Profiles, and bugs #1197
Replies: 2 comments 5 replies
-
Thanks.
Planned, see: #720
If you're technical enough, turn log-level to verbose (Configure -> Settings -> Log Level -> Verbose), then capture the output from
As in, these don't show up on both DNS and Network logs even when you use the search bar? That's concerning.
Yeah, we need to simplify the UI. You'd find too many open issues on that: #1177, #666, #1050 etc The variety of choice for various DNS protocols is because Rethink is primarily an anti-censorship tool. We're adding 2 new protocols in
Yeah, redundant, but an additional layer of control, nevertheless. On-device blocking was one of the top asks from users back then, btw.
Depends on your usecase; and as long as apps play fine with Orbot, you can opt to route them through Orbot.
It is the same thing but just wrapped in a fancy UI that tries to auto-configure a few setup related things with the Orbot app. |
Beta Was this translation helpful? Give feedback.
-
Many vriant of these requests exist (#1130), but we believe it is best done through something like Tasker (#63), for which we're waiting for someone from the community to contribute (as Tasker users tend to be fairly technical to be able to do so). As for us, we see creating "use profile" within Rethink a niche feature. |
Beta Was this translation helpful? Give feedback.
-
Profiles
Suppose I connect to the internet in one of two ways;
I propose separate network profiles. Each profile can be used for different threat models or use cases. One of those use cases would be when away from home using a mobile provider - here I would personally keep a proxy active at all times (if possible, see note below) and have some settings adjusted, including but not limited to;
Block on metered (mobile) network
disableBlock port 80 traffic
enableBlock all apps when device is locked
enableHonestly, I'm more burdened by the inability to connect to the internet on a mobile service than I am about doing so with certain privacy protections. So switching to profile B when I leave the house would just save me valuable time if nothing else.
Side note, at the moment I cannot connect to my mobile provider if I'm connected to Wireguard. Connecting to that VPN with the standalone app works, possibly because Rethink prevents DNS leakage while the VPN app doesn't?
Universal firewall settings, but for individual apps
I know you can adjust certain settings for specific apps, but for example, I don't think you can block a specific app when device is locked or when app is not in use, or block that specific app when it tries to bypass DNS. In other words, most of the settings under Universal firewall rules, except port 80 which I know you can block on a per app basis already. I'd like to have a universal firewall rule enabled, but disabled for a specific app, or vice versa.
Bugs and other problems
v055a, installed via F-Droid. Always-On enabled,
Block connections without VPN
disabled.OS: GrapheneOS (Android)
assets.adobedtm.com
, I believe I needed to disable Rethink to access a certain site that depended on having a connection to this domain, but it would never get logged in Rethink. I recall mentioning this problem around a year ago, it still seems to be a problem.dnscrypt Quad9 Secure
, sometimes with or without relay (lately I've avoided the relays because I discovered they use cryptostorm.is, whose integrity should be put into question), and various RethinkDNS endpoints. As far as I'm aware, the only difference between the different RDNS endpoints is their blocklists, but I can customize my own on-device blocklist, they seem redundant.Questions
Beta Was this translation helpful? Give feedback.
All reactions