this post was submitted on 24 Apr 2026
585 points (97.9% liked)
Technology
84069 readers
3217 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
If he can't even install an addon for a browser, what do you think he can do with DNS?
I think I should have just said pi hole
No company that doesn't allow you to install browser add-ons will allow you to run a pi-hole instance. Not on your machine, and much less as an actual pi plugged into their network. If you did plug an actual pi into the network it would probably reason to be just straight up fired.
I wfh so I have it in middle Ethernet to pi hole ethernet from it my work laptop yep in office that would get you in trouble
It depends whether or not they left the DNS setting unlocked, which is actually highly likely.
Would have to use a public server, but it should in theory work.
I wouldn't think so. I would also assume that direct DNS requests to external servers aren't allowed in the firewall. But even if they are, they probably can't use a non-company DNS server if he needs to reach internally hosted services. So it would at least require using different browser for internal and external browsing, assuming DNS requests to external servers really are allowed.
Great.
Now you can be responsible for why group policies arent applying and the user is not able to access drive shares.
Ask IT to make their DCs public facing /s
Unless they just use Firefox's proxy settings.
EDIT: It's not DNS but should still work.
Firefox supports DNS over HTTPS. Enabling it will bypass the operating systems DNS. You can set a custom server that has ad blocking.
If they locked down extensions, it's highly likely they also locked down modifying the DNS settings.