• DNSBL and syslog

    3
    0 Votes
    3 Posts
    854 Views
    RonpfSR

    @BBcan177:

    How the pfBlockerNG Tracker ID number is created :
    Each Firewall rule for pfBlockerNG is assigned a unique Tracker Number.
    This Number can be used in a Remote syslog so that Events can be tracked by this unique Tracker Number.

    Tracker Number function is here:

    https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pfSense-pkg-pfBlockerNG/files/usr/local/pkg/pfblockerng/pfblockerng.inc#L2036

    Basically it takes the Alias Name, various Interface Information and converts this to a unique tracker number…

    All pfBlockerNG Tracker Numbers start with "177"

  • Alias rules after restore misery

    1
    0 Votes
    1 Posts
    334 Views
    No one has replied
  • Pfblocker Making On IP on LAN to skip everything pfblockers does

    2
    0 Votes
    2 Posts
    321 Views
    C

    Just had a quick look around the GUI, I think its possible but not in a one click manner.

    So pfblockerng filters via DNSBL and IP based BL.

    The latter is done solely via the firewall so modifying the firewall for that LAN ip to bypass should be possible although you may need to adjust an option in pfblockerng related to rule ordering so custom rules are processed before pfblockerng rules.

    The former is done via DNS manipulation, and that will direct blacklisted domain names to a local webserver on the firewall, so to bypass that you need to basically send back different DNS query results to the LAN ip.  This is possible via an exotic unbound configuration (similar to view statements in BIND).

  • Problem with DNSBL and Plex

    6
    0 Votes
    6 Posts
    1k Views
    RonpfSR

    @DaReaLDeviL:

    So here we go, all my settings are now like you greatly suggested but:

    I'm looking in the wrong menu? I don't have the "ip4 source definition" like you?!

    He is using development version of pfBlockerNG.

  • Creating a list for pfBlockerNG from uBlock's Logger

    13
    0 Votes
    13 Posts
    3k Views
    M

    IP6?  Or it’s querying a different domain for ads…

    I’d consider putting a trace on the port 53 traffic from that host to see what it’s looking for and where.

  • The page is displayed correctly but I can not authenticate

    3
    0 Votes
    3 Posts
    323 Views
    F

    Finally I disable the TLD, It consumes a lot of ram 8GB was quickly saturated
    thank you

  • How do I set exceptions?

    4
    0 Votes
    4 Posts
    548 Views
    B

    You may need to think about this in the opposite way. Instead of blocking, think about what countries you want to allow. You then create "alias" lists in pfBlockerNG which can be used to create your own firewall rules. 
    Depending which country list is shorter (allowed or blocked), I would start there, and remember you can always set "Invert Match" to accomplish what you want.

  • [Solved] Binary Defense banlist not updating

    7
    0 Votes
    7 Posts
    2k Views
    john_galtJ

    I just clicked the link and got this:

  • Pfblockerng php error

    1
    0 Votes
    1 Posts
    315 Views
    No one has replied
  • Where is BBcan177 ?

    4
    0 Votes
    4 Posts
    1k Views
    Y

    https://forum.pfsense.org/index.php?topic=138904.0

  • Individual message instead of 1x1 pixel

    19
    1 Votes
    19 Posts
    6k Views
    G

    What version of DNSBL will this be implemented?

  • Windows 10 Pro - Software Update IP's and Domains Needed

    7
    0 Votes
    7 Posts
    1k Views
    N

    @anttechs:

    I use these on my Pfblocker its great https://github.com/crazy-max/WindowsSpyBlocker/tree/master/data/firewall

    Confirmed, the updates are working again with the proposed list as a whitelist.

    Thanks

  • Can't whitelist Plex Mediaserver

    1
    0 Votes
    1 Posts
    369 Views
    No one has replied
  • PfblockerNG does not respect update frequency?

    5
    0 Votes
    5 Posts
    1k Views
    M

    I binned off phishtank a while back as it had a really high false-positive count.  I got fed up with it blocking genuine content…

  • [SOLVED] MAXMind NAmerica IPv4 bad data deletes entire pfSense FIlter

    4
    0 Votes
    4 Posts
    419 Views
    ?

    Solved the problem - it seems when I started looking at others peoples problems and offering suggestions I saw mine in a new light

    I had Alexa TLD exclusions selected - several of them
    I removed all exclusions and TLD is back working just fine

    Though I will be putting custom FQDN's I want to block into the proper category - DNSBL Feeds -  from now on

    To summarize - packet loss was the first issue + configuration error on my part the second

  • DNSBL not working, easylist works

    4
    0 Votes
    4 Posts
    954 Views
    ?

    Turn on Global logging, for debugging purposes, and try inbound and outbound on just the LAN for starters

    Choose the 2nd or 3rd "Rule Order" option so all your firewall pass rules are evaluated first

    pfBlockerNG rules on the WAN can complicate updates

    I prefer floating rule sets

    my 2 cents

  • How to make it stop auto-reordering my firewall rules?

    13
    0 Votes
    13 Posts
    4k Views
    ?

    Specify "Floating Rules" under general setup

  • Error - "There were error(s) loading the rules"

    2
    0 Votes
    2 Posts
    290 Views
    GertjanG

    Hi,

    Start posting here : pfSense Forum » pfSense English Support » Packages » pfBlockerNG as it seems to be a pfBlockerNG  issue.

  • PFblockerNG Block selfishnet

    1
    0 Votes
    1 Posts
    389 Views
    No one has replied
  • Multiple pbFlocker aliases per GeoIP

    6
    1 Votes
    6 Posts
    867 Views
    RonpfSR

    Well I am not running your version of pfblockerNG
    So concentrate on the infoblock under your table.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.