I have a way to solve your problem only thing is it's going to kill your battery life.
Apps I used to have 2 "vpns"
First Insular or Shelter use one of them to create a work profile.
Apps inside of The Work Profile Exclave VPN APP of choice for example MullvadVPN
Apps outside of The Work Profile Tracker Control PersonalDNSfilter
What I did is that i configured Tracker Control to send all DNS requests to the locally running DNS service that Personal DNS Filter creates as well as telling Tracker controll to not capture trafic from Personal DNS Filter. I also then configured Personal DNS Filter to use Mullvad DNS witg DoH or DoT. Then i configured Tracker control to send all traffic to a socks5 proxy (that is created by Exclave) that way the traffic from a app goes like this.
All traffic that isn't DNS App ---> Tracker contol ---> Exclave ---> MullvadVPN
DNA traffic App ---> Tracker control ---> Personal DNS Filter ---> Mullvad DNS
Look I had this for a while and I don't recommend it due to the battery drain. Remember this setup will use 2 VPN slots run 4 services. A DNS proxy, a full socks5 and A wireguard VPN at the same time as a complete work profile. Good luck tho!
You should check out Sapio maybe someone has already checked if your banking app works!
If I don't remember wrong Android will always use your DNS config over the WG provided one so make sure to leave it blank. As for the routing I have a alternative solution that could maybe work using this app in combination with the WG tunnel. But when it comes to your current setup I suggest you try the following.
- Make sure that the IP and port of your DNS are accessible from your Phone you can use Termux if you want to ping and do a nc to do this.
- Make sure that the network that your WG connects to has its default DNS setup to be your unbound.
- Consider getting a Router that can run OpenWRT and then learn about vlans to create two networks(also 2 wifis) one for your roomates and one for you. Also you could setup WG on the OpenWRT router itself!
If you really want to solve this problem you might want to read up on routing and networking in general! I suggest you start with Wikipedia! That's atleast where I started! :D
I wish you good luck on you self hosting experience!
I just go to Ikea
This was helpfull but Its in Italian so here is the English version LINK
Can recommend KeypassDX you can download it from fdroid. It is compatible with KeepassXC
::: spoiler Anti Commercial AI thingy CC BY-NC-SA 4.0 :::
Name Checks out, let this rat participate!
Here is a Piped Link https://piped.video/watch?v=DTJbdy097m0
Bro out here saying Mass surveillance is a good alternative to good parenting....

My planed/current HarvesterHCI setup!
Hello everyone! I have been lurking here on c/selfhost for a while now and wanted to share my experience with my setup. Here is my setup:
Its an "old" enterprise Dell 630T I bought second hand. 36 Cores, 256GB DDR4 ECC RAM, and 8x 4TB HDDs.
On it i run Harvester HCI that runs two VMs one is TrueNas Scale that has full pcie passthrough to the raid card that is in IT mode for full control of the HDDs. The other VM runs a single node RKE2 cluster with Rancher installed.
I want to use the Rancher integration with Harvester to create a RKE2 cluster ontop of VMs created by Harvester. The plan is to then install a K8S CSI driver to connect a NFSv4 share from TrueNAS to harvester or the Rancher installed VM cluster.
I'm already aware this is weird setup but I wanted to start learning more about Kubernates but still have a "simple" way to set it up
How would I prove it? I don't know. Do I think it will work? Probably not. But if I have the license someone might find it when a LLM accidentally reveals that it was trained with data that is under that license, and maybe the EU does something about it. Maybe the Pirate party will make the EU do something about it? Who knows? But they are the only ones I see that are actively trying to protect all of us an our right to privacy, and for that they have my vote! 🏴☠️🇪🇺
Thank fuck for the PirateParty!🏴☠️