Themes / Apps / Mods Magisk Module: Disable IPv6 on boot - Google Pixel 6 Pro

Found this module and thought it might be interesting to others who want to disable IPv6:
GitHub - njallam/magisk-disable-ipv6: A Magisk module to disable IPv6 on boot.
A Magisk module to disable IPv6 on boot. Contribute to njallam/magisk-disable-ipv6 development by creating an account on GitHub.
github.com

I am not really a networking specialist but is there a particular reason why you would want to disable this?

foobar66 said:
I am not really a networking specialist but is there a particular reason why you would want to disable this?
Click to expand...
Click to collapse
to force things via ipv4 for things like dnscrypt-proxy for one, though its now handled *mostly working* directly in the later builds from here:
dnscrypt-proxy-android
Hardened dnscrypt-proxy module for Android.
git.nixnet.services
specifically:
dnscrypt-proxy-android
Hardened dnscrypt-proxy module for Android.
git.nixnet.services
without that people on (dualstack) ipv6 from their carrier (like me) would have to fiddle way more to have dnscrypt-proxy working - i.e. would have to go into APN and set from ipv6 to ipv4
also some folk use VPN's and dont like to leak via ipv6, though thats not always possible to prevent

I habitually disable IPv6 on my home network but it's worth mentioning that T-Mobile appears to use IPv6 only for 5G. It's nice to have this option for those who need it but it should be used with caution on mobile platforms.

Related

[App] DNetworkTools (WorkInProgress Release) v0.1.73 (04 Jul, 2010)

[App] DNetworkTools (WorkInProgress Release) v0.1.73 (04 Jul, 2010)
Description:
Various IP address related tools for Network Engineers. Very handy!!
Purpose:
I did not find such good tool with finger friendly interface, so thought to put together all my old windows application code in to a good interface.
Luckily found SenseSDK by Edward, worked out great, tooks me few hours to put this application. Still it is work in progress and released for testing.
All the features do work without issues.
UI Credits:
SenseSDK by Edward Boelzner (eboelzner)
Can't find source from where i got icon which i used for application
Features:
General​
Finger Friendly
Easy Interface
Open Source (Will be hosted on CodePlex)
Works on most Windows Phones
Tools​
IPv4 Conversions
IPv4 Addresses
IPv4 Subnet Calculator
IPv4 CIDR Calculator
IPv4 Wildcard Mask Calculator
IPv4 Ping Tool (little buggy)
Future Features:
Few UI Bug Fixes
Save last used IP
Export details to file
Export IP ranges
IPv6 Tools
Members can request more features
Requirements:
.Net Compact Framework 3.5
Screenshots:
Screenshots are attached
Download:
Cab file is attached
Please report bugs and feedbacks.
Version History
v0.1.73 (04 Jul, 2010)
+ First work in progress release with basic features.
Reserved-2
Reserved-3
looks interesting. will try in the morning. thanks
good application ... easy for me to conversion ip class subnet
core7x said:
good application ... easy for me to conversion ip class subnet
Click to expand...
Click to collapse
Do let me know if it works ok on your device. just need feedback, will help me to improve or enhance.
Thanks.
Maria and Josef (holy sh...t ), this is what i need for a longer time. Please hold up the good work. Special thank you for sharing this very helpfull app.
- ping tool = amazing
- ip4 conversion = working perfect
- addresses = working
- subnet calculator = all 3 are working
- cidr calculator = perfect working
- wildcard mask calculator = working perfect
- settings -> about = not working
mike2nl said:
Maria and Josef (holy sh...t ), this is what i need for a longer time. Please hold up the good work. Special thank you for sharing this very helpfull app.
- ping tool = amazing
- ip4 conversion = working perfect
- addresses = working
- subnet calculator = all 3 are working
- cidr calculator = perfect working
- wildcard mask calculator = working perfect
- settings -> about = not working
Click to expand...
Click to collapse
Thanks for feedback..
i will release next version in next few days. will be fixing few bugs i found in cidr calc which crashes when changed the mask., about screen is not coded yet, less important. .
If you have any request then do let me know.
working good, maybe need to have some ipv6 stuff
because next gen ip will be ipv6
im suggest
ipv6 ip class / unicast / multicast
ipv6 subnet calculator
maybe in the future also, mobile phone will have ipv6 tunnel client !!
so that , we can use ipv6 mobile number portability
will love it
thanks
put some network scanner, port scanner and wireless radar make it a network auditing tool like retina and netstumbler
that would be awesome!
i wish i could help in "technical" way
core7x said:
working good, maybe need to have some ipv6 stuff
because next gen ip will be ipv6
im suggest
ipv6 ip class / unicast / multicast
ipv6 subnet calculator
maybe in the future also, mobile phone will have ipv6 tunnel client !!
so that , we can use ipv6 mobile number portability
will love it
thanks
Click to expand...
Click to collapse
Thanks, IPv6 already under development, but will be ready till next few releases and when IPv4 gets stable. but surely IPv6 will be part of it, i myself need it too.
randolph2000 said:
put some network scanner, port scanner and wireless radar make it a network auditing tool like retina and netstumbler
that would be awesome!
i wish i could help in "technical" way
Click to expand...
Click to collapse
Port scanner will be part of it, but not yet developed but will be done.
Cant say about rest at this point.
Thanks.
Ping Not Working Properly
Ping only works fine for the first time. It requires application restart to make it work. I'm using HTC HD2.
Suggestion: More network commands such as TRACERT, TELNET etc.
moon1978 said:
Ping only works fine for the first time. It requires application restart to make it work. I'm using HTC HD2.
Suggestion: More network commands such as TRACERT, TELNET etc.
Click to expand...
Click to collapse
That was the bug in Ping which was identified, and will be fixed, already resolved in development, should patch it in next release.
Tracert/telnet good idea.
will try to include them in my todolist.
thanks.
great tool,
could have used such a useful tool during my aprenticeship.
settings --> exit is not working on my hd2
Sweet will try it soon my device won't install cab now.will look into it
Tried it, loved it. I always have problems calculating Class B IPs and I was hoping for one for my HD2 when I saw an Android version. I think it'll be better if there's support for IPv6 as well. Also, I used it for a while and found out the tool lagged about 1 to 2 second when switching to another menu, I'm still okay with that though.
bdeath said:
great tool,
could have used such a useful tool during my aprenticeship.
settings --> exit is not working on my hd2
Click to expand...
Click to collapse
Exit issue fixed already. thanks for informing.
bloodychaos said:
Tried it, loved it. I always have problems calculating Class B IPs and I was hoping for one for my HD2 when I saw an Android version. I think it'll be better if there's support for IPv6 as well. Also, I used it for a while and found out the tool lagged about 1 to 2 second when switching to another menu, I'm still okay with that though.
Click to expand...
Click to collapse
Yes there is a big lag sometimes but not always, will try to take a look in deep and fix/optimize it.
thanks.

Question How to block Ads in OnePlus without root!?

Suggestions other than using blockada app.
adguard, adaway VPN mode or private DNS
I am using next DNS service. It is customizable, so you can turn on or off lists, add things to white list etc.
l_mike said:
I am using next DNS service. It is customizable, so you can turn on or off lists, add things to white list etc.
Click to expand...
Click to collapse
And how to use/enroll that?
Register on nextdns.io, than you can set up which lists you want to enable. In your profile you also get address to use in private DNS option on your phone.
If you use that option all your traffic goes through nextdns, so it blocks out ads and robots on websites, but also on installed apps.
There is one disadvantage - it is free only for limited number of queries - more than enough for me, but some really heavy users may not find it enough. Nevertheless it is so worth to try if it works for you. Even so I have my devices rooted I don't yous Adblock etc, preferring nextdns.
If I helped you, you can use my referral link do register: https://nextdns.io/?from=ydnp2mzn . It doesn't cost you anything
Oh wow, thanks! Will check it out
Why do all forget the most important thing about DNS/VPN? Privacy!
All your traffic is routed over a unknown server. You have no control over your data! If you want use such a service, use your own. If you have a good router at home, you should be able to run a VPN server on it. In combination with Pi Hole, you have your own private and ad free VPN.
Mobile -> VPN -> Home -> PiHole -> Net
l_mike said:
If I helped you, you can use my referral link do register: xxx . It doesn't cost you anything
Click to expand...
Click to collapse
You pay with your privacy/data. NOTHING is "free"
PKkeys said:
Suggestions other than using blockada app.
Click to expand...
Click to collapse
You can use Adaway in VPN mode.
If you're willing to learn, have a look at setting up pihole and pivpn. I route all traffic through my setup.
PKkeys said:
Suggestions other than using blockada app.
Click to expand...
Click to collapse
when did oneplus get ads, you mean google's personalised ads. You can disable that
RheinPirat said:
You pay with your privacy/data. NOTHING is "free"
Click to expand...
Click to collapse
Actually nextdns collects nothing important I should be conserned off.
AndyC76 said:
If you're willing to learn, have a look at setting up pihole and pivpn. I route all traffic through my setup.
Click to expand...
Click to collapse
I second this. I use my pi as a plex server and pihole dns server. I LOVE it. Never found myself freaking the **** out about dns requests until I started looking at traffic statistics
Adaway rooted works a treat...
Set Private DNS to dns.adguard.com

[ROM][FP4][A13] iodéOS = LineageOS 20 + MicroG + adblocker [04/04/2023]

{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
Introduction
iodéOS is a privacy-focused operating system powered by LineageOS and based on the Android mobile platform. iodéOS aims at protecting the user's privacy with a built-in adblocker and by freeing the smartphone from snitches.
The objectives in the conception of this ROM are threefold:
To keep the stability and security level of LineageOS, by minimizing the modifications made to the system. Apart the system modifications required by the adblocker, we mainly only added a few useful options commonly found in other custom ROMs, made some cosmetic changes, modified a few default settings to prevent data leaks to Google servers.
To ease a quick adoption of this ROM by new users. We especially target users that are concerned by the protection of their privacy, but are not reluctant to still use inquisitive apps like Google ones. We thus included MicroG as well as a coherent set of default apps (all open source, with one exception), and simplified the initial setup of the system. Particularly, an initialization of MicroG has been made with GCM notifications allowed by default, a privacy-friendly network location provider (DéjàVu) pre-selected, as well as Nominatim Geocoder.
To provide a new and powerful way of blocking ads, malwares, data leaks of all kinds to many intrusive servers. We are developing an analyzer, tightly integrated into the system, that captures all DNS requests and network traffic, as well as a user interface (the iodé app). Compared to some other well-known adblockers, this has the advantages of:
Avoiding to lock the VPN for that use. You can even use another adblocker that uses VPN technology alongside our blocker.
Being independent of the kind of DNS server used by the system or set by an independent app: classical DNS on UDP port 53 or any other one, DNS over TLS (DoT), DNS over HTTPS (DoH), ..., as we capture the DNS requests before they are transmitted to the system function that emits the DNS request. What we do not support, is DoH when it is natively built into applications, i.e. when an app communicates directly with a DoH server, without asking name resolution to the system. It would require to decrypt HTTPS packets between such an app and the DoH server, which may create a big security hole.
Precisely mapping DNS requests and network packets to the Android apps that emitted (or received) them.
Deciding which apps have a filtered network usage (by default, all apps), and which ones can communicate with blacklisted servers.
Since its first versions, we added many features to the iodé blocker: several levels of protection, fine-grained control over the hosts that should be blocked or authorized, displaying statistics on a map to see the quantity of data exchanged to which countries, clearing statistics... We are actively developing the blocker, and new functionalities will be regularly added.
Features
Changes in LineageOS to prevent data leaks:
Default DNS server: Google's DNS replaced by Quad9's 'unblocked' servers in all parts of the system.
A-GPS: patches to avoid leaking personnal information like IMSI to supl server.
Captive portal login: connectivitycheck.gstatic.com replaced by captiveportal.kuketz.de for connectivity check.
Dialer: Google default option replaced by OpenStreetMap for phone number lookup.
Pre-installed apps:
We included many useful default apps, but our choice cannot suit everyone; so we added the possibility to remove them. It can be done at the end of the phone setup, or at any time by going to Parameters -> Apps & Notifications -> Preinstalled apps.
MicroG core apps: GmsCore, GsfProxy, FakeStore.
NLP backends for MicroG : DejaVuNLPBackend (default), MozillaNLPBackend, AppleNLPBackend, RadioCellsNLPBackend, Nominatim Geocoder.
App stores : FDroid (with F-Droid Privileged Extension) and Aurora Store.
Browser: our own fork of Firefox (with Qwant as default search engine, many other ones added, telemetry disabled, parts of telemetry code removed) instead of Lineage’s default browser Jelly.
SMS: QKSMS instead of Lineage's default SMS app.
Email: p≡p (Pretty Easy Privacy).
Camera: our own fork of Open Camera, with a few tweaks.
Maps/navigation: Magic Earth GPS & Navigation (the only one free but not open source).
Keyboard: OpenBoard instead of AOSP keyboard.
PDF: Pdf Viewer Plus.
Personnal notes: Carnet.
{Ad/Malware/Data leak}-blocker: iodé.
News: to keep users informed about our developments, as well as a FAQ.
Meteo: Geometric Weather.
Pre-included FDroid repository:
The apps that we tweak or develop (microG services, the browser based on Firefox, the News app, Open Camera ...) are available through a repository that we included in FDroid (check the "Apps for iodéOS" category). For this purpose and to avoid name conflicts of some apps, we also had to make a few changes in FDroid.
Useful options from other custom ROMs:
Smart charging (disables charging when a given level is reached, to protect battery health).
Fingerprint vibration toggle.
Swipe down to clear all in recent apps (Android 10 only).
Installation Instructions
To download and flash our latest build, see https://gitlab.com/iode/ota.
You can also find here direct links to the latest builds.
Supported devices
Fairphone FP3/FP3+
Fairphone FP4
Google Pixel 3
Google Pixel 4
Google Pixel 5
Google Pixel 6
Google Pixel 6a
OnePlus 9
OnePlus 9 Pro
Samsung Galaxy A5/A7 2017 (a5j17lte/a7j17lte)
Samsung Galaxy S9/S9+ (starlte/star2lte)
Samsung Galaxy Note 9 (crownlte)
Samsung S10e/S10/S10+ (beyond{0,1,2}lte)
Samsung Note 10 (d1)
Samsung Note 10+ (d2s)
Sony Xperia XA2 (pioneer)
Sony Xperia XZ1 (poplar)
Sony Xperia XZ2 (akari)
Sony Xperia XZ3 (akatsuki)
Xiaomi Mi9 (cepheus)
Teracube 2e
Xiaomi Mi 10T 5G / Mi 10T Pro 5G
Xiaomi Mi 10 Lite 5G
Sources
iodéOS: https://gitlab.com/iode/os
LineageOS: https://github.com/lineageos
device tree: https://gitlab.com/iode/os/public/devices/fairphone/device_fairphone_FP4
kernel: https://github.com/WeAreFairphone/android_kernel_fairphone_sm7225
Bug Reporting
You can post a message in this thread or (preferred) open an issue here.
Credits
LineageOS is a free, community built, aftermarket firmware distribution of android, which is designed to increase performance and reliability over stock android for your device.
All the source code for LineageOS is available in the LineageOS Github repo. If you would like to contribute to LineageOS, please visit their Wiki for more details.
This ROM would be nothing without the tremendous work made on MicroG, and all the other open source apps that we included. We are very grateful to their authors.
Contributors
Direct contributors: @iodeOS, @vince31fr
Indirect contributors (too numerous to list): All the people that contributed to the device tree, to LineageOS, and to the included open source apps.
Sponsoring
You can help in the development of this ROM by paying us a coffee here: https://paypal.me/iodeOS.
Screenshots
Downloads :
iodéOS
04/04/2023 (build 20230401):
Installation procedure: move to a fastboot script (read instructions: https://gitlab.com/iode/ota)
Blocker: improved use of blocking lists (sub-domains blocking)
FDroid: fixes an issue on apps update
LineageOS synchronized with March security patch included
All apps updated
07/02/2023 (build 20230131):
Upgrade to iodéOS 4.0 based on Android 13 / LineageOS 20
Blocker:
Improved blocking settings. You can now choose 'Standard' blocking (ads, trackers, malwares, etc) or 'Reinforced' blocking (same objective but more extensive), and then select additional categories.
The 'Porn' category has been extended to a wider 'Sensitive content' one, that also includes fake news, gambling, drugs, piracy, torrent..., with mainly child protection in mind.
The 'Extreme' category has been removed, as it is now part of the reinforced blocking.
Improved blocking lists. We merge several acknowledged and up-to-date sources, and have diversified our sources to produce more complete lists. The standard list has however been reduced a bit, to avoid as much as possible interference with apps expected behavior.
Added a new network location provider: Local NLP Backend. It is an improved version of the DéjàVu NLP backend which was already available in iodéOS. Like DéjàVu, it builds a local database connecting localizations learned from other NLP backends and apps using GPS, and mobile antennas/Wifi; but also has an active mode (not preselected) that can trigger GPS requests. To configure it: Settings -> System -> microG -> Location modules
LineageOS synchronized with January security patch included
All apps updated
New devices support: Pixel 3, 6, 6a
16/12/2022 (build 20221215):
Blocker: added multiple selection in settings / domain customization. Long-press on a domain, select several domains or all, apply actions (block all, authorize all...)
PdfViewerPlus: improved security by updating core libraries
Network settings: added a switch to disable connectivity check (and thus captive portal detection)
LineageOS synchronized with December security patch included
All apps updated
New devices support: Pixel 4 & 5, OnePlus 9 & 9 Pro
24/11/2022 (build 20221121):
The wide-angle lens now operates with the preinstalled camera app (OpenCamera)
Improvements in the blocker user interface (iodé app)
LineageOS synced with September security patch included
All apps updated
17/10/2022 (build 20221014):
Blocker:
Network blockings following their type (Wifi, mobile data, VPN) added
Default blockings definition for new apps
Personnalized recipients management improved
iodé's app access restrictions by password added
Search filters added in report and map
Display theme selection
Automatic and 'real-time' refresh of the whole app
Performance and fluidity improvements of the app
LineageOS synced with September security patch included
All apps updated
27/07/2022 (build 20220726):
SafetyNet certification activated: allows many apps, notably banking ones, to fully work
Setup wizard: the push notifications configuration page now also activates SafetyNet (fine-grained control in Settings->System->microG)
OpenCamera: the 'Use alternative flash method' in photo settings is no more necessary and can be disabled, allowing flash optimization
News app: German translations
LineageOS synced with July security patch included
All apps updated
21/07/2022 (build 20220530):
Upgrade to Android 12 / LineageOS 19.1
Setup Wizard: new page to configure push notifications through microG
Lockscreen settings: switch added to disable fingerprint unlock when screen is off
Improved German translations
Bug fixes and improvements
LineageOS synced with May security patch included
All apps updated
02/05/2022 (build 20220407):
News app reworked
Setup Wizard: new iodé introduction
iodé blocker: pull to refresh replaced by automatic refresh in report tab
Teracube 2e 2022 batch released, video playback in browser and video recording fixed
Music app : playlist crash fixed
Open Camera : crash when tapping thumbnail of a newly recorded video fixed, photos and videos now editable
LineageOS synced with March security patch
All apps updated
02/02/2022 (build 20220126): initial publicly available build of iodéOS for FP4.
Add-ons
recovery-fp4-permissive.img: as the recovery we include in the rom is securized and does not allow flashing a package not signed by us, here is a more permissive recovery that allows flashing anything. It can be started in bootloader mode, by running 'fastboot boot recovery-fp4-permissive.img'.
Hi @vince31fr and thank you for this good news.
I just install your Os, what is the difference between your privacy tool and a trackerControl or Netguard app ?
Is there a way to block all by default on your privacy tool and allow one by one ? (i used to do that with tracker Control on /e/ os).
Thanks.
vince31fr said:
Introduction
iodéOS is a privacy-focused operating system powered by LineageOS and based on the Android mobile platform. iodéOS aims at protecting the user's privacy with a built-in adblocker and by freeing the smartphone from snitches.
The objectives in the conception of this ROM are threefold:
To keep the stability and security level of LineageOS, by minimizing the modifications made to the system. Apart the system modifications required by the adblocker, we mainly only added a few useful options commonly found in other custom ROMs, made some cosmetic changes, modified a few default settings to prevent data leaks to Google servers.
To ease a quick adoption of this ROM by new users. We especially target users that are concerned by the protection of their privacy, but are not reluctant to still use inquisitive apps like Google ones. We thus included MicroG as well as a coherent set of default apps (all open source, with one exception), and simplified the initial setup of the system. Particularly, an initialization of MicroG has been made with GCM notifications allowed by default, a privacy-friendly network location provider (DéjàVu) pre-selected, as well as Nominatim Geocoder.
To provide a new and powerful way of blocking ads, malwares, data leaks of all kinds to many intrusive servers. We are developing an analyzer, tightly integrated into the system, that captures all DNS requests and network traffic, as well as a user interface (the iodé app). Compared to some other well-known adblockers, this has the advantages of:
Avoiding to lock the VPN for that use. You can even use another adblocker that uses VPN technology alongside our blocker.
Being independent of the kind of DNS server used by the system or set by an independent app: classical DNS on UDP port 53 or any other one, DNS over TLS (DoT), DNS over HTTPS (DoH), ..., as we capture the DNS requests before they are transmitted to the system function that emits the DNS request. What we do not support, is DoH when it is natively built into applications, i.e. when an app communicates directly with a DoH server, without asking name resolution to the system. It would require to decrypt HTTPS packets between such an app and the DoH server, which may create a big security hole.
Precisely mapping DNS requests and network packets to the Android apps that emitted (or received) them.
Deciding which apps have a filtered network usage (by default, all apps), and which ones can communicate with blacklisted servers.
Since its first versions, we added many features to the iodé blocker: several levels of protection, fine-grained control over the hosts that should be blocked or authorized, displaying statistics on a map to see the quantity of data exchanged to which countries, clearing statistics... We are actively developing the blocker, and new functionalities will be regularly added.
Features
Changes in LineageOS to prevent data leaks:
Default DNS server: Google's DNS replaced by Quad9's 'unblocked' servers in all parts of the system.
A-GPS: patches to avoid leaking personnal information like IMSI to supl server.
Captive portal login: connectivitycheck.gstatic.com replaced by captiveportal.kuketz.de for connectivity check.
Dialer: Google default option replaced by OpenStreetMap for phone number lookup.
Pre-installed apps:
We included many useful default apps, but our choice cannot suit everyone; so we added the possibility to remove them. It can be done at the end of the phone setup, or at any time by going to Parameters -> Apps & Notifications -> Preinstalled apps.
MicroG core apps: GmsCore, GsfProxy, FakeStore.
NLP backends for MicroG : DejaVuNLPBackend (default), MozillaNLPBackend, AppleNLPBackend, RadioCellsNLPBackend, Nominatim Geocoder.
App stores : FDroid (with F-Droid Privileged Extension) and Aurora Store.
Browser: our own fork of Firefox (with Qwant as default search engine, many other ones added, telemetry disabled, parts of telemetry code removed) instead of Lineage’s default browser Jelly.
SMS: QKSMS instead of Lineage's default SMS app.
Email: p≡p (Pretty Easy Privacy).
Camera: our own fork of Open Camera, with a few tweaks.
Maps/navigation: Magic Earth GPS & Navigation (the only one free but not open source).
Keyboard: OpenBoard instead of AOSP keyboard.
PDF: Pdf Viewer Plus.
Personnal notes: Carnet.
{Ad/Malware/Data leak}-blocker: iodé.
News: to keep users informed about our developments, as well as a FAQ.
Meteo: Geometric Weather.
Pre-included FDroid repository:
The apps that we tweak or develop (microG services, the browser based on Firefox, the News app, Open Camera ...) are available through a repository that we included in FDroid (check the "Apps for iodéOS" category). For this purpose and to avoid name conflicts of some apps, we also had to make a few changes in FDroid.
Useful options from other custom ROMs:
Smart charging (disables charging when a given level is reached, to protect battery health).
Fingerprint vibration toggle.
Swipe down to clear all in recent apps (Android 10 only).
Installation Instructions
To download and flash our latest build, see https://gitlab.com/iode/ota.
You can also find here direct links to the latest builds.
Supported devices
Teracube 2e
Fairphone FP3/FP3+
Fairphone FP4
Samsung Galaxy A5/A7 2017 (a5j17lte/a7j17lte)
Samsung Galaxy S9/S9+ (starlte/star2lte)
Samsung Galaxy Note 9 (crownlte)
Samsung S10e/S10/S10+ (beyond{0,1,2}lte)
Samsung Note 10 (d1)
Samsung Note 10+ (d2s)
Sony Xperia XA2 (pioneer)
Sony Xperia XZ1 (poplar)
Sony Xperia XZ2 (akari)
Sony Xperia XZ3 (akatsuki)
Xiaomi Mi9 (cepheus)
Xiaomi Mi 10T 5G / Mi 10T Pro 5G
Xiaomi Mi 10 Lite 5G
Sources
iodéOS: https://gitlab.com/iode/os
LineageOS: https://github.com/lineageos
device tree: https://gitlab.com/iode/os/devices/fairphone/device_fairphone_FP4
kernel: https://github.com/WeAreFairphone/android_kernel_fairphone_sm7225
Bug Reporting
You can post a message in this thread or (preferred) open an issue here.
Credits
LineageOS is a free, community built, aftermarket firmware distribution of android, which is designed to increase performance and reliability over stock android for your device.
All the source code for LineageOS is available in the LineageOS Github repo. If you would like to contribute to LineageOS, please visit their Wiki for more details.
This ROM would be nothing without the tremendous work made on MicroG, and all the other open source apps that we included. We are very grateful to their authors.
Contributors
Direct contributors: @iodeOS, @vince31fr
Indirect contributors (too numerous to list): All the people that contributed to the device tree, to LineageOS, and to the included open source apps.
Sponsoring
You can help in the development of this ROM by paying us a coffee here: https://paypal.me/iodeOS.
Screenshots
Click to expand...
Click to collapse
Very nice MOD, it is stable and fast... it has high compatibility with Open Camera and the store inside IodeOS I liked it a lot.
A944684 said:
Hi @vince31fr and thank you for this good news.
I just install your Os, what is the difference between your privacy tool and a trackerControl or Netguard app ?
Is there a way to block all by default on your privacy tool and allow one by one ? (i used to do that with tracker Control on /e/ os).
Thanks.
Click to expand...
Click to collapse
One of the main difference is that the VPN connection is not used by the iodé blocker, so you can use any external VPN provider you want. We also provide the wireguard kernel module.
Another difference is that it is integrated into the system, so there's no need to root the phone for that purpose.
By default, all blacklisted hosts are blocked. You can then have a fine-grained control over the hosts you want to block/unblock.
vince31fr said:
One of the main difference is that the VPN connection is not used by the iodé blocker, so you can use any external VPN provider you want. We also provide the wireguard kernel module.
Another difference is that it is integrated into the system, so there's no need to root the phone for that purpose.
By default, all blacklisted hosts are blocked. You can then have a fine-grained control over the hosts you want to block/unblock.
Click to expand...
Click to collapse
EDIT : Ok i have found my answers and opened a issue ticket for ungoogled chromium.
@vince31fr
I am using this for almost two weeks now, everything works great. Thank you a lot.
But I would like to pass SafetyNet, might there be official support for this in the future?
And what would be the best/easiest way for me to get it working? Do I need to root the device to install microg droidguard or are there any other ways?
vince31fr said:
fpcamera-magisk-v1.zip: Original Fairphone camera as a Magisk module. This won't necessarily be maintained...
Click to expand...
Click to collapse
Thank you for this Magisk module. However, the ultrawide camera does not work as intended: I can see the picture from this lens, but the camera does not take or save pictures. After I press the shutter button, nothing happens.
TheVelvetFog said:
Thank you for this Magisk module. However, the ultrawide camera does not work as intended: I can see the picture from this lens, but the camera does not take or save pictures. After I press the shutter button, nothing happens.
Click to expand...
Click to collapse
There are some problems indeed. I removed the module, not usable yet.
Wolf2001 said:
@vince31fr
I am using this for almost two weeks now, everything works great. Thank you a lot.
But I would like to pass SafetyNet, might there be official support for this in the future?
And what would be the best/easiest way for me to get it working? Do I need to root the device to install microg droidguard or are there any other ways?
Click to expand...
Click to collapse
I did not concentrate on passing safetynet yet, maybe later. Don't hesitate to share your findings here if you find a working method ;-) There are some magisk modules that could be tried, ...
I didn't know iodé at all - until now... Wow, what a nice ROM! I really love the approach iodé is taking...
Thank you
Just a quick question: will there be OTA updates for this beta release?
I wanted to give the promising looking iodé a try but installation fails repeatedly with
Code:
E: Signature verifcation failed
E: error 21
Install from ADB completed with status 2.
Installation aborted.
I tried both the "permissive" recovery posted here earlier AND the iode-2.3-20220126-FP4-recovery.img from https://github.com/iodeOS/ota/releases/tag/v2-FP4
I also checked the SHA256s
In recovery, I went to "Apply update from ADB", then
Code:
adb sideload iode-2.3-20220126-FP4.zip
As expected, adb finishes sideload at 47%.
With no other recoveries or iodé builds available, I am currently at the end of the road. Do you have any ideas for me?
matoq said:
I wanted to give the promising looking iodé a try but installation fails repeatedly with
Code:
E: Signature verifcation failed
E: error 21
Install from ADB completed with status 2.
Installation aborted.
I tried both the "permissive" recovery posted here earlier AND the iode-2.3-20220126-FP4-recovery.img from https://github.com/iodeOS/ota/releases/tag/v2-FP4
I also checked the SHA256s
In recovery, I went to "Apply update from ADB", then
Code:
adb sideload iode-2.3-20220126-FP4.zip
As expected, adb finishes sideload at 47%.
With no other recoveries or iodé builds available, I am currently at the end of the road. Do you have any ideas for me?
View attachment 5546665
Click to expand...
Click to collapse
silly me ... on close inspection: I was in stock recovery. a PROPER REBOOT TO RECOVERY switched me into LOS recovery and the install went fine right away.
As weird of a question as this is (since I'm asking about GAPPS on an intentionally no-GAPPS ROM) is anyone able to get this ROM working with Android Auto using this method?
microG + Android Auto fully working
This is how you can use Android Auto with microG and connect your phone with your car. Prerequisites: Android 10+ Newest microG core (https://github.com/microg/GmsCore/releases) A custom recovery to flash a zip file Let's begin: For Android...
forum.xda-developers.com
I admittedly need this for daily driving and am worried about not being able to roll back to stock
Edit: Also, how's battery life compared to stock?
@vince31fr @iodeOS
Great work! I'm looking forward to try the ROM when my FP4 arrives later this week.
It appears that the link to the device tree is dead: https://gitlab.com/iode/os/devices/fairphone/device_fairphone_FP4
Can you push it to Gitlab or is it intentionally not published yet?
Maybe some of your improvements could also be helpful to create a native LineageOS rom for the FP4.
xblax said:
@vince31fr @iodeOS
Great work! I'm looking forward to try the ROM when my FP4 arrives later this week.
It appears that the link to the device tree is dead: https://gitlab.com/iode/os/devices/fairphone/device_fairphone_FP4
Can you push it to Gitlab or is it intentionally not published yet?
Maybe some of your improvements could also be helpful to create a native LineageOS rom for the FP4.
Click to expand...
Click to collapse
Effectively we forgot to make this repo public, thanks for pointing this out. We did not make substantial improvements to the original dt (http://github.com/WeAreFairphone/android_device_fairphone_FP4, based on https://gitlab.e.foundation/e/devices/android_device_fairphone_FP4), but LineageOS should build fine.
Is there or will there be an Android 12 version of this being released?
smallz2k said:
Is there or will there be an Android 12 version of this being released?
Click to expand...
Click to collapse
There's a beta version 3.0 available:
Release v1 · vincentvidal/iode_ota
Contribute to vincentvidal/iode_ota development by creating an account on GitHub.
github.com
Does somebody know how vendor patches will be provided?
I know from Samsung devices, it is not so easy.
*** New Update : 02/05/2022 ***
Available as OTA (see OP)​

General XDA Article: Google shelves plans to add support for another private DNS standard in Android 13

https://www.xda-developers.com/android-13-native-private-dns-shelved/
February 21, 2022 8:49am Pranob Mehrotra
Google shelves plans to add support for another private DNS standard in Android 13​Android currently offers support for one private DNS standard — DNS-over-TLS (DoT). However, Google has been working on adding native support for another private DNS standard for a while. In September last year, we spotted a code change in AOSP suggesting that Google planned on adding native support for the DNS-over-HTTPS (DoH) standard in Android 13. But a recently merged commit indicates that the company might have had a change of heart.
According to the recently merged code change, Google won’t enable DoH in Android 13 by default. The commit’s description states: “DoH: Don’t enable it in T by default.” While this statement doesn’t mean that Google is completely abandoning plans to add native DoH support to Android, it does clarify that that won’t happen in Android 13 Tiramisu. At the moment, we have no further details on the matter. But we’ll make sure to let you know as soon as we learn more.
For the unaware, DoT and DoH are private DNS standards that encrypt communications between your device and the Domain Name Server (DNS). Although both standards perform the same function, DoT uses TLS (also known as SSL) to encrypt DNS traffic, while DoH uses HTTP or HTTP/2 protocols to send queries and responses instead of directly over UDP (User Data Protocol).
Both standards also use different ports, with DoT using a dedicated port for DNS traffic and DoH using port 443 — the same port that all other HTTP traffic uses. This means that all your DNS traffic blends with other HTTPS traffic when using DoH, which makes monitoring and blocking DoH queries a lot more complex. These differences give DoH a slight advantage from a privacy standpoint. For this reason, we were looking forward to getting native DoH support in Android 13. Unfortunately, we might have to wait another year for Google to add native DoH support to Android.
Thanks to XDA Recognized Developer luca020400 and Mishaal Rahman for the tip!
Click to expand...
Click to collapse
Well as long as we can still use a custom dns I think we're doing good
spart0n said:
Well as long as we can still use a custom dns I think we're doing good
Click to expand...
Click to collapse
You're missing the big picture though. Without some kind of encryption, anybody can eavesdrop on your dns lookups.
96carboard said:
You're missing the big picture though. Without some kind of encryption, anybody can eavesdrop on your dns lookups.
Click to expand...
Click to collapse
That's the whole point of DoT... DNS over TLS. Why bother with DoH when DNS over HTTPS only adds an additional layer of crap over the existing TCP stack? Don't try to solve problems by moving up in the OSI layer.
craznazn said:
That's the whole point of DoT... DNS over TLS. Why bother with DoH when DNS over HTTPS only adds an additional layer of crap over the existing TCP stack? Don't try to solve problems by moving up in the OSI layer.
Click to expand...
Click to collapse
Except for the fact that most networks intercept traffic on DNS ports, and in some cases most/all ports that are non-HTTP. Like it or not, EVERYTHING is being moved to port 443 because if you block or intercept that, it is immediately obvious that the internet is broken.
96carboard said:
Except for the fact that most networks intercept traffic on DNS ports, and in some cases most/all ports that are non-HTTP. Like it or not, EVERYTHING is being moved to port 443 because if you block or intercept that, it is immediately obvious that the internet is broken.
Click to expand...
Click to collapse
What kind of network are you on where "anybody can eavesdrop on your dns lookups."?
"Most networks" do not MITM or block DoT ports. Maybe some sketch wifi, but you have bigger problems to worry about at that point.
If an adversary blocks DoT 853/8853, no queries resolve, internet is broken.
If an adversary MITMs DoT, cert fail, internet is broken.
DoH has the added complexity of HTTP headers, allowing tracking and other privacy issues if implemented poorly.
The inventor of DNS prefers DoT over DoH,
https://twitter.com/i/web/status/1047613817541120000
Think about why big tech wants you to use DoH over DoT....
Still not sure why you would even WANT to have DNS run on the app layer instead of transport.
yeah on home network my DoT is handeled by my firewall but over mobile networks or public wifi I use DoT via custom dns in android
I think they both have a place. Many times DoT port is blocked on corporate networks, but I guess you can use something like RethinkDNS at that point. Still an interesting discussion to say the least.
craznazn said:
What kind of network are you on where "anybody can eavesdrop on your dns lookups."?
"Most networks" do not MITM or block DoT ports. Maybe some sketch wifi, but you have bigger problems to worry about at that point.
If an adversary blocks DoT 853/8853, no queries resolve, internet is broken.
If an adversary MITMs DoT, cert fail, internet is broken.
DoH has the added complexity of HTTP headers, allowing tracking and other privacy issues if implemented poorly.
The inventor of DNS prefers DoT over DoH,
https://twitter.com/i/web/status/1047613817541120000
Think about why big tech wants you to use DoH over DoT....
Still not sure why you would even WANT to have DNS run on the app layer instead of transport.
Click to expand...
Click to collapse
The fact you aren't aware is reason enough for changes in how DNS works.

Hidden Google Account + Hidden Systemadminapp in LineageOS | Privacy infiltrated?...

Is the builtin app named "Storagemanager" a hidden system administrator in LineageOS 19.1?
I ask this because in LineageOS 14.1 Storagemanager is a systemadministrator app.
In LineageOS 14.1 under > settings > apps > special app access > deviceadministrators, nothing showed up by default, but then i pressed the three dots on the top right and selected "show system", then storage manager was shown as active system administrator app.
I had the option to disable it, which i did, as i dont want ANY app to be administrator as i consider myself as the device owner being the administrator in place, no need for an app to have any such administrative permissions.
Now in LineageOS 19.1 when you navigate to > settings > apps > special app access > deviceadministrators > the three dots on the top right corner to show system apps ARE GONE.
This makes me think storage manager is a secret/hidden system administrator that cannot be disabled in lineageOS 19.1 because the three dots at the top right have been removed in 19.1 basically making it IMPOSSIBLE to the device owner to remove unwanted systemadministrator apps.
If infact storagemanager is a secret systemadministrator app, why is that so, why was the option to disable this app from being a system administrator removed??
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
Another question, in LineageOS 14.1 when i tried to open the calendar app, there was a prompt/popup saying "to use the calendar app you must add atleast one google account to your phone".
To be honest that scared me... considering that i use LineageOS purely for privacy and Google is the opposite of privacy.
That being said please keep in mind (this is very important), in LineageOS 14.1 when i opened the calendar app i was asked to add a Google account...
Here comes the things, in LineageOS 19.1 when i open the calendar app the prompt/popup says this: "before you can use the calendar app you must add atleast one calendar account".
That sounds very suspicious to me, because in 14.1 it was called google account and now in 19.1 its called callendar account, obviously my question is now... is the callendar account a google account just being called out in another way...?? If yes this is obviously a major manipulation because not naming google here will trick most likely any LineageOS user to creating a callendar account without even knowing that in reality what they just did was to create a goolge account on their privacy phone...... what sort of manipulative person would make such a nightmare come true? At this point i must ask if LineageOS even is a privacy option anymore... or has it been inflitrated by google already...
Another suspicous change i detected after switching from LineageOS 14.1 to 19.1 is that under > settings > apps > special app access > useage access, zero apps are listed, but once i pressed the three dots in the top right corner, bluetooth, media storage, nfc service, package installer, permissions controller, phone services, shell, storage manager, and systemui where ALL shown as "access to useage data = allowed". This really makes me woonder what is going on with LineageOS, what reason is there to grant all these apps access to useage data by default?? In LineageOS 14.1 there was not a single app even the system ones, that had useage data access set to allowed, infact in 14.1 all apps where set to be not allowed to access useage data. What is going on here and why??
Another change i noticed from LineageOS 14.1 to 19.1 is that under > settings > privacy, in 14.1 i was able to edit individual app permissions and enable or disable the privacy mode, in 19.1 there seems to be a new service so called "trust" which is responsible for privacy, im fine with that, however i am missing a very important privacy setting that was present in 14.1 but is not in 19.1 and that is "start on boot". On 14.1 i was able to select any specific app and deny or allow it's access to start itself on boot. Why is this important setting not present in 19.1?
In 19.1 under > settings > privacy > permissions manager, there is no option to deny apps to "start on boot".
My guess is, either 19.1 blocks all apps from starting on boot by default, or it allows it by default for all apps and there is simply no option to stop that which would be a major privacy downgrade compared to older versions...
thank you for posting this, my eyes have been opened.
Already 100+ views but only 1 comment, hmm...
Nobody knows anything?
I seriously want to get ansers to the above questions... these are real concerns to me.
My questions don't seem to get to much attention here, not even to mention a reply.
Does anyone know a forum or another place where i can ask what is written above?
I wan't answers, these are real privacy concerns!
Hmmm. I don't have answers to your specific questions. In another thread, you posted, generally, that most people don't care about your concerns. Very true. I wholeheartedly support you advocating your views; however encourage you to tread lightly if you want people to reply to you.
The only sure answer to your situation, and for me, also, is to grab the source of the rom which suits you, one without gapps, and then hire a dev to help go through the source to answer your questions. Then edit as needed and re-compile.
I am familiar enough with the process in general however don't have the skills to do it myself. LOS and its variants are probably a good place to start. I am using a vanilla build of RROS on A10 on a Oneplus8 pro. Since we have tools for A11 that is good but the tools generally aren't available for some time after a new Android release.
Your question might be asked of the Lineage devs, though I am sure they are busy and they are not forcing you to use their (free) product. There are also Linux phones available, although so far the hardware I have seen is not great.
What phone are you using? If you are serious about this, and are willing to support a dev project as above, we would have to settle on one or two similar OSes on the same Android version, and hire someone for a few days. This would be expensive. I, for one, would contribute. If we found 10 or 20 like minded people a crowdfunding page could be set up. If we did not reach the necessary amount then the money could be refunded.
To tell the truth, G keeps putting more obstacles in the way of modders and I am getting to the point where its not worth the trouble. Hopefully the hardware for Linux phones will improve.
Thoughts??
gregpilot said:
Hmmm. I don't have answers to your specific questions. In another thread, you posted, generally, that most people don't care about your concerns. Very true. I wholeheartedly support you advocating your views; however encourage you to tread lightly if you want people to reply to you.
The only sure answer to your situation, and for me, also, is to grab the source of the rom which suits you, one without gapps, and then hire a dev to help go through the source to answer your questions. Then edit as needed and re-compile.
I am familiar enough with the process in general however don't have the skills to do it myself. LOS and its variants are probably a good place to start. I am using a vanilla build of RROS on A10 on a Oneplus8 pro. Since we have tools for A11 that is good but the tools generally aren't available for some time after a new Android release.
Your question might be asked of the Lineage devs, though I am sure they are busy and they are not forcing you to use their (free) product. There are also Linux phones available, although so far the hardware I have seen is not great.
What phone are you using? If you are serious about this, and are willing to support a dev project as above, we would have to settle on one or two similar OSes on the same Android version, and hire someone for a few days. This would be expensive. I, for one, would contribute. If we found 10 or 20 like minded people a crowdfunding page could be set up. If we did not reach the necessary amount then the money could be refunded.
To tell the truth, G keeps putting more obstacles in the way of modders and I am getting to the point where its not worth the trouble. Hopefully the hardware for Linux phones will improve.
Thoughts??
Click to expand...
Click to collapse
My knownledge on programming is very limited, i would not be able to contribute to any meaningful software really. Indeed my language can quickly become not so nice when it comes to privacy, i don't like how the masses throw away their freedom.
Think about it, google chrome holds around 60% market share, then combine all chromium browsers and we are at around 90% while Firefox is at around 4%. Then think about how many people use Gmail and how many use privacy alternatives like Protonmail. Think about how many people use the standard google android os on their phone and how many have iphones and compare that to how many people use a linux phone or a custom os like lineage or graphene...
Anyone can protect their privacy, there are many great videos on youtube.
Here are some examples:
The Hated One
Creating deeply researched and well-sourced essays critiquing some of the most important issues of our time in a non-partisan, non-sectarian way. Mass surveillance is a backdoor into freedom of speech. Knowledge is power. And power corrupts. https://twitter.com/The_HatedOne_...
yewtu.be
Rob Braxman Tech
I'm the Internet Privacy Guy. I'm a public interest hacker and technologist. I use my extensive knowledge of cybersecurity and tech to serve the public good. I care about privacy. I warn you of digital manipulation, disinformation, mass surveillance. I also discuss alternative communication...
yewtu.be
Techlore
Techlore was built to prove privacy & security are not just achievable - but simple and accessible. We manage several projects, communities, and content to spread privacy & security to the masses. Visit our Website: https://techlore.tech
yewtu.be
Mental Outlaw
Only cool people visit https://based.win/
yewtu.be
Naomi Brockwell: NBTV
www.nbtv.media NBTV teaches people how to reclaim control of their lives in the digital age. We give people the tools they need to take back their data, money, and free online expression. - Your Money - Your Data - Your Life Empower Yourself. Created and hosted by Naomi Brockwell Our...
yewtu.be
Louis Rossmann
I discuss random things of interest to me. This is, and always will be, my personal variety show. I teach Macbook component level logic board repair from a common sense, everyman's perspective. I try to make it seem viable, and entertaining. I also go over business concepts & philosophy that...
yewtu.be
The Linux Experiment
Making Linux accessible: no techno lingo, no super technical content. Just Linux desktop news, simple tutorials, application spotlights, and opinion pieces trying to stay positive, without gatekeeping. 👏 SUPPORT THE CHANNEL: Get access to a weekly podcast, vote on the next topics I cover, and...
yewtu.be
I use yewtu.be over youtube.com to avoid google.
See, google chrome and google search know all of your browsing history, there is no privacy, they make a profile of everyone who uses any of their services. Even if you use google without an account chances are they can identify you and your device. Same with gmail... it reads (scans) all of your emails and sell the content to adverstisers. I don't know how people can be ****** enough to use these services when you can simply switch to alternatives that are working perfectly flawless and don't spy on you.
Privacy can be easy.
Instead of google chrome > Firefox or even better Librewolf
Instead of google search > brave search or duckduckgo
Instead of gmail > protonmail
Instead of google android > lineage or graphene
It's not that hard...
Nobody forced me to use lineageos obviously i installed it on my own, i don't like the changes from 14.1 to 19.1 as they seem very suspicious to me, but i will still preffer LOS at any time over the standard google crap.
Before using a google phone id rather not use a phone at all.
Speaking about phones, people who buy iphones have lost their mind, i mean it.
My phone is a samsung S7, as long as it is functional i will not buy a new phone, besides i don't have the money now... your suggestion sounds interesting but i'm not into that really.
In the mean time i will repeat what you said, we can only wait for linux phones to support modern hardware and get one of those in the future.
GrapheneOS seems like the best choice as of now but it's really ironic that it works only on google pixel phones...
Most people don't care that they are been spied on. They are after the they easy life. Want all the mod cons to make things easier. Unfortunately you can't change peoples habits. Have started seen a lot of custom rooms with suspicious files, that makes a person wonder if google is paying the devs to include their software.
ShaunSmit said:
Most people don't care that they are been spied on
Click to expand...
Click to collapse
Well, plenty of people do. For example, just see XDA's thread for FairEmail:
https://forum.xda-developers.com/t/...en-source-privacy-oriented-email-app.3824168/
Privacydroid said:
builtin app named "Storagemanager" a hidden system administrator in LineageOS 19.1?
Click to expand...
Click to collapse
Privacydroid said:
My questions don't seem to get to much attention here
Click to expand...
Click to collapse
Well, I am interested in and have subscribed to this topic... it's just that LOS19 is still not really a hot topic for me yet (still fighting with LOS18, lol).
SigmundDroid said:
Well, plenty of people do. For example, just see XDA's thread for FairEmail:
https://forum.xda-developers.com/t/...en-source-privacy-oriented-email-app.3824168/
Well, I am interested in and have subscribed to this topic... it's just that LOS19 is still not really a hot topic for me yet (still fighting with LOS18, lol).
Click to expand...
Click to collapse
My bet lineage 1.18 is also affected by what i described above.
there might be some privacy oriented custom roms. have you checked ?
e Foundation - deGoogled unGoogled smartphone operating systems and online services - your data is your data
your data is YOUR data
e.foundation
or
Purism– Librem 5
Introducing the – Librem 5 by Purism
puri.sm
Fytdyh said:
there might be some privacy oriented custom roms. have you checked ?
e Foundation - deGoogled unGoogled smartphone operating systems and online services - your data is your data
your data is YOUR data
e.foundation
or
Purism– Librem 5
Introducing the – Librem 5 by Purism
puri.sm
Click to expand...
Click to collapse
Never heared about https://e.foundation/ will have a look at that one.
The librem 5 has outdated hardware and is expensive, but that's not the problem... the shipping times are totally ******. Can take years for you to ever recive that phone.
Besides, that doesn't anser any of my above questions about LOS, guess that wasn't your intention anyways.
Privacydroid said:
Never heared about https://e.foundation/ will have a look at that one.
The librem 5 has outdated hardware and is expensive, but that's not the problem... the shipping times are totally ******. Can take years for you to ever recive that phone.
Besides, that doesn't anser any of my above questions about LOS, guess that wasn't your intention anyways.
Click to expand...
Click to collapse
about your privacy related inquiries, i recon that Lineage, while it used to stand for privacy in the first years, it started to be seen more as a way to get updates on no longer supported devices. and given that almost every user that uses lineage also had flashed gapps, makes sense for them to add gapps in their everyday custom rom as well. Google has its sets of downsides and upsides. Privacy is good, but functionality is more important. a lot of good apps rely on google implemented functionality. Say that i would need to drive around the country. Privacy is my preference, but i need a fully functional bugless waze. Waze without google play services is a mess, if you get it working. Android Auto without gapps isnt possible.
For my devices, at least, Lineage did not have gapps baked in. For me, a good thing. There are a few vanilla roms left out there. Even without gapps, there are still leaks to google (the captive portal connectivity check, for one) but the footprint is much smaller.
For me, I have found open source alternatives to ALL of googles bloat and spyware. Not as convienient, sure. Pain in the a** sometimes, yes. Wayze? Host your own cameras, use openstreetmap (osmand) instead. google has made it very convienient with their ecosystem. I, for one, do not wish to share my life with them.
Fytdyh said:
about your privacy related inquiries, i recon that Lineage, while it used to stand for privacy in the first years, it started to be seen more as a way to get updates on no longer supported devices. and given that almost every user that uses lineage also had flashed gapps, makes sense for them to add gapps in their everyday custom rom as well. Google has its sets of downsides and upsides. Privacy is good, but functionality is more important. a lot of good apps rely on google implemented functionality. Say that i would need to drive around the country. Privacy is my preference, but i need a fully functional bugless waze. Waze without google play services is a mess, if you get it working. Android Auto without gapps isnt possible.
Click to expand...
Click to collapse
No idea why people use gapps or microg, it's anti privacy so i do not ever use any of that.
I do not use any google services in my life and i don't miss them or need them for anything, i have alternatives.
I have to disagree on this phrase "Privacy is good, but functionality is more important".
If you are forced to give up privacy to use a service or product then the service or product is not worth being used.
Privacy is way more important than functionality, besides 90% of the time you can find perfectly working privacy friendly alternatives for almost anything.
Instead of google maps for example i use these:
Map at DuckDuckGo
DuckDuckGo. Privacy, Simplified.
duckduckgo.com
OpenStreetMap
OpenStreetMap is a map of the world, created by people like you and free to use under an open license.
www.openstreetmap.org
Not sure if that is helpful while driving, would be fine for me, never heared about waze.
I banned Google of my life and im happy with that, wasn't that hard after all.
gregpilot said:
For my devices, at least, Lineage did not have gapps baked in. For me, a good thing. There are a few vanilla roms left out there. Even without gapps, there are still leaks to google (the captive portal connectivity check, for one) but the footprint is much smaller.
For me, I have found open source alternatives to ALL of googles bloat and spyware. Not as convienient, sure. Pain in the a** sometimes, yes. Wayze? Host your own cameras, use openstreetmap (osmand) instead. google has made it very convienient with their ecosystem. I, for one, do not wish to share my life with them.
Click to expand...
Click to collapse
My lineage version also doesn't have gapps in it, atleast nothing that is visible or accessable to me..
Not sure about the calendar thing described above..
What do you mean by captive portal connectivity check, what's that?
I beleve LOS uses Googls SUPL Server's too.
Great to meet someone with the same mindset, way to many people throw away their privacy which is equal to freedom, for "convienience"... It's crazy.
What do you mean by captive portal connectivity check, what's that?
I beleve LOS uses Googls SUPL Server's too.
Click to expand...
Click to collapse
Every time your device makes a network connection (wifi or cellular) it pings "connectivitycheck.gstatic.com". Not really a ping, its a http request to check for internet connectivity. Successful completion will remove the "x" by the wifi and/or cell data icon. Although if the address is blocked on your router the "x" will remain, and your device will complain about not having internet access....but it does! (so long as your wifi router/cell net has access). But wifi calling won't work.
For more, go here:
https://forum.xda-developers.com/t/guide-how-to-avoid-the-captive-portal-checkin-to-google.3927561/
You can host your own check server, or....just disable the check.
I have confirmed this works on A9 and A10 AOSP roms. There are different variants of this command for different roms. You may have to try several of them.
From an adb shell: (needs root)
Code:
:/ # settings put global captive_portal_mode 0
***********THIS DISABLES GOOGLE CONN CHECK***** A9 and 10
To verify it is disabled:
Code:
:/ # settings list global | grep portal
Should return "captive_portal_mode=0"
If you do connect to a captive portal page (public wifi, open connection) where the owner wants a login cred then the side effect of this is that it won't work.
The issue is that everytime the check is run, google will get your IP address and browser/OS and can infer your coarse location even if location services are turned off. I have all google domains blocked on my wifi so to keep my wife happy I disable the check on her phone also so she does not get the "no internet" notification.
Another hole is the agps (assisted gps) database downloaded from google or your phone carrier regardless of enabled location. I believe you can edit the server which is contacted, again, will require root.
This post says you can edit the gps.conf file:
https://forum.xda-developers.com/t/a-gps-supl-protocol-and-privacy-breaching.3602863/
Anyone try that? What abour removing "supl" from the apn type?
But I'm not there, yet, I usually have location selected off. Rob Braxman has a good vid here, use freetube:
https://github.com/FreeTubeApp/FreeTube
https://www.youtube.com/watch?v=vbBkZ-MROEk?
Again as stated earlier the best fix is to find a AOSP source of a rom you like, edit (or hire a dev) to edit out all of the bloat and google tracking which may remain, and re-compile.
gregpilot said:
Every time your device makes a network connection (wifi or cellular) it pings "connectivitycheck.gstatic.com". Not really a ping, its a http request to check for internet connectivity. Successful completion will remove the "x" by the wifi and/or cell data icon. Although if the address is blocked on your router the "x" will remain, and your device will complain about not having internet access....but it does! (so long as your wifi router/cell net has access). But wifi calling won't work.
For more, go here:
https://forum.xda-developers.com/t/guide-how-to-avoid-the-captive-portal-checkin-to-google.3927561/
You can host your own check server, or....just disable the check.
I have confirmed this works on A9 and A10 AOSP roms. There are different variants of this command for different roms. You may have to try several of them.
From an adb shell: (needs root)
Code:
:/ # settings put global captive_portal_mode 0
***********THIS DISABLES GOOGLE CONN CHECK***** A9 and 10
To verify it is disabled:
Code:
:/ # settings list global | grep portal
Should return "captive_portal_mode=0"
If you do connect to a captive portal page (public wifi, open connection) where the owner wants a login cred then the side effect of this is that it won't work.
The issue is that everytime the check is run, google will get your IP address and browser/OS and can infer your coarse location even if location services are turned off. I have all google domains blocked on my wifi so to keep my wife happy I disable the check on her phone also so she does not get the "no internet" notification.
Another hole is the agps (assisted gps) database downloaded from google or your phone carrier regardless of enabled location. I believe you can edit the server which is contacted, again, will require root.
This post says you can edit the gps.conf file:
https://forum.xda-developers.com/t/a-gps-supl-protocol-and-privacy-breaching.3602863/
Anyone try that? What abour removing "supl" from the apn type?
But I'm not there, yet, I usually have location selected off. Rob Braxman has a good vid here, use freetube:
https://github.com/FreeTubeApp/FreeTube
https://www.youtube.com/watch?v=vbBkZ-MROEk?
Again as stated earlier the best fix is to find a AOSP source of a rom you like, edit (or hire a dev) to edit out all of the bloat and google tracking which may remain, and re-compile.
Click to expand...
Click to collapse
Thank you for this interesting reply, i will attempt to remove captive portal connectivity check / connectivitycheck.gstatic.com with adb by following your provided command
settings put global captive_portal_mode 0
settings list global | grep portal
However you mentioned this needs root, my device is not root so this basically wont work without root?
I could use magisk for rooting.
Rob Braxman is great, watching all of his content. But i couldn't find any instructions to disable googles SUPL.
I also don't think rob has a video for captive portal connectivity check, or does he?
From my experience with his videos he acts as if degoogled phones with lineage are 90% better than normal phones, so i guess the other 10% are things like SUPL and captive portal connectivity check which are not that easy to disable..? If google knows my locations on a degoogled device with lineageos by using captive portal connectivity check then hell, that#äs really disturbing i had no idea that they still know where my phone is / where i am, very scary...
However you mentioned this needs root, my device is not root so this basically wont work without root?
Click to expand...
Click to collapse
Yes, the command needs root. Also there are some differences based on your version of Android.
The following is old, but has some good stuff:
https://www.reddit.com/r/privacy/comments/cldrym
The biggest help for this is to not install google services, and use a vanilla rom without it.
As far as captive portal, that is fixable.
The DNS servers can be changed from googles, but it is less straightforward.
NLP is not present without gapps, from what I have read
The SUPL issue, for me, is a WIP. I will happily deal with slow GPS TTFF. What I don't know:
1. Editing (removing) the supl entry in the APN file, what affect, if any;
2. Editing /vendor/etc/gps.conf (newer roms have the file in /vendor) to show a non g server;
3. the big question, which GPS radio chips may or may not have SUPL on the hardware level and therefore, if so, we are unable to fix.
gregpilot said:
Yes, the command needs root. Also there are some differences based on your version of Android.
The following is old, but has some good stuff:
https://www.reddit.com/r/privacy/comments/cldrym
The biggest help for this is to not install google services, and use a vanilla rom without it.
As far as captive portal, that is fixable.
The DNS servers can be changed from googles, but it is less straightforward.
NLP is not present without gapps, from what I have read
The SUPL issue, for me, is a WIP. I will happily deal with slow GPS TTFF. What I don't know:
1. Editing (removing) the supl entry in the APN file, what affect, if any;
2. Editing /vendor/etc/gps.conf (newer roms have the file in /vendor) to show a non g server;
3. the big question, which GPS radio chips may or may not have SUPL on the hardware level and therefore, if so, we are unable to fix.
Click to expand...
Click to collapse
I just tried using your solution for the onnectivitycheck.gstatic.com issue by using the provided command
:/ # settings put global captive_portal_mode 0
Before i that i rooted the phone with magisk, the command did not work (i attempted executing the command on cmd in windows inside the adb/fastboot folder, usb drivers are also installed.
I was able to start the daemon by using adb devices but the command you provided didn't work.
The phone was booted normally during the test, maybe i should instead go to downloadmode or recovery mode? The link you send for more instructions says we should use a cmd app on the phone to exectue this command (a pc is not mentioned), however i don't find any cmd app on the phone (lineageos 19.1).
Privacydroid said:
I just tried using your solution for the onnectivitycheck.gstatic.com issue by using the provided command
:/ # settings put global captive_portal_mode 0
Before i that i rooted the phone with magisk, the command did not work (i attempted executing the command on cmd in windows inside the adb/fastboot folder, usb drivers are also installed.
I was able to start the daemon by using adb devices but the command you provided didn't work.
The phone was booted normally during the test, maybe i should instead go to downloadmode or recovery mode? The link you send for more instructions says we should use a cmd app on the phone to exectue this command (a pc is not mentioned), however i don't find any cmd app on the phone (lineageos 19.1).
Click to expand...
Click to collapse
No, the command is made from a root shell on the phone directly, or through an adb shell.
First:
open a cmd window on your pc, cd to your adb folder. Do you have "minimal adb and fastboot" installed on your pc? Its on the forums here.
Plug in your phone to USB, do not boot to recovery or download mode. Just the normal system.
From the open cmd window, issue "adb devices". What appears?
If "unauthorized", you have to enable adb debugging in developer options. You have that enabled, right? If you do you will get a prompt on the phone to allow adb debugging access when you connect over USB.
If you get "device XXXXX", I do not recall the number of characters, then you can proceed.
issue "adb shell"
you should get a shell prompt (your phone cmd shell)
Issue "su"
If you are rooted magisk may prompt you to allow root
issue "whoami", this has to return "root".
Then issue the command I gave you. " settings put global captive_portal_mode 0"
The second string "settings list global | grep portal" is only to verify the success of the first command.
You don't need adb for this, you can also enable the "local terminal" in developer options. Or use your favorite terminal. I like Termux.
Open the terminal from your app drawer
issue "su"
Again, you should get a magisk prompt requesting permissions, allow it
issue "whoami" , verify root
then issue the same two commands.
What version of Android are you on?

Categories

Resources