25 lines
1 KiB
Markdown
25 lines
1 KiB
Markdown
# Pi-hole
|
|
|
|
Runs on the OptiPlex homeserver (`192.168.30.20`) in `~/pihole`. Web UI on
|
|
port **8081** (`https://pihole.home.staffenberger.at` via NPM), so 80/443 stay
|
|
free for NPM. Replaces the Pi-hole on the Synology (`192.168.30.10`), which is
|
|
switched off once DHCP points at the new one.
|
|
|
|
## Setup notes
|
|
|
|
- Port 53 on the host is freed by disabling systemd-resolved's stub listener:
|
|
`DNSStubListener=no` in `/etc/systemd/resolved.conf.d/no-stub.conf`, and
|
|
`/etc/resolv.conf` linked to `/run/systemd/resolve/resolv.conf`.
|
|
- `FTLCONF_dns_listeningMode: "all"` is required — otherwise Pi-hole ignores
|
|
clients from other VLANs.
|
|
- Admin password: `docker exec -it pihole pihole setpassword` (stored in the
|
|
password manager, not in the compose file).
|
|
- Settings were imported from the NAS Pi-hole via **Teleporter**.
|
|
- **Local DNS records:** every `*.home.staffenberger.at` name points at
|
|
`192.168.30.20` (NPM) — including services on other devices such as OctoPrint.
|
|
|
|
## Test
|
|
|
|
```bash
|
|
nslookup google.com 192.168.30.20
|
|
```
|