Interactive, step-by-step guide to building a home DNS + ad-blocking stack — Pi-hole (network-wide ad/tracker blocking) in front of Unbound (private, DNSSEC-validated recursive resolution) — with optional WireGuard VPN and Uptime Kuma monitoring blocks.
Fill in your router IP, box IP, and a couple other values once and every command on the page updates to match, with copy buttons and a saved progress checklist (stored only in your browser).
Published at a777ance.github.io/Home-Sovereign-Full-Field-Guide
via GitHub Pages (docs/index.html, deployed by .github/workflows/pages.yml).
This is a standalone companion guide — a generalized version of the setup documented in full at a777ance/localdns, adapted so anyone can point it at their own house.
This wizard builds a first working box; changing a config on a running one is a different job with its own failure modes. That per-change procedure — sync → diff → back up → validate → reload → verify the effect — lives in the reference stack's Deploy Protocol. Written for that specific box, but the phases carry over to any box built from this guide.
This repo runs on Bifrost — the
A777ance keyboard-spatial command-composition schema, active from the first token of every
session. The canonical spec lives in the public localDNS repo.