• What is your favorite pfBlockerNG (DNSBL + IP) feed list

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • 0 Votes
    1 Posts
    244 Views
    No one has replied
  • pfb_filter keeps stopping after pfsense update to 2.7.0

    2
    0 Votes
    2 Posts
    437 Views
    NollipfSenseN
    @ghost666 How is your RAM...have enough?
  • pfBlockerNG - macOS wifi blocks, iPadOS passes?

    2
    0 Votes
    2 Posts
    472 Views
    NollipfSenseN
    @leakin said in pfBlockerNG - macOS wifi blocks, iPadOS passes?: using the same wifi connection on an iPad, ads are not blocked... any ideas? Yes, most likely you didn't restrict and force all clients to use pfSense as DNS. Confirm that your iPad is configured to use pfSense for DNS. If you were using say YouTube app on your iPad, it's almost impossible to block ads as the ads server(s) are built-in. take a look at these: https://docs.netgate.com/pfsense/en/latest/recipes/dns-redirect.html https://docs.netgate.com/pfsense/en/latest/services/dns/index.html
  • 0 Votes
    13 Posts
    885 Views
    L
    Believe it or not, I simply rebooted the first pfSense machine (the one that manifested the "not active" pfBlocker CARP VIP after every hourly or manual forced pfB update) and lo and behold, now it actually works. The all time classic IT Crowd quote from Gary "Have you tried turning it off and on again" worked once again! I am baffled.
  • pfBlocker PHP error

    3
    0 Votes
    3 Posts
    563 Views
    J
    @Gertjan This was almost 15 hours after the install. It's not done it again, pfBlocker is on a once daily update, so hopefully it doesn't do it again.
  • rules not applied/enforced

    3
    0 Votes
    3 Posts
    458 Views
    P
    @SteveITS The "new-rules-not-applied" article you linked led me to Status > Filter Reload where I saw a loading error of pfB and adjusted a setting in the Advanced>NAT tab which fixed the problem. Thank you for this quick response.
  • pfBlocker GeoIP not up to date

    3
    0 Votes
    3 Posts
    487 Views
    R
    @michmoor oh damn, im so sorry. forget what i say... im going back to school! shame on me
  • All ProtonMail (proton.me) Sites Give NET::ERR_CERT_AUTHORITY_INVALID

    Moved
    3
    0 Votes
    3 Posts
    768 Views
    areckethennuA
    @areckethennu It's probably a bad thing to reply to myself, but I reported this to the Phishing Army list OP and he said he'd fix it shortly. So, hopefully, things will resolve themselves soon.
  • DNSBL just Work when DNS Resolver Enable

    27
    0 Votes
    27 Posts
    5k Views
    johnpozJ
    @SteveITS said in DNSBL just Work when DNS Resolver Enable: “UnKnown” is not a functional problem, you can ignore it. While technically true - If I get an unknown for the dns I am using - it points to badly managed dns... Why would there not be a PTR for everything on your network ;) If your going to setup forward zones, you might as well setup the reverse zones for the IP ranges you use on your network. pfsense makes it easy because you put in the host override, the ptr is auto there for that host, etc.
  • 0 Votes
    1 Posts
    223 Views
    No one has replied
  • [✅SOLVED] No rules or aliases created

    3
    0 Votes
    3 Posts
    566 Views
    K
    @SteveITS Got it! Thank you!! [image: 1687468681618-geo41.png] [image: 1687468690464-geoip4.png] [image: 1687468701040-geo5-fwrule.png] [image: 1687468743149-geoip6-status.png]
  • I want to block the IP addresses assigned by ISPs to general households.

    10
    0 Votes
    10 Posts
    1k Views
    johnpozJ
    @Yet_learningPFSense said in I want to block the IP addresses assigned by ISPs to general households.: I have noticed some IP addresses belonging to providers in Korea and Africa (confirmed using whois, such as *.telecom) which appear somewhat suspicious to me. Where did you notice them? The net is a noisy place - you will see noise from all over the planet hitting your wan IP.. So? They are dropped by default. If you have some port forwards open, just allow the IPs you want to allow. For example, my plex server the only thing that can talk to it are IPs from the US, and currently Morocco (since have family currently living there).. And the list of known IPs that plex uses to validate your server is available to the public.. And the known IPs that monitor if my plex is working, and notifies me if its down. Simple enough to do in pfblocker - because you can create lists based upon country (geoip data) or other Ips you want to allow - uptime robot and statuscake for example doing the monitoring provide lists of IPs they use. Or did you notice your devices connecting outbound to these weird IPs? in other countries?
  • DNSBL UT1 Category Access Denied

    1
    0 Votes
    1 Posts
    244 Views
    No one has replied
  • Custom List Only Using First IP

    7
    0 Votes
    7 Posts
    865 Views
    planedropP
    @SteveITS Hmmm I see what you mean, I'll have to see if I can duplicate this. My setup right now though is to use block lists and then I use alias lists for any allowances I am making, so I think that avoids dedup issues.
  • DNS forwarders not validating

    4
    0 Votes
    4 Posts
    2k Views
    JonathanLeeJ
    @Bartballon hello let me try to help, how is the PfSense configuration set to resolve is it going to WAN 8.8.8.8 or 1.1.1.1 or the domain controller? Do you have a host override for a proxy also? Also I found "If unbound does not start correctly after entering custom options, add server: on a line at the top of the custom options text area." Ref: https://docs.netgate.com/pfsense/en/latest/services/dns/resolver-config.html I found another post on this with a working version of what you want to do, user was asking how to make it resolve faster. Maybe this will help? https://forum.netgate.com/topic/144091/ad-domain-controller-as-local-dns-forwarding-to-pfsense/10 https://forum.netgate.com/topic/140346/forward-dns-queries-to-active-directory-dns-server/9
  • DNSBL Category could not download data

    5
    0 Votes
    5 Posts
    435 Views
    sokeadaS
    @SteveITS I've tried with two different ISP, nothing happened bro. [image: 1687319228367-a90b0839-aefc-4aa9-9dc2-16ce235bb115-image.png]
  • 0 Votes
    5 Posts
    795 Views
    C
    @Gertjan Thanks for your help :-)
  • pfBlockerNG 3.2.0_4 ?

    40
    0 Votes
    40 Posts
    8k Views
    S
    For repair -> pfSense-upgrade -d -c
  • 0 Votes
    8 Posts
    740 Views
    B
    As soon as I post that it goes back down..
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.