Skip to main content


DNS4EU is a privacy-first DNS resolver by the European Union and Whalebone, available for free to all European citizens under the GDPR.

The service is anonymized and offers child protection, ad blocking, DNSSEC, IPv4, IPv6, DoH, DoT, and anycast, ensuring excellent privacy and minimal latency regardless of your location.

Your browsing data stays within the EU and is protected from cyber threats without being monetized!

joindns4.eu

#dns #browser #security #privacy #eu #europe

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

I've tried them for a while, but they are blocking some safe sites and you can't reach them in any way to ask for a reevaluation. So it forced me to disable it again.
in reply to Jos Klever Web Support

@JosKleverWebSupport hi, ask for reevaluation using this form: joindns4.eu/for-public#form

Remember that they also offer DNS endpoints with reduced filtering and disabled filtering, if you want to debug the issue yourself. ๐Ÿ™‚

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

I already did that, tried other contact forms and direct emails as well on both joindns4.eu and whalebone.io (the company behind it). I created a support ticket and waited 2 months. Nothing.
in reply to Jos Klever Web Support

@JosKleverWebSupport DNS4EU automatically blocks malicious domains discovered by National CERTs, MISP, and OSINT. It employs machine learning and heuristics to detect threats, validating them against whitelists before propagating the block to its resolvers.

If the domain remains blocked, maybe it has been compromised and they cannot accept your request: remove it from your bookmarks and find a different website (or the same website on a different domain).๐Ÿ˜‰

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

I've had 2 false positives for sites I use daily and that are 100% clean and nice. They haven't been hacked or compromised in any other way.
in reply to Jos Klever Web Support

@JosKleverWebSupport you can't possibly know, most web attacks are unnoticeable. While I strongly advice to trust the secure DNS, you can add a DNS exception in your web browser for the specific domains you belive to be false positives.

Please see: ieji.de/@LorenzoAncora/1169479โ€ฆ


you have full control: if the problem persists and you are 100% sure that the impacted domain is not malicious or compromised, the settings of Mozilla Firefox (and of other modern web browsers) feature a DNS exception list. Add the domain there and restart the browser.

For Firefox: support.mozilla.org/en-US/kb/dโ€ฆ

@raymaccarthy


in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

I can know, because I know the admins of one site and I'm the admin of the other site.

Maintaining websites is my job, including updating and protecting websites and if necessary cleaning up hacked websites. So I know these sites are clean and have been so at least for the last couple of years.

in reply to Jos Klever Web Support

@JosKleverWebSupport depending on your domain's past, two years may not be enough to get out of a permanent DNS blocklist.๐Ÿ˜…

Send me the domains in private, using the Visibility setting "Private mention", I'll check their status and eventually file a request for you.

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

Thanks, but if 1 report doesn't help, 2 reports won't help either.

I'm not using it at the moment, so I can't check the current status.

The issue is not these false positives, but the fact that they just don't respond to any channel. Than just don't publish a contact form or email addresses on your site.

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

@JosKleverWebSupport ok, I've checked the domain and it has been blocked because "the provider didn't act fast enough on SPAM abusers" and because "malware was detected on one of its pages". In fact, DNS4EU blocked it for "malicious content", meaning malware infection.

I've updated some of the online antivirus records.
If the previous conditions no longer subsist, the domains will be unblocked in the following days.๐Ÿ‘‹

in reply to Jos Klever Web Support

@JosKleverWebSupport no ๐Ÿคฃ I've simply checked a few public blocklists and antivirus sites, redo the scans to clear the old public caches results, so the domain no longer appears as compromised for now, and sent new removal requests. DNS4EU (and the other filtering DNSs) source a lot of other websites for their blocklists, which can lead to false positives. It won't be immediate, but if no longer distributes malware, the domain will be unblocked.

Let me know if you need more help.๐Ÿ‘‹

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

In that case it would be better to let me know on which site(s) you've found an issue, so I or even better the responsible admins could request the removal. Because now we still don't know if there was an issue and how we could solve it.

And again, if DNS4EU based their blocking on another list, they can simply report it back to me on my attempts to reach them.

in reply to Jos Klever Web Support

@JosKleverWebSupport you are simply a user and I couldn't verify you as a security contact or a staffer with adequate security clearance for that website/domain.

It will be unblocked when the threat is over for a while, if legally viable.๐Ÿ™‚ ๐Ÿ‘‹

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

What? You know I'm not the admin for that site, but you do make changes based on my signal and you refuse to share publicly available data because of the same reason? That's very weird.

Please make clear what role you have in this, if you are involved with DNS4EU (not as a user) and what you have done using publicly available tools.

in reply to Jos Klever Web Support

@JosKleverWebSupport I'm not special in any ways and I've already told you everything I can (see prev. message). Now, enjoy the good news.๐Ÿ™‚

This afternoon a technician at Whalebone has completed the last checks. The domain is no longer blocked in DNS4EU (and soon removed from the global blocklists of the EU, after enough time for propagation).

Please set DNS4EU Protective as your DoH DNS, clear the browser cache, restart your computer and visit that domain you love, it will appear normally.

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

You didn't tell me everything, because you are keeping the facts to yourself.

Did you remove a blocklisting? Where?

Why mention a BS reason about security clearance? For what?

Why report a false positive you can't verify, but refuse to anything?

DNS4EU apparently replies to requests again, but they didn't for months, so it will take time to restore trust.

And please don't patronize me, by giving beginner instructions. That's insulting.

in reply to Jos Klever Web Support

@JosKleverWebSupport
I can block sites on my own router. So can most ISP customers.

Why should a DNS provider automatically block sites?

ALSO Make it illegal for Browsers to by default use their own pre-decided settings instead of the LAN/Router DNS! Sure let people change it.
I change all the browsers on all the stuff to use our Router's DNS, which by default is ISP, but can be set to anything.

Abusive hijacking by Browser makers!

This entry was edited (6 days ago)
in reply to Ray McCarthy

@raymaccarthy This DNS service works like an ads/malware filter, so it should block many sites, that you don't want to load. It makes your internet safer and faster.

If you block sites your self you can only block what you already know, so you already loaded them at least once.

So you set them up as an alternative for your ISP's default servers or Cloudflare's or Google's.

in reply to Jos Klever Web Support

@JosKleverWebSupport
Yes, I get that. But I don't wish to be treated as a 9 year old!

But you can't control it or appeal? You can get lists for your own router, if you care.

in reply to Ray McCarthy

you have full control: if the problem persists and you are 100% sure that the impacted domain is not malicious or compromised, the settings of Mozilla Firefox (and of other modern web browsers) feature a DNS exception list. Add the domain there and restart the browser.

For Firefox: support.mozilla.org/en-US/kb/dโ€ฆ

@raymaccarthy

This entry was edited (6 days ago)
in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

@raymaccarthy I could also add them to my local hosts file, so there are ways to go around it, but it should work and they should respond to requests, even if they tell me why the sites will not be removed. Just totally no response at all is not good.

(and yes, I know how to check my spam folder, that's nog the issue)

in reply to Jos Klever Web Support

@JosKleverWebSupport unfortunately, I believe that the form is abused by many hackers to try and unblock malicious web domains. Unless many European citizens report the same domain as a false positive, you may not get an answer.๐Ÿ˜…

Do not edit your hosts file (it can be difficult to debug if the IP changes), use the exception list of your web browser instead, as it does not depend on a specific IP address.

@raymaccarthy

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

My requests were normal and friendly. They just don't communicate at all.

Maybe I give it another try later, but for now I'm looking for an alternative that doesn't ignore it's users completely.

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

@JosKleverWebSupport
"Do not edit your hosts file (it can be difficult to debug if the IP changes), use the exception list of your web browser instead, as it does not depend on a specific IP address."

Don't edit either of those! The Hosts file should only be used to fix bugs on your own LAN.

Add blocked sites to the router.

Absolutely never block by IP, only name.

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น :verified:
@LorenzoAncora

DNS4EU is a privacy-first DNS resolver by the European Union and Whalebone, available for free to all European citizens under the GDPR.

the same EU thatโ€™s been actively trying to use circumvent/weaken any form of encryption?

Great idea,
Iโ€™ll NOT be switching to their unencrypted DNS.
Really looks like yet another con trick for assisting EU Total surveillance of citizens.

in reply to Kerplunk

@Kerplunk DNS4EU is encrypted and the EU is only a sponsor, it is managed by 9 different companies in different European nations. Use DNS over HTTPS (DoH) or DNS over TLS (DoT), both are supported and encrypted.

Changing your DNS settings alone is not enough to hide your browsing habits from network observers, such as your Internet Service Provider (ISP), who may be subject to EU national laws. Use a VPN, so the VPN provider will be the one spying on you.๐Ÿ˜‰๐Ÿ‘‹

in reply to Lorenzo Ancora ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡ฎ๐Ÿ‡น

The problem I have is, that the EU and its members create scenarios with their "Child Protection" that does nothing (in the best case scenario) or overloads the investigating entities and creates a situation that can be dangerous for kids that need protection.

So DNS4EU already lost me there. And I don't want my browser data in the EU, I want it never stored at all.

This entry was edited (5 days ago)
โ‡ง