemed to have sped up my 3G as well. If it doesn't work you can just uncheck the static ip thing when away from home.
Click to expand...
Click to collapse
Yea that's what I figured. Also I use google dns. 8.8.8.8 and 8.8.4.4 its easier to remember.
Sent from my PC36100 using XDA App
eh most of the time you wont have to jump more than 1 or 2 DNS servers to sort your IP, than that IP is sent down those on the way back to you for future reference(until a hold down timer expires most likely)
gosh, hope that makes sense =P
Nrre said:
eh most of the time you wont have to jump more than 1 or 2 DNS servers to sort your IP, than that IP is sent down those on the way back to you for future reference(until a hold down timer expires most likely)
gosh, hope that makes sense =P
Click to expand...
Click to collapse
Nevertheless, this is faster.
OP, your link leads to a website that appears to require a sign-up to continue, is there a link that doesn't?
Also, while I can see how this may help with a Wi-Fi signal, how is it you've experienced faster 3G? Just curious, thanks.
First, this isnt a hack
Second, you're changing dns for your wifi, not 3g.
Thanks for the reminder though, but does any know if you can change your 3g dns?
TorxT3D said:
First, this isnt a hack
Second, you're changing dns for your wifi, not 3g.
Thanks for the reminder though, but does any know if you can change your 3g dns?
Click to expand...
Click to collapse
##data(3282)# / edit mode / there are plenty of settings to mess with here (and mess things up too, but here is where you can find what you are looking for)
btw... you will need your msl to enter edit mode
I wouldn't go around fooling with the sprint default dns it could cause problems.
Isn't that the opendns ip? Who cares... this is not a hack... at all. I use 8.8.8.8 and 8.8.4.4 anyway.
Android 17 said:
OP, your link leads to a website that appears to require a sign-up to continue, is there a link that doesn't?
Also, while I can see how this may help with a Wi-Fi signal, how is it you've experienced faster 3G? Just curious, thanks.
Click to expand...
Click to collapse
You don't have to sign up, just use the DNS addresses given:
DNS1: 208.67.222.222
DNS2: 208.67.220.220
That's all you need.
LOL at people thinking hard setting dns servers = hacking.
Setting up DNS does not speed up browsing. It might speed up the initial resolving of the website if the current dhcp dns server is slow.
Thanks for the good laugh tho.
Now if somebody could post how to change WiMAX DNS servers, that would be much more interesting... for a variety of reasons...

Authentication type bug detected in TF101G

Hi all.
I have detected a bug in authentication type option when configuring a new APN for 3G connection.
In my company, mobile devices connect via 3G connection to corporate network resources. The authentication is provided by our corporate RADIUS server. For reasons not related to this issue, the RADIUS server only provides PAP authentication.
So I have set in TF101G's APN configuration username and password and entered PAP authentication type, but I cannot access to my network resources behind APN.
I have obtained some log and sniffer traces from our corporate RADIUS server where I can observe that TF101G always tries to authenticate using CHAP. So that's the reason why authentication fails.
I've also tested it with samsung smartphones and tablets and it works Ok!!
So I would be pleased if you could verify this same behavior in TF101G. But you would need to obtain sniffer traces from authentication process to verify.
Please, could you confirm this behavior?
Many thanks in advance and best regards,
Ernesto.
sometimes my lips get CHAPPED
Don't worry about that. Wikipedia is up again:
en[dot]wikipedia[dot]org[slash]wiki[slash]Chapped_lips
Best regards,
Ernesto.

[Q] Has Anyone Got a DNS Service Working Yet?

Hello,
I'm trying to set up USAccess on my Nexus Player. As there are no existing guides, I've just been using standard Android guides. So far, I am unable to connect to the internet after changing my DNS settings. I've been searching endlessly and have only found questions regarding this topic before the Nexus Player was released.
I
I tested on my NP both by changing the DNS settings on the device and at the router level and did not have any luck connecting to Netflix on either. With the DNS set on the device, the internet connection wouldn't work on any app but when I changed it on the router, apps worked (Play store for example) but Netflix wouldn't connect.
I wonder if it is similar to the Chromecast where the DNS settings are hardcoded and you need to set up some modifications on your router (or have root access to make the necessary changes).
My suggestion would be to open a ticket with USAccess and they may be able to assist/verify that everything is configured correctly.
Setting DNS on my router works for me for accessing Australian content from the states. So this seems to be a netflix specific thing.
Sent from my Nexus 5
I'm in Canada and Netflix usa works fine for me (go to settings in Netflix and under member if it says US then it should be working) I use unblockus I have my dns settings changed on the router. Now just need a way for the nexus player to load the usa play store, this has always been tricky on Android. Worst case I will sideload Hulu for the time being.
I'm also up in Canada, and I was able to use unotelly's DNS to access Netflix US. I did notice that after changing the DNS settings on the player itself, I couldn't connect to anything until I changed the language setting in the settings app to us English (instead of Canadian), and although everything is connecting now, I've lost the recommendations bar (it just says recommendations are not available right now)
So far USAccess.ca is not working here either. Going to need to do more digging and see what the device is actually trying to do!
I am also up in Canada and I use AdFreeTime DNS service, however I cannot get Netflix to work. When I change the DNS addresses on my router to AdFreeTime, Netflix throws an -100 connection error, but everything else connects fine. I am re-routing google's dns services 8.8.8.8 and 8.8.4.4 to AdFreeTime DNS servers through iptables on my Asus router. Maybe that's an issue?
Can someone from Canada who has Netflix US working post exactly how they got Netflix to connect properly? Thank you.
I just got usaccess.ca working... It turns out I think my version of DD-WRT had some dnsmasq issues (even with strict-order enabled). I flashed a newer release of DD-WRT so i could get tcpdump working and when i finally went to capture the traffic, low and behold netflix was working with the US DNS servers set in dnsmasq. I could even watch US content
Now i just need to find that Hulu Plus .apk!!!
Elrondolio said:
I am also up in Canada and I use AdFreeTime DNS service, however I cannot get Netflix to work. When I change the DNS addresses on my router to AdFreeTime, Netflix throws an -100 connection error, but everything else connects fine. I am re-routing google's dns services 8.8.8.8 and 8.8.4.4 to AdFreeTime DNS servers through iptables on my Asus router. Maybe that's an issue?
Can someone from Canada who has Netflix US working post exactly how they got Netflix to connect properly? Thank you.
Click to expand...
Click to collapse
As a followup: I got Netflix US content working properly on the NP by setting my router to my US dsn services, but I had to disable routing the google dns servers to my AdFreeTime dns servers (which I was doing through an iptables script on my custom Asus AC68U router.) This kind of blows as routing google dns to US dns services such as AdFreeTime, Unblock US, etc was the only way to make the Chromecast work with US Netflix and other services from Canada.
There has to be a way to keep those pesky google dns services built in to Chromecast and the Nexus Player routed to unblocked US dns services without messing up Netflix on the NP.
Any ideas would be greatly welcomed.
The Nexus Player doesn't have hard coded DNS servers. I was able to change my WIFI connection from DNS to STATIC; enter in static, gateway, and DNS (USAccess) IPs and a day later, the settings took and my Netflix region change to US EN.
BlackVariant said:
Hello,
I'm trying to set up USAccess on my Nexus Player. As there are no existing guides, I've just been using standard Android guides. So far, I am unable to connect to the internet after changing my DNS settings. I've been searching endlessly and have only found questions regarding this topic before the Nexus Player was released.
Click to expand...
Click to collapse
+1 for this problem, I get the error -100, using USAccess. Have tried setting a static profile with USAccess DNS and with the IP's on my router. Works fine on my Amazon Fire TV but not the Nexus Player.
I had the same problem with usaccess, so I used the trial of unotelly to compare. unotelly works perfectly including displaying the US play store. Could be worth the extra expense, i have 7 days left to decide .
So following this:
http://forum.xda-developers.com/nexus-player/general/how-to-change-dns-ip-t2953282
USAccess is still not working for you?
I'm using 107.20.195.51 not their new region switching DNS IP.
habskilla said:
So following this:
http://forum.xda-developers.com/nexus-player/general/how-to-change-dns-ip-t2953282
USAccess is still not working for you?
I'm using 107.20.195.51 not their new region switching DNS IP.
Click to expand...
Click to collapse
I do all that and it says ip address not valid. Could you give a better description on what exactly ip addresses and gateways ishould use. Id really appreciate it
OathYvne said:
I do all that and it says ip address not valid. Could you give a better description on what exactly ip addresses and gateways ishould use. Id really appreciate it
Click to expand...
Click to collapse
Everyone has a different home network setup. So, I'll try to help you out.
Go to:
Settings
Network
Wi-Fi Connected
Pick your current Wi-Fi connection
Status info
Write down the IP address
e.g 192.168.2.23
When you go back to your Advanced settings, use the following:
IP address = IP address you wrote down from above (e.g. 192.168.2.23)
Gateway = You will have to figure out. It is usually the first three sets of numbers from your IP address and .1
So, from my example, Gateway = 192.168.2.1
Network prefix length = 24
DNS 1 = Enter in your DNS IP
DNS 2 = Use your secondary DNS IP
I use USAccess so my numbers are
Primary DNS: 107.20.195.51 Secondary DNS: 107.20.190.171
Hit next and you should see settings saved message.
habskilla said:
Everyone has a different home network setup. So, I'll try to help you out.
Go to:
Settings
Network
Wi-Fi Connected
Pick your current Wi-Fi connection
Status info
Write down the IP address
e.g 192.168.2.23
When you go back to your Advanced settings, use the following:
IP address = IP address you wrote down from above (e.g. 192.168.2.23)
Gateway = You will have to figure out. It is usually the first three sets of numbers from your IP address and .1
So, from my example, Gateway = 192.168.2.1
Network prefix length = 24
DNS 1 = Enter in your DNS IP
DNS 2 = Use your secondary DNS IP
I use USAccess so my numbers are
Primary DNS: 107.20.195.51 Secondary DNS: 107.20.190.171
Hit next and you should see settings saved message.
Click to expand...
Click to collapse
Thanks alot man. Did you have to change your date and time to american? cause when i open netflix i get a -201 error and it says make sure your date and time are correct and youre connected to the internet. I changed it to american date and time but still has same error.
Never had that error.
habskilla said:
Everyone has a different home network setup. So, I'll try to help you out.
Go to:
Settings
Network
Wi-Fi Connected
Pick your current Wi-Fi connection
Status info
Write down the IP address
e.g 192.168.2.23
When you go back to your Advanced settings, use the following:
IP address = IP address you wrote down from above (e.g. 192.168.2.23)
Gateway = You will have to figure out. It is usually the first three sets of numbers from your IP address and .1
So, from my example, Gateway = 192.168.2.1
Network prefix length = 24
DNS 1 = Enter in your DNS IP
DNS 2 = Use your secondary DNS IP
I use USAccess so my numbers are
Primary DNS: 107.20.195.51 Secondary DNS: 107.20.190.171
Hit next and you should see settings saved message.
Click to expand...
Click to collapse
I have done this, tried three different wifi networks, both with and without USAccess. I'm starting to think there is something with Netflix that it just won't work in Sweden.
Hasn't anyone who previously had the -100 error been able to resolve it?
Does anyone know what the netflix app is trying to do when we get the -100 error? I would like to find this out so I can tell my ISP about it as they offer their own DNS redirection service so we can get access to things like netflix in the USA.
I have 8.8.4.4 and 8.8.8.8 redirected to a fake IP so that those addresses timeout at the router, but netflix will still not load unless I put unotelly's DNS directly on the NP. My roku on the other hand works without putting unotelly's DNS settings.

Ps4 nat type 2 (Sprint hotspot) non-rooted-method

Not really a mod, but get rid of nat type 3! Plus my recommending settings!
This will cost you 3 dollars a month on your bill
Call sprint or use the messenger in my sprint
Tell them you want to add a static ip for 3 bucks a month on the device your using for hotspot
Next, goto settings and updates
Update your prls and profile
Reboot
Note: if you patched hotspot with shortcut master you will have to do it again after updating profile
Normal settings for Samsung on ps4 manual setup
The ip you want set for ps4
(Not every device has this same ip but Samsung does. You might need to check the ps4 network settings for the default hotspot ip)
Ps4 manual ip settings:
Device static ip: 192.168.43.40
Subnet mask: 255.255.255.0
Default ip: 192.168.43.1
Primary dns:
Pick one
Google dns : 8.8.8.8
Or
Opendns: 208.67.220.220
Second dns:
Pick one
Google dns: 8.8.4.4
Or
Opendns: 208.67.222.222
Personally for mine, I use open dns it doubles my hotspot speed. (Won't be the same for everyone)
But my home internet I use Google, it probably mostly depends where you live and what not.
Please note, this is for nat type 2 (Moderate).
Saafir said:
If you use Wifi Tether Router you don't need the static ip. Just use MTU Adjust patch
Click to expand...
Click to collapse
Yes this is possible, but you will need root. This is the non rooted method.
Some users don't want a 80% cap on there battery.
Dbzfan said:
Yes this is possible, but you will need root. This is the non rooted method.
Some users don't want a 80% cap on there battery.
Click to expand...
Click to collapse
My phone is rooted and I don't mind 80% cap on my battery. Please sir, can you explain to me the Wifi tether router method with the MTU adjust patch?
---------- Post added at 02:18 AM ---------- Previous post was at 02:17 AM ----------
Saafir said:
If you use Wifi Tether Router you don't need the static ip. Just use MTU Adjust patch
Click to expand...
Click to collapse
Please Sir, can you please elaborate on this method?
Saafir said:
You can find the app on the playstore and the rest of the info can be found here: https://sites.google.com/site/wifitetherrouter/home/device-configuration
Happy Hunting
Click to expand...
Click to collapse
Thank you ?

Categories

Resources