-
Notifications
You must be signed in to change notification settings - Fork 99
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Provide an option to disable fallback #3447
Comments
Long time test nothing can fix. not sure the problem was from. now go back to 3.3.3. Not found such a problem. |
@lessload is there any change when you select DNS-over-HTTPS traffic? |
it's still leak. it may MIUI campatibility problem. |
I've got dns leaks too. Leak was from mobilewips app com.samsung.android.server.wifi.mobilewips.client |
I used Opendns DoH in adguard |
To troubleshoot the issue, I would ask you to collect the following information:
|
Logs received from 2520013. |
My mum Galaxy S9 with latest AdGuard 3.5 nightly 3 also has dns leaks. |
Подтверждаю |
Quick update on this.
You can change the fallback DNS server addresses in the low-level settings. @artemiv4nov what we need to do in this task is providing an option to disable fallback via low-level settings. How to test fallback:
|
Got dns leak from adguard 3.2.120, android 10 One UI 2.0 Used cloudfare dns over TLS Steps to reproduce- Turn off internet completely for android device Temporary fix- Turn off internet. |
While I carried out the test 1.1.1.1 was perfectly reachable from my pc @60ms |
Could you please show a few records? |
Yeah I have mailed 4 screenshots at support@adguard |
Another update. Chrome 84.0.4147.89 uses inbuilt DNS resolver activity and does not send resolution requests anymore. Steps to reproduce my observations-
Temporary fix- |
I can accept some traffic leak from hardcoded. But can not accept when it leak while Adguard update itself (a lot of traffic leak show on Pi-Hole) (sorry if you already fix it, i still use old version) For me, Block Google DNS make all (maybe) traffic go through Adguard app. |
In the previous versions of adguard vpn or proxy reconfiguration was not needed to prevent dns leak but in latest version it's the only fix I found [I am not in anyway linked to adguard development team]. But u r taking about leak during update which is quite normal as the vpn or proxy is killed and restarted shortly after update completion. Though this issue should be fixed, it was there from the very beginning.
Yeah i tried that but websites load very slowly if done, according to my observations |
Did you try to disable the DNS fallback at all? I described this case a few comments above |
Yeah it's set to none
…On Thu, 20 Aug, 2020, 4:52 pm Artem Ivanov, ***@***.***> wrote:
I have checked in latest nightly too. Only solution for me is to enable
vpn reconfiguration on network change
… <#m_8643084292967767579_>
Did you try to disable fallback at all? I described this case a few
comments above
<#3447 (comment)>
—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
<#3447 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AN3FHQ47H45LVBLBWM27KQDSBUBOJANCNFSM4NMZK44Q>
.
|
@techIndia-hacker Can you send the debug logs again, please? Can't find them |
Search in the devteam mail box for my name
…On Thu, 20 Aug, 2020, 4:56 pm Artem Ivanov, ***@***.***> wrote:
@techIndia-hacker <https://github.com/techIndia-hacker> Can you send the
debug logs again, please? Can't find them
—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
<#3447 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AN3FHQ6EOAUZ7TVPXEK7O3TSBUB65ANCNFSM4NMZK44Q>
.
|
@techIndia-hacker the latest logs are from the week ago, please collect the logs with the new nightly and send them to devteam. |
Ok will send u when i get time
…On Thu, 20 Aug, 2020, 5:03 pm Andrey Meshkov, ***@***.***> wrote:
@techIndia-hacker <https://github.com/techIndia-hacker> the latest logs
are from the week ago, please collect the logs with the new nightly and
send them to devteam.
—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub
<#3447 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/AN3FHQ45QJOWMPMY4EQ7WUDSBUCX5ANCNFSM4NMZK44Q>
.
|
Sent logs
On Thu, 20 Aug, 2020, 5:31 pm Ayan Chakraborty, <
ayanchakraborty3199@gmail.com> wrote:
… Ok will send u when i get time
On Thu, 20 Aug, 2020, 5:03 pm Andrey Meshkov, ***@***.***>
wrote:
> @techIndia-hacker <https://github.com/techIndia-hacker> the latest logs
> are from the week ago, please collect the logs with the new nightly and
> send them to devteam.
>
> —
> You are receiving this because you were mentioned.
> Reply to this email directly, view it on GitHub
> <#3447 (comment)>,
> or unsubscribe
> <https://github.com/notifications/unsubscribe-auth/AN3FHQ45QJOWMPMY4EQ7WUDSBUCX5ANCNFSM4NMZK44Q>
> .
>
|
@techIndia-hacker Got it, thanks. We will investigate your logs tomorrow. |
@techIndia-hacker Hi! Settings -> Network -> Advanced -> Personal DNS. |
BTW about plain-DNS leaks. if you want you can use DoT server with ip e.g. Or you can use true DNSCrypt servers But this refers to a single one bootstrap query to resolve DoH/DoT server address |
Private DNS is turned off even when the logs were being generated. Bootstrap DNS is a totally different thing. It's a single DNS query sent by adguard and not logged in filtering logs section. But I get multiple DNS requests leaking to isp DNS visible in filtering logs in adguard, as soon as I open any browser. Did u even look at the logs I sent!! 😐 |
We seem to have established the cause of the leak. This bug is incredibly difficult to reproduce, because it is not reproducable on most devices. As I've seen in the logs you used Samsung with Android 10, in my case the only one device with the same behavior was Xiaomi Mi 10. So, what happens: Why did I assume that the problem was caused by a private DNS?
Yep, as I've mentioned above I hope our changes will help solve the problem. |
Ok I understand. It's nice to know that it's getting fixed. Also see this Magisk-Modules-Repo/movecert#9 |
Issue Details
Expected Behavior
App should always filtering traffic or have something like Kill Switch. and stop only when disable protection.
Actual Behavior
After update to v3.4. I found dns traffic leak to my pi-hole randomly but too many dns leak. Adguard show as protection enable but traffic still leak need to re-enable to fix it. i always active Adguard, and enable Always-on VPN function in android setting. The traffic that leak not show in Filtering log. Please check.
Additional Information
[already set battery - No restrictions / enabled - auto start] but when update blocklist it couldn't leak the traffic. it shoult have something like kill switch to protect the traffic.
Adguard not work with multi-user android? (dual-app on MIUI)
The text was updated successfully, but these errors were encountered: