• 5 Posts
  • 38 Comments
Joined 2 年前
cake
Cake day: 2024年1月13日

help-circle


  • There are a couple of things that can be done. Do keep in mind that most of these require some maintenance and checking, since windows updates are notorious for re enabling stuff:

    • for windows itself, there are utilities like o&o shutup windows. This usually works quite well to go into the well hidden reg options to disable telemetry
    • another good advice is to use such tool to straight up uninstall what ships with windows that you don’t need
    • at the network level in your house, having a DNS block level service is great. Pihole and adguard come to mind. This solution is more involved and requires more time to setup, but has tremendous benefits not only on windows telemetry, but overall network telemetry
    • if you are not in the capacity to have a network level service, setting up the machine to use nextdns is another good step. It is also a DNS block level kind of solution, but works by pointing the machine to the DNS to be used system wide. Do keep in mind is certainly possible for the system in places to use hardcoded DNS and ignore your options (at network level, you can always force to reroute to your local DNS. The case of DoH is a bit more tricky)

    Hopefully this helps











  • You can use on any computer really (with network connections of course).

    I use on a minisforum PC with 2 NICs attached to it. For this solution is usually needed APs (which tends to be better in general, just more expensive). There are people that even use opnsense with proxmox (which is a VERY advanced use case) to have the machine for more things.

    One interesting detail: with opnsense you can actually have on the same machine adguard for DNS installed as a service for opnsense (and use opnsense to actually force all DNS to to there, as long is not doh, but that is a bit of a different story).