Advice Request Best practices for setting up a new router: single vs multi-band SSID & firewall security level?

Please provide comments and solutions that are helpful to the author of this topic.
Is the Zero Trust client app a different app from WARP? 🙄
For Zero Trust, you need to use Cloudflare One app. Currently the situation is messy. On Windows, there's Cloudflare One app for WARP and Zero Trust. On Android, WARP and Zero Trust have different apps (1.1.1.1 for WARP, Cloudflare One for Zero Trust).

Also, MASQUE is Cloudflare developed protocol that is faster than Wireguard. If you're planning to use their app, make sure MASQUE protocol is chosen in the dashboard.
 
Last edited:
Weird, when I delete DNS line entirely, WARP fails to work. It only starts working when I enter DNS in the config. And yes, I did replace endpoint from engage.cloudflareclient.com:2408 to 162.159.192.1:2408 but it still doesn't connect without DNS field.
It connects fine for me. That's how I have been using for a long time. Not sure what's wrong on your end 🤔 Maybe conflict with something else? Just now I even tried it on the WireGuard Android app and it works here also. It's also not necessary to replace the engage cloudflare domain to an IP for this.
 
Did the logs show any errors on your side? On my end, errors still appear, but everything works as expected with no slowdowns or false positives.
I'm currently not using YogaDNS as I'm testing DoH support built-in Windows, but yeah, I too sometimes get errors with QUIC and DoH3.

If everything is working correctly for you, no reason to panic. What DNS are you using now? Did you stick with Control D, Cloudflare or something else? :)
 
Last edited:
What DNS are you using now? Did you stick with Control D, Cloudflare or something else? :)
I first switched to AdGuard Home as SeriousHoax recommended, adding all the DNS filters I had tested in YogaDNS along with Cloudflare Zero Trust DNS to compare their speeds simultaneously. I used the AdGuard DNS filter and Hagezi Pro as block lists, and everything worked as expected. However, I noticed that Control D was generally about 5ms slower than Cloudflare from my location, based on AdGuard Home's 24-hour reports. Consequently, I switched back to using Control D with Hagezi Pro DNS through YogaDNS. I may eventually move to Windows built-in settings once the YogaDNS trial period ends.
 
I first switched to AdGuard Home as SeriousHoax recommended, adding all the DNS filters I had tested in YogaDNS along with Cloudflare Zero Trust DNS to compare their speeds simultaneously. I used the AdGuard DNS filter and Hagezi Pro as block lists, and everything worked as expected. However, I noticed that Control D was generally about 5ms slower than Cloudflare from my location, based on AdGuard Home's 24-hour reports. Consequently, I switched back to using Control D with Hagezi Pro DNS through YogaDNS. I may eventually move to Windows built-in settings once the YogaDNS trial period ends.
Did Control D support ever got back to your regarding routing?

I think I'll keep using Windows built-in setting because now I have the option not to fallback to plain DNS. I only installed YogaDNS because I haven't had that option available in settings at all.
 
  • Like
Reactions: lokamoka820
Did Control D support ever got back to your regarding routing?
No, they don't, but I'm glad I don't notice any slowdowns during my daily browsing.
I think I'll keep using Windows built-in setting because now I have the option not to fallback to plain DNS. I only installed YogaDNS because I haven't had that option available in settings at all.
I'm considering using Windows' built-in settings as well, but for third-party software, I think I'll go with AdGuard Home—the option to configure multiple DNS servers in parallel is brilliant.