• pfBlockerNG and Chrome

    10
    0 Votes
    10 Posts
    1k Views
    D
    @ihavealegohead: Yes, I know about the Chrome settings, but I am more concerned with dealing with this globally, not browser by browser. Also with my IoT devices that hardwire access (e.g. 8.8.8.8 over HTTPS). It seems I've gotten rid of the last of those devices, since a floating rule I put in place to detect HTTPS connections to DNS servers is no longer getting hits. As for pfBlocker displaying a secure page: if it blocks an HTTPS page, your browser will never show it to you. The certificate in use at that moment is an internal pfBlocker cert, while the browser is expecting to see a certificate for the domain name you entered (while it is asked to show the internal pfBlocker SITE BLOCKED page). Ergo there will always be a certificate mismatch.
  • DNSBL doesn't work

    4
    0 Votes
    4 Posts
    542 Views
    GertjanG
    Actually, some thinking on my side was needed ;) @Abdulkarim said in DNSBL doesn't work: [ DNSBL FAIL ] [ Skipping : Social ]. Do you see this message in an pfBlocker 'update log' ? Doesn't this mean that the download of feed that implements social blocking failed ? Which would explain the non blocking. Can you give more info / context ?
  • Phishtank list download fail

    35
    0 Votes
    35 Posts
    2k Views
    R
    @provels Thanks, I may update the version. I know that the author recommends the devel version for a long time, but for me this always sounded too much like "beta". Cheers!
  • 0 Votes
    1 Posts
    191 Views
    No one has replied
  • High CPU from lighttp_pfd

    3
    0 Votes
    3 Posts
    197 Views
    infosamu.itI
    @provels said in High CPU from lighttp_pfd: .malwarebytes.com thank you very much! also in my case your suggestion solved the issue.
  • pfblocker on a bridge interface

    1
    0 Votes
    1 Posts
    123 Views
    No one has replied
  • pfblockerng blocking Alexa

    8
    0 Votes
    8 Posts
    1k Views
    RicoR
    You need to force reload after adding whitelist entries. Also clear the clients DNS cache. -Rico
  • Wrong geoip classification

    2
    0 Votes
    2 Posts
    205 Views
    GertjanG
    @Jack37 said in Wrong geoip classification: Is there a chance to reclassify the ip? The theory : As you might know, "pfBlockerNG" doesn't know anything about an IP and their location. The info comes from lists, like the "MaxMind GeoIP " -where you took a subscription to have access to their lists. Contact them if you want something gets changed. The reality : As said often : because the stock with IPv4 has been totally depleted, their is a real traffic of IPv4 going on. Thye are sold and bought all the time in big blocks or small chunks. This traffic is a world wide thing. It's close to impossible to trace - or keep up to date - the exact IP location. It's nice if it works - but often GEOIP info is plain wrong - and/or takes time to mute to another place. Keep in mind : with IPv6 things will get worse as just make a list == mission impossible.
  • pfBlockerNG Uninstall/Reinstall Fresh

    3
    0 Votes
    3 Posts
    589 Views
    N
    Rico...thanks for the reply. I appreciate your time in answering. Is there anything I need to do in the console such as delete files, change anything, etc.? When I chose to delete the package from the Package Manager, this is what happened, it just hangs - [image: 1605459240842-pfsense-package-manager.png] However, when I checked my dashboard, it looks like it was deleted from my system. I can't be for sure though.
  • PfBlockerNG blocking Xbox One X internet access

    Moved
    7
    0 Votes
    7 Posts
    1k Views
    stephenw10S
    Ah, so a DNS issue then? That would be unrelated to the auto firewall rule ordering you were seeing. Steve
  • Dnsbl_error.log growth rate /size

    19
    0 Votes
    19 Posts
    3k Views
    RonpfSR
    @gwaitsi Have a look at https://www.reddit.com/r/pfBlockerNG/comments/jt9k89/pfblockerng_malwarebytes_telementery_increased/
  • PFBlockerNG-Devel Fails

    2
    0 Votes
    2 Posts
    136 Views
    kiokomanK
    https://docs.netgate.com/pfsense/en/latest/troubleshooting/upgrades.html#segmentation-fault-in-pkg
  • Question about syntax of block lists

    1
    0 Votes
    1 Posts
    72 Views
    No one has replied
  • ISC_1000_30 added Google DNS 8.8.8.8

    5
    4 Votes
    5 Posts
    567 Views
    noplanN
    @Draco Thanks I like the idea of puutin win update or global dns on a whitelist Havnt come to my mind just yet Thx
  • Confused

    Moved
    7
    0 Votes
    7 Posts
    439 Views
    S
    This worked. Thanks Ron
  • few known ad sites are still accessible

    3
    0 Votes
    3 Posts
    119 Views
    S
    I add jasonhill's to a online doc and provided it as feed list.
  • Easylist

    4
    0 Votes
    4 Posts
    174 Views
    S
    Thanks both
  • DNSBL blocking Amazon app

    4
    0 Votes
    4 Posts
    2k Views
    M
    Excellent. I just re-enabled all the feeds and the whitelisting seems to be working. Thanks! Matt
  • DNSBL list unable to download

    2
    0 Votes
    2 Posts
    153 Views
    provelsP
    @sreeram I don't use it, but I suspect you're right.
  • Trying to set up a Custom Block list

    Moved
    9
    0 Votes
    9 Posts
    425 Views
    stephenw10S
    The DNS-BL VIP uses 10.10.10.1 by default. It looks like you're already using a subnet containing that so you need to change the default value there to something you're not using before it can start. Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.