• Total outage with pfblockerng 2.1.2\. anyone else?

    3
    0 Votes
    3 Posts
    763 Views
    B
    I'm thinking it might have been a CARP / ARP issue because now it's working and I didn't change pfsense other than a few reboots.
  • Whats changed in 2.1.1_11 ? Is there a source control repo?

    2
    0 Votes
    2 Posts
    336 Views
    JailerJ
    2.1.2 is out and is supposed to have a fix for the issue. https://github.com/pfsense/FreeBSD-ports/commit/8809165ad8f3d1fccabd2766ad11a3446a5317c7 https://forum.pfsense.org/index.php?topic=137103.msg756625#msg756625
  • Infuriating Annoyances.

    4
    0 Votes
    4 Posts
    707 Views
    K
    Those things usually go haywire eventually.
  • PfBlockerNG not blocking ip address

    9
    0 Votes
    9 Posts
    2k Views
    B
    Thanks.  I missed or didn't understand that instruction at the bottom of the page.
  • Video blocked, but by what?

    2
    0 Votes
    2 Posts
    426 Views
    mtarboxM
    https://forum.pfsense.org/index.php?topic=137625.0
  • Can't get pfblockerng to block ads

    3
    0 Votes
    3 Posts
    1k Views
    U
    Thank you. It seems to have started working now by itself before I tried your suggestion. I can see many entries in the alerts page. I had initially configured the wrong time zone (nearly 12 hours difference) when setting up pfsense. Sometime later, I changed to my timezone. This was done after I configured pfblockerng. I think that may have caused some issue. @BBcan177: Goto the general tab and uncheck "Keep Settings", then uncheck "Enable pfBlockerNG" followed by a Save. This will wipe all previously downloaded files. Re check both boxes then Force Update. I did this now just to be sure. Its blocking fine after that.
  • Newbie config

    2
    0 Votes
    2 Posts
    614 Views
    BBcan177B
    You can't "Suppress" IPs for GeoIP blocked IPs… Create a "Whitelist" Alias in the IPv4 and/or v6 tab. Add the IPs that you want to allow into the Custom list at the bottom. Set the Action to "Permit Outbound" Goto the General tab and ensure that the "Rule Order" places the Permit rules above your Blocked rules..
  • When pfBlockerNG blocks a domain, does it block it's IP address?

    5
    0 Votes
    5 Posts
    718 Views
    S
    Fantastic! Thank you.
  • Rulesets

    2
    0 Votes
    2 Posts
    700 Views
    BBcan177B
    Here is a URL for the MalwareBytes hpHosts feeds:    https://www.hosts-file.net/ Feed URLs here:  https://hosts-file.net/?s=Download I would not recommend to use the  hphosts.zip feed, as that is only updated once per month… There are new malicious domains added daily, and any False positive domains will not be removed for the full month....  This also applies to the hphosts-partial Feed…  So instead use the individual Feeds for DNSBL... Hope that helps!
  • Update / cron job [Error]

    2
    0 Votes
    2 Posts
    620 Views
    BBcan177B
    When you see "Update not required", then the Feed that the pkg is downloading is already up to date, so there is no reason to re-download and re-process the same feed again….  It also shows the Remote and Local timestamps in the logs...
  • Blocking 239.255.255.250

    10
    0 Votes
    10 Posts
    3k Views
    BBcan177B
    I have had poor results with that Feed… I'd disable due to the FPs in the feed...
  • PfBlockerNG GeoIP Log Surpress?

    3
    0 Votes
    3 Posts
    1k Views
    BBcan177B
    Turn "Global logging" off… Then in the TOP20 Tab disable the Logging... Alternatively, instead of using the TOP20 tab, you can make an IPv4/6 Alias with any GeoIP combinations and configure the options as required. Click on the Blue Infoblock icons for further details.
  • New Version?

    2
    0 Votes
    2 Posts
    506 Views
    D
    That is a LEGEND.
  • Network Configuration with snort VLANs…..and PfBlocker?

    20
    0 Votes
    20 Posts
    5k Views
    BBcan177B
    Here is the PR to fix this bug… Thanks! https://github.com/pfsense/FreeBSD-ports/pull/424/files
  • Crash report on 2.4-RC

    2
    0 Votes
    2 Posts
    507 Views
    BBcan177B
    Here is the PR to fix this bug… Thanks! https://github.com/pfsense/FreeBSD-ports/pull/424/files
  • Not logging

    3
    0 Votes
    3 Posts
    884 Views
    K
    Well that actually makes sense. I wasn't making the mental distinction between the IP logging vs DNS logging. Sure enough, under alerts they are there. Alerts also shows which DNSBL list it is on too which the log file doesn't appear to show. Thanks.
  • Could not open ISO and Deny folder/Masterfile uniq check - pfB 2.1.1_10

    2
    0 Votes
    2 Posts
    541 Views
    BBcan177B
    This is addressed in the upcoming release of the package. MaxMind contains a "Represented" list of IPs for Countries. Unfortunately, MaxMind can list IPs in a GeoIP one month, but list none for the following month. The Database doesn't contain any blank dummy data to act as a placeholder. So its safe to ignore the log message as there were no IPs listed by MaxMind for those Represented GeoIPs for this specific month. The next release will create a placeholder GeoIP file for each empty represented GeoIP.
  • Question?

    3
    0 Votes
    3 Posts
    608 Views
    mtarboxM
    I saw that they appeared different. Went to the rules, then floating rules, and saw what you meant, source and destination. Thank you dok.
  • Slow DNS resolution with PfBlocker/DNSBL

    5
    0 Votes
    5 Posts
    3k Views
    ?
    I know this thread is 3+ months old, but I stumbled upon it and think I know what the issue was. I had stumbled upon this Reddit thread and added the WindowsTelemetry hostslist. After I added to a DNSBL feed and forced an update, DNS resolution slowed to a crawl. After removing it, forcing another update and then rebooting pfSense via CLI, everything was resolved.
  • ROKU Issues with pfBlockerNG (CBS All Access, PBS, CNET) not working

    22
    0 Votes
    22 Posts
    8k Views
    XentrkX
    The above solution was a false positive. It did not work.  I ended up removing the Host Overrides in DNS Resolver to get it working. However, ads are now appearing.  We'll, I am paying for the lower tier with ads. So I can live with it. Enjoying it ad free was nice while it lasted though.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.