Network Based Ad Blocking
Network Based Ad Blocking is performed by implementing a DNS sinkhole, where DNS queries matching adware sites are not resolved, preventing ads from being served network-wide. The purpose of this guide is to highlight and compare some of the more popular solutions deployed at home.
We'll examine core features, as well as security and architectural considerations to help users make the right decision for them.
Feature comparison
The below chart is a feature comparison between the Pi-Hole, Technitium and AdGuard.
Pi-Hole versus Technitium versus AdGuard Home
Feature | SPR | Pi-Hole | Technitium | AdGuard Home |
---|---|---|---|---|
Core DNS Blocking | ||||
Blocking ads/trackers | ✔️ | ✔️ | ✔️ | ✔️ |
Blocking malware domains | ✔️ | ✔️ | ✔️ | ✔️ |
Parental control (adult domains) | ✔️ | ✔️ | ✔️ | ✔️ |
Force Safe Search | ✔️ | ✔️ | ✔️ | ✔️ |
Custom Blocklists | ✔️ | ✔️ | ✔️ | ✔️ |
Rule Management | ||||
Per-Client Rules | ✔️ | ✔️ | Limited | ✔️ |
Per-Group Block lists | ✔️ | ✔️ | Limited | ✔️ |
Per-Group Permit lists | ✔️ | Limited | Limited | |
DNS Rewriting | ✔️ | Limited | Limited | ✔️ |
Manage Permit Lists | ✔️ | ✔️ | ✔️ | |
Manage Block Lists | ✔️ | ✔️ | ✔️ | ✔️ |
Analysis | ||||
Query Log | ✔️ | ✔️ | ✔️ | ✔️ |
Long Term Statistics | ✔️ | ✔️ | ✔️ | |
Domain Auditing | ✔️ | |||
Networking Features | ||||
Builtin DHCP | ✔️ | ✔️ | ✔️ | |
Builtin VPN* | ✔️ | |||
Builtin Firewall | ✔️ | |||
Builtin DNS DNAT Redirect** | ✔️ | |||
Security & Privacy | ||||
Self Hosted DNS Server | ✔️ | ✔️ | ✔️ | ✔️ |
No Cloud DNS Data Collection | ✔️ | ✔️ | ✔️ | 1 |
Privacy Modes | Limited | ✔️ | ||
DNS over HTTPS | ✔️ | ✔️ | ✔️ | ✔️ |
DNS Rebinding Protection | ✔️ | ✔️ | ||
HTTPS WebUI |