• suicidaleggroll@lemmy.world
    link
    fedilink
    English
    arrow-up
    17
    ·
    edit-2
    10 hours ago

    Why are you having to update your DNS records when you add a new service? Just set up a wildcard A record to send *.myserver.com to the reverse proxy and you never have to touch it again. If your DNS doesn’t let you set wildcard A records, then switch to a better DNS.

    • Scrath@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      6
      ·
      8 hours ago

      Not OP but a lot of people probably use pi-hole which doesn’t support wildcards for some inane reason

      • Croquette@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        3
        ·
        7 hours ago

        That’s my case. I send every new subdomain to my nginx IP on pi-hole and then use nginx as a reverse proxy

        • Scrath@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          6 hours ago

          That was my exact setup as well until I switched to a different router which supported both custom DNS entries and blocklists, thereby making the pi-hole redundant

          • Croquette@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            1
            ·
            2 hours ago

            I run opnsense, so I need to dump pi-hole. But I don’t have the energy right now to do that.

            Pi-Hole was pretty straightforward at the time and I did not look back since then. Annoying, but easy.

      • qjkxbmwvz@startrek.website
        link
        fedilink
        English
        arrow-up
        2
        ·
        6 hours ago

        I switched to Technitium and I’ve been pretty happy. Seems very robust, and as a bonus was easy to use it to stop DNS leaks (each upstream has a static route through a different Mullvad VPN, and since they’re queried in parallel, a VPN connection can go down without losing any DNS…maybe this is how pihole would have handled it too though).

        And of course, wildcards supported no problem.