Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Some traffic not detected by app's firewall #517

Closed
sm18lr88 opened this issue Aug 9, 2022 · 2 comments
Closed

Some traffic not detected by app's firewall #517

sm18lr88 opened this issue Aug 9, 2022 · 2 comments

Comments

@sm18lr88
Copy link

sm18lr88 commented Aug 9, 2022

App: RethinkDNS 0.53i
Device: Pixel 6
OS: Android 12, build #SQ3A.220705.004

Issue: I blocked Audible in both Wifi and Cell on the firewall, and have no other Amazon apps installed.
When I open Audible to listen to pre-downloaded files, RethinkDNS's firewall shows blocked Audible requests, but upon checking my NextDNS log, I still see the connections to Amazon.

No other app is reportedly sending requests for Amazon related servers.

I have found Amazon apps to be the sneakiest among all apps on Android.

Let me know how I can improve the wording here, as I'm obviously not a programmer.

@ignoramous
Copy link
Collaborator

ignoramous commented Aug 15, 2022

DNS requests are not firewalled per-app. Only TCP/UDP requests are. Per-app DNS blocking is not possible on Android unless #270 is implemented. The newer network engine (part of the v053i release) supports per-app DNS, but it isn't yet exposed via the UI.

What you're seeing are DNS requests being allowed (ones appearing in DNS Logs), but TCP/UDP requests must be firewalled (ones appearing in Network Logs).

Also see a related but different issue #370

hussainmohd-a added a commit to hussainmohd-a/rethink-app that referenced this issue Sep 28, 2022
Issue fix celzero#517: Apps which are excluded are added as part of VPN when the app
is in Pause state.
hussainmohd-a added a commit to hussainmohd-a/rethink-app that referenced this issue Sep 28, 2022
Issue fix celzero#517: Apps which are excluded are added as part of VPN when the app
is in Pause state.

Dns country code is now cached along with the ttl, fqdn values.

Issue Fix: Incorrect IP rules.

Filter for allowed apps celzero#520

Removed unused shared pref variables.
@hussainmohd-a
Copy link
Collaborator

Issue #517 is wrongly added in the commit message instead of #527.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants