<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>dot -</title>
	<atom:link href="https://cyber-security.ba/tag/dot/feed/" rel="self" type="application/rss+xml" />
	<link>https://cyber-security.ba</link>
	<description>Mjesto Gdje Sigurnost Sretne Inovaciju!</description>
	<lastBuildDate>Mon, 25 May 2026 17:25:27 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://cyber-security.ba/wp-content/uploads/2024/04/Logo-mali-white.png</url>
	<title>dot -</title>
	<link>https://cyber-security.ba</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Kako instalirati AdGuard Home sa Unbound DNS na OPNsense</title>
		<link>https://cyber-security.ba/kako-instalirati-adguard-home-na-opnsense/</link>
					<comments>https://cyber-security.ba/kako-instalirati-adguard-home-na-opnsense/#respond</comments>
		
		<dc:creator><![CDATA[admin]]></dc:creator>
		<pubDate>Tue, 28 Jan 2025 20:58:30 +0000</pubDate>
				<category><![CDATA[DNS]]></category>
		<category><![CDATA[Firmware]]></category>
		<category><![CDATA[adguard]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[dot]]></category>
		<category><![CDATA[unbound]]></category>
		<guid isPermaLink="false">https://cyber-security.ba/?p=247</guid>

					<description><![CDATA[<p>U prethodnim objavama obradili smo teme o konfiguraciji&#160;DNS-over-TLS (DoT)&#160;na OPNsense-u koristeći&#160;Unbound DNS, kao i osnove&#160;AdGuard Home&#160;servisa. Danas ćemo pokazati kako instalirati AdGuard Home na OPNsense i povezati ga sa Unbound DNS-om kako bismo postigli efikasniju i sigurniju DNS infrastrukturu u vašoj mreži. Korak 1: Odluka o implementaciji AdGuard Home-a AdGuard Home možete implementirati na različite...</p>
<p>The post <a href="https://cyber-security.ba/kako-instalirati-adguard-home-na-opnsense/">Kako instalirati AdGuard Home sa Unbound DNS na OPNsense</a> first appeared on <a href="https://cyber-security.ba"></a>.</p>]]></description>
										<content:encoded><![CDATA[<p class="wp-block-paragraph">U prethodnim objavama obradili smo teme o konfiguraciji&nbsp;<strong>DNS-over-TLS (DoT)</strong>&nbsp;na OPNsense-u koristeći&nbsp;<strong>Unbound DNS</strong>, kao i osnove&nbsp;<strong>AdGuard Home</strong>&nbsp;servisa. Danas ćemo pokazati kako instalirati AdGuard Home na OPNsense i povezati ga sa Unbound DNS-om kako bismo postigli efikasniju i sigurniju DNS infrastrukturu u vašoj mreži.</p>



<p class="wp-block-paragraph"><strong>Korak 1: Odluka o implementaciji AdGuard Home-a</strong></p>



<p class="wp-block-paragraph">AdGuard Home možete implementirati na različite načine. Možete ga pokrenuti na raznim platformama poput Windows-a, Linux-a, Docker-a, ili ga ugraditi u mrežne uređaje poput firewall-ova i rutera. Ako već koristite OPNsense, možete ugraditi AdGuard Home direktno u firewall, čime ćete izbjeći dodatne tačke kvara u vašoj mreži.</p>



<p class="wp-block-paragraph">Ako preferirate pokretanje AdGuard Home-a na zasebnom uređaju, to je takođe moguće. U tom slučaju, morat ćete konfigurirati DHCP opcije na vašim klijentima da koriste interne DNS servere.</p>



<p class="wp-block-paragraph"><strong>Napomena:</strong>&nbsp;AdGuard Home filtrira DNS zahtjeve na osnovu imena domena, ali ne može spriječiti uređaje da se direktno povezuju na javne IP adrese.</p>



<p class="wp-block-paragraph"><strong>Korak 2: Topologija AdGuard Home + OPNsense</strong></p>



<p class="wp-block-paragraph">U klasičnom scenariju, vaš računar koristi eksterne DNS servere koje dobija putem DHCP-a i šalje zahtjeve preko firewall-a na javne DNS servere. Nakon što implementirate AdGuard Home, on će služiti kao posrednik između vaših klijenata i javnih DNS servera, filtrirajući neželjene zahtjeve i povećavajući sigurnost.</p>



<pre id="tw-target-text" class="wp-block-preformatted">Ovako se obrađuje klasični DNS zahtjev:<br></pre>


<div class="wp-block-image">
<figure class="aligncenter size-full is-resized"><img fetchpriority="high" decoding="async" width="372" height="217" src="https://cyber-security.ba/wp-content/uploads/2025/01/01-Topologija.png" alt="" class="wp-image-248" style="width:557px;height:auto" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/01-Topologija.png 372w, https://cyber-security.ba/wp-content/uploads/2025/01/01-Topologija-300x175.png 300w" sizes="(max-width: 372px) 100vw, 372px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 3: Dodavanje Community Repository-ja na OPNsense</strong></p>



<p class="wp-block-paragraph">AdGuard Home nije uključen u standardnu listu dostupnih plugina na OPNsense-u. Da biste proširili listu dostupnih plugina, potrebno je dodati&nbsp;<strong>Community Repository</strong>&nbsp;koji sadrži dodatne pakete.</p>



<p class="wp-block-paragraph">Prije nego što instalirate AdGuard Home plugin, morate omogućiti SSH pristup vašem OPNsense uređaju:</p>



<ol start="1" class="wp-block-list">
<li>Idite na&nbsp;<strong>System &gt; Settings &gt; Administration</strong>.</li>



<li>Skrolajte do sekcije&nbsp;<strong>Secure Shell</strong>.</li>



<li>Omogućite&nbsp;<strong>Enable Secure Shell</strong>&nbsp;i&nbsp;<strong>Permit Password Login</strong>. Ako koristite root korisnika, omogućite i&nbsp;<strong>Permit root user login</strong>.</li>



<li>Sačuvajte postavke.</li>
</ol>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img decoding="async" width="1024" height="543" src="https://cyber-security.ba/wp-content/uploads/2025/01/02-ssh-1024x543.png" alt="" class="wp-image-249" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/02-ssh-1024x543.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/02-ssh-300x159.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/02-ssh-768x407.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/02-ssh.png 1371w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Nakon toga, spojite se na OPNsense koristeći SSH klijent (npr. PuTTY). Nakon što se spojite, koristite sljedeće dvije naredbe za dodavanje Community Repository-ja:</p>



<p class="wp-block-paragraph">fetch -o /usr/local/etc/pkg/repos/mimugmail.conf https://www.routerperformance.net/mimugmail.conf</p>



<p class="wp-block-paragraph">pkg update</p>



<p class="wp-block-paragraph">Nakon što se repository uspješno doda, možete zatvoriti SSH pristup.</p>



<p class="wp-block-paragraph"><strong>Korak 4: Instalacija AdGuard Home paketa</strong></p>



<p class="wp-block-paragraph">Sada možete instalirati AdGuard Home plugin preko OPNsense web interfejsa:</p>



<ol start="1" class="wp-block-list">
<li>Idite na&nbsp;<strong>System &gt; Firmware &gt; Plugins</strong>.</li>



<li>Pronađite&nbsp;<strong>AdGuard Home</strong>&nbsp;u listi plugina.</li>



<li>Kliknite na ikonu plus za instalaciju.</li>
</ol>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img decoding="async" width="1024" height="254" src="https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin-1024x254.png" alt="" class="wp-image-250" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin-1024x254.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin-300x75.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin-768x191.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin-1536x382.png 1536w, https://cyber-security.ba/wp-content/uploads/2025/01/03-adguard-plugin.png 1855w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Nakon što se plugin instalira, osvježite stranicu i idite na&nbsp;<strong>Services &gt; Adguardhome &gt; General</strong>. Omogućite plugin označavanjem&nbsp;<strong>Enable</strong>&nbsp;i sačuvajte postavke.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="574" src="https://cyber-security.ba/wp-content/uploads/2025/01/04-adguard-firmware-1024x574.png" alt="" class="wp-image-251" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/04-adguard-firmware-1024x574.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/04-adguard-firmware-300x168.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/04-adguard-firmware-768x430.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/04-adguard-firmware.png 1208w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="868" height="377" src="https://cyber-security.ba/wp-content/uploads/2025/01/06-adguard-enable.png" alt="" class="wp-image-252" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/06-adguard-enable.png 868w, https://cyber-security.ba/wp-content/uploads/2025/01/06-adguard-enable-300x130.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/06-adguard-enable-768x334.png 768w" sizes="auto, (max-width: 868px) 100vw, 868px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" width="620" height="301" src="https://cyber-security.ba/wp-content/uploads/2025/01/07-adguard-enable-primary.png" alt="" class="wp-image-253" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/07-adguard-enable-primary.png 620w, https://cyber-security.ba/wp-content/uploads/2025/01/07-adguard-enable-primary-300x146.png 300w" sizes="auto, (max-width: 620px) 100vw, 620px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 5: Početna konfiguracija AdGuard Home-a</strong></p>



<p class="wp-block-paragraph">AdGuard Home web interfejs podrazumijevano radi na portu&nbsp;<strong>3000</strong>&nbsp;i nije omogućen HTTPS. Ako je vaš OPNsense dostupan na&nbsp;https://192.168.1.1, spojite se na&nbsp;http://192.168.1.1:3000.</p>



<p class="wp-block-paragraph">Nakon što se uspješno spojite, pojavit će vam se početni setup prozor. Kliknite na&nbsp;<strong>Get Started</strong>&nbsp;i slijedite upute za konfiguraciju:</p>



<ol start="1" class="wp-block-list">
<li>Postavite&nbsp;<strong>Listen Interface</strong>&nbsp;na LAN mreže.</li>



<li>Postavite DNS port na&nbsp;<strong>53</strong> (prethodno na Unbound DNS servisu promijeniti port na 5353).</li>



<li>Kreirajte administratorsko korisničko ime i lozinku.</li>
</ol>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="631" src="https://cyber-security.ba/wp-content/uploads/2025/01/08-adguard-config-1024x631.png" alt="" class="wp-image-254" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/08-adguard-config-1024x631.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/08-adguard-config-300x185.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/08-adguard-config-768x473.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/08-adguard-config.png 1242w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Nakon završetka setup-a, možete se prijaviti na AdGuard Home dashboard.</p>



<p class="wp-block-paragraph"><strong>Korak 6: Dodatna konfiguracija AdGuard Home-a</strong></p>



<p class="wp-block-paragraph">Nakon prijave, prvo što ćete vidjeti je prazan dashboard. Kako još niste konfigurirali klijente, nema podataka za prikaz. Ako je dostupna ažurirana verzija, preporučujemo da je prvo preuzmete.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="607" src="https://cyber-security.ba/wp-content/uploads/2025/01/09-adguard-home-1024x607.png" alt="" class="wp-image-255" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/09-adguard-home-1024x607.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/09-adguard-home-300x178.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/09-adguard-home-768x455.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/09-adguard-home.png 1421w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Konfiguracija AdGuard Home-a za korištenje Unbound DNS-a</strong></p>



<ol start="1" class="wp-block-list">
<li>Idite na&nbsp;<strong>Settings &gt; DNS settings</strong>.</li>



<li>U sekciji&nbsp;<strong>Upstream DNS servers</strong>, unesite Unbound server koji ste prethodno konfigurisali u OPNsense-u, na primjer&nbsp;192.168.1.1:5353.</li>
</ol>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="585" src="https://cyber-security.ba/wp-content/uploads/2025/01/10-upstream-1024x585.png" alt="" class="wp-image-256" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/10-upstream-1024x585.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/10-upstream-300x171.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/10-upstream-768x439.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/10-upstream.png 1217w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>

<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="662" src="https://cyber-security.ba/wp-content/uploads/2025/01/11-upstream-2-1024x662.png" alt="" class="wp-image-257" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/11-upstream-2-1024x662.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/11-upstream-2-300x194.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/11-upstream-2-768x497.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/11-upstream-2.png 1214w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Ako koristite domensko ime za razrješavanje lokalnih hostova, možda ćete morati prilagoditi i to u AdGuard Home-u.</p>



<p class="wp-block-paragraph"><strong>Korak 7: Konfiguracija Unbound DNS-a za korištenje DNS-over-TLS</strong></p>



<p class="wp-block-paragraph">U OPNsense-u idite na&nbsp;<strong>Services &gt; Unbound DNS &gt; DNS over TLS</strong>. Ovdje možete dodati javne DNS servere koji podržavaju DNS-over-TLS, poput Cloudflare-a i Quad9.</p>



<p class="wp-block-paragraph">Na primjer, za Cloudflare dodajte sljedeće:</p>



<ul class="wp-block-list">
<li><strong>Enabled:</strong>&nbsp;Čekirano/Omogućeno</li>



<li><strong>Domain:</strong>&nbsp;(ostavite prazno)</li>



<li><strong>Server IP:</strong>&nbsp;1.1.1.1</li>



<li><strong>Server port:</strong>&nbsp;853</li>



<li><strong>Verify CN:</strong>&nbsp;cloudflare-dns.com</li>
</ul>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="358" src="https://cyber-security.ba/wp-content/uploads/2025/01/12-tls-1024x358.png" alt="" class="wp-image-258" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/12-tls-1024x358.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/12-tls-300x105.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/12-tls-768x269.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/12-tls-1536x538.png 1536w, https://cyber-security.ba/wp-content/uploads/2025/01/12-tls.png 1911w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p class="has-text-align-left wp-block-paragraph">Ponovite isti postupak za dodatne DNS servere, poput Quad9:</p>



<ul class="wp-block-list">
<li><strong>Enabled:</strong>&nbsp;Čekirano/Omogućeno</li>



<li><strong>Domain:</strong>&nbsp;(ostavite prazno)</li>



<li>Server IP: 1.1.1.3</li>



<li>Server port: 853</li>



<li><strong>Verify CN:</strong>&nbsp;cloudflare-dns.com</li>
</ul>



<ul class="wp-block-list">
<li><strong>Enabled:</strong>&nbsp;Čekirano/Omogućeno</li>



<li><strong>Domain:</strong>&nbsp;(ostavite prazno)</li>



<li>Server IP: 149.112.112.112</li>



<li>Server port: 853</li>



<li>Veify CN: dns.quad9.net</li>
</ul>



<ul class="wp-block-list">
<li><strong>Enabled:</strong>&nbsp;Čekirano/Omogućeno</li>



<li><strong>Domain:</strong>&nbsp;(ostavite prazno)</li>



<li>Server IP: 9.9.9.9</li>



<li>Server port: 853</li>



<li>Veify CN: dns.quad9.net</li>
</ul>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="360" src="https://cyber-security.ba/wp-content/uploads/2025/01/13-tls-1024x360.png" alt="" class="wp-image-259" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/13-tls-1024x360.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/13-tls-300x106.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/13-tls-768x270.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/13-tls-1536x541.png 1536w, https://cyber-security.ba/wp-content/uploads/2025/01/13-tls.png 1906w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 8: Postavljanje AdGuard Home-a kao podrazumijevanog DNS resolvera</strong></p>



<p class="wp-block-paragraph">U OPNsense-u idite na&nbsp;<strong>System &gt; Settings &gt; General</strong>&nbsp;i ostavite polje za DNS servere prazno. Tako će se koristiti samo AdGuard Home.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="481" src="https://cyber-security.ba/wp-content/uploads/2025/01/14-tls-1024x481.png" alt="" class="wp-image-260" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/14-tls-1024x481.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/14-tls-300x141.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/14-tls-768x361.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/14-tls.png 1531w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Takođe, provjerite da je opcija&nbsp;<strong>Allow DNS server list to be overridden by DHCP/PPP on WAN</strong>&nbsp;onemogućena.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="304" src="https://cyber-security.ba/wp-content/uploads/2025/01/15-tls-wan-1024x304.png" alt="" class="wp-image-261" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/15-tls-wan-1024x304.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/15-tls-wan-300x89.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/15-tls-wan-768x228.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/15-tls-wan.png 1089w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 9: Konfiguracija DHCP-a za korištenje AdGuard Home-a</strong></p>



<p class="wp-block-paragraph">Idite na&nbsp;<strong>Services &gt; DHCPv4 &gt; [LAN]</strong>&nbsp;i provjerite da je polje za DNS servere prazno. Nakon ovih promjena, svi DNS zahtjevi s vaših klijenata će ići preko AdGuard Home-a.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="452" src="https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns-1024x452.png" alt="" class="wp-image-262" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns-1024x452.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns-300x132.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns-768x339.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns-1536x678.png 1536w, https://cyber-security.ba/wp-content/uploads/2025/01/16-ipv4-dns.png 1654w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 10: Testiranje klijenata</strong></p>



<p class="wp-block-paragraph">Nakon konfiguracije, vaši klijenti možda neće odmah prepoznati promjene zbog DHCP keširanja. Možete ponovo pokrenuti mrežne adaptere na klijentima kako bi primijenili nove postavke.</p>



<p class="wp-block-paragraph">Na Windows uređajima, provjerite da je opcija&nbsp;<strong>Obtain DNS server address automatically</strong>&nbsp;omogućena.</p>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="480" src="https://cyber-security.ba/wp-content/uploads/2025/01/17-windows-1024x480.png" alt="" class="wp-image-263" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/17-windows-1024x480.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/17-windows-300x141.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/17-windows-768x360.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/17-windows.png 1179w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph">Možete testirati DNS razrješavanje koristeći&nbsp;nslookup&nbsp;ili posjetom na neki od blokiranih domena, poput:&nbsp;</p>



<ul class="wp-block-list">
<li>adblock-one-protection.com</li>



<li>uvsvlisbartwq.com</li>



<li>wooden-comfort.com</li>
</ul>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="319" src="https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked-1024x319.png" alt="" class="wp-image-264" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked-1024x319.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked-300x93.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked-768x239.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked-1536x478.png 1536w, https://cyber-security.ba/wp-content/uploads/2025/01/18-blocked.png 1849w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 11: DNS leak test</strong></p>



<p class="wp-block-paragraph">Kako bismo provjerili da li naši DNS zahtjevi idu preko DNS-over-TLS-a, možemo posjetiti stranice poput&nbsp;DNSLeakTest. Ako ne vidite svoju javnu IP adresu ili Hostname  u rezultatima, to znači da je enkripcija uspješno konfigurisana:</p>



<ul class="wp-block-list">
<li><a href="https://www.dnsleaktest.com/" target="_blank" rel="noreferrer noopener">https://www.dnsleaktest.com/</a></li>
</ul>


<div class="wp-block-image">
<figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="653" src="https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1-1024x653.png" alt="" class="wp-image-266" srcset="https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1-1024x653.png 1024w, https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1-300x191.png 300w, https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1-768x490.png 768w, https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1-150x95.png 150w, https://cyber-security.ba/wp-content/uploads/2025/01/19-dns-leak-1.png 1041w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>
</div>


<p class="wp-block-paragraph"><strong>Korak 12: Konfiguracija blocklist-a u AdGuard Home-u</strong></p>



<p class="wp-block-paragraph">U AdGuard Home-u možete dodati dodatne blocklist-e za blokiranje reklama, trackera i drugih nepoželjnih sadržaja. Idite na <strong>Filters > DNS blocklists</strong> i dodajte željene liste. Također, možete konfigurisati custom filtere za dopuštanje ili blokiranje specifičnih domena.<br></p>



<h3 class="wp-block-heading"><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f4cc.png" alt="📌" class="wp-smiley" style="height: 1em; max-height: 1em;" /> UPDATE (2026): Napomene za stabilnost i održavanje sistema</h3>



<p class="wp-block-paragraph">Nakon godinu dana produkcionog rada ove kombinacije, evo nekoliko ključnih inženjerskih zapažanja za OPNsense sisteme:</p>



<ol start="1" class="wp-block-list">
<li><strong>Automatsko ažuriranje mimugmail repozitorijuma:</strong> OPNsense je u novijim verzijama promijenio način rukovanja eksternim paketima. Ako primijetite da AdGuard ne dobija ažuriranja kroz interfejs, provjerite status <code>mimugmail</code> ključa jer se URL-ovi repozitorijuma povremeno mijenjaju radi optimizacije performansi.<br></li>



<li><strong>Quad9 TLS CN ispravka:</strong> U Koraku 7, prilikom unosa Quad9 servera sa IP adresom <code>149.112.112.112</code>, u polje <em>Verify CN</em> obavezno unesite <code>dns.quad9.net</code> (u prvobitnom setupu je greškom ostao prepisan Cloudflare CN). Ako se CN (Common Name) ne poklapa sa sertifikatom, Unbound će blokirati TLS rukovanje iz bezbjednosnih razloga.<br></li>



<li><strong>Rezervni DNS (Failover):</strong> Ako se AdGuard servis iz bilo kog razloga sruši (npr. uslijed korupcije baze upita kod naglog nestanka struje), čitava mreža gubi internet. Preporuka je da se na nivou OPNsense-a podesi virtuelni IP ili skripta koja u slučaju pada AdGuard-a privremeno preusmjerava port 53 direktno na Unbound (5353) kako mreža ne bi ostala u mraku.</li>
</ol><p>The post <a href="https://cyber-security.ba/kako-instalirati-adguard-home-na-opnsense/">Kako instalirati AdGuard Home sa Unbound DNS na OPNsense</a> first appeared on <a href="https://cyber-security.ba"></a>.</p>]]></content:encoded>
					
					<wfw:commentRss>https://cyber-security.ba/kako-instalirati-adguard-home-na-opnsense/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
