Feature Request: DNSBL should use it's own Unbound instance
Don't know if this has been suggested before (Sorry if it has, I searched the forum, but maybe not thoroughly enough) , but it would be great to have the DNSBL feature use it's own Unbound instance.
- great for people who want to setup a separate Interface/Subnet/WLAN just for Adblocking (like me)
- keep the main DNS resolver untouched/alive, in case anything goes wrong with pfBlocker's extra config
We could use the system Unbound config and just change the Port to something like 5353 or use an instance that just forwards it's requests to the main Unbound instance, also running on something like 5353.
To finally use the DNSBL resolver we could setup NAT from 53 to 5353 where needed.
Now flame me :)
To bypass DNSBL, you can configure the LAN devices to use a different DNS server and that should solve this issue for you. Could also run the DNS Forwarder (dnsmasq) on a different port….