Skip to content
DnsLister Forum

Where domain hunters compare notes

How to stop RethinkDNS leaking DNS to Google servers

Issue: Every single DNS leak test I've done, reveals DNS leaks to Google server when using accurately configured NextDNS or ControlD endpoint resolvers configured in RethinkDNS with either DoT or DoH.

There is no leak when I use any of the "built in" resolvers. So something IS leaking when using custom endpoint resolvers. How to fix this?

This is my comprehensive setup for troubleshooting purposes:

  1. RethinkDNS 0.5.6 (fdroid)
  2. NextDNS resolver configured in RethinkDNS: Other DNS – DoT – tls://xxx.dns.nextdns.io
  3. Proxy configured in RethinkDNS: Import – .conf file (I've tried Surfshark, Mull and and Proton VPNs). ONLY ONE VPN PROXY HAS BEEN ACTIVE AT ANY GIVEN TIME.

Options configured (only will mention options toggled ON, if not mentioned means all other toggled OFF):

  1. DNS
  2. Show website icon in DNS logs
  3. DNS booster
  4. Prevent DNS leaks
  5. Block DNS from Unknown source

  6. Proxy

  7. Advanced – Lockdown

  8. Android system

  9. Private DNS OFF (mentioning it specifically)

  10. VPN – Rethink – Always-on VPN Block connections without VPN

  11. RethinkDNS Firewall – Universal firewall rules

  12. Block all apps when device is locked

  13. Block when DNS is bypassed

  14. Block newly installed apps by default

  15. Block port 80 (insecure HTTP) traffic

Edit : important to note, the DNS does not leak if I'm using any of the mentioned VPN'd native android app.

https://i.redd.it/w3nxk8dt1hph1.jpeg

Source: r/rethinkdns · by /u/niclaw13

Leave a Reply

Your email address will not be published. Required fields are marked *