• What is the current status of pfBlockerNG-devel?

    21
    0 Votes
    21 Posts
    4k Views
    keyserK
    @keyser So far so good :-) After the 3.1.0 upgrade my problems have all been addressed: 1: My diskspace is no longer permanently dvindeling until I’m forced to stop/start pfBlockerNG or reboot my firewall. My diskspace seems stable. Every time the Cron job runs the “lost” space during the day is returned, and it seems fine. 2: My widget is once again reflecting hits on both DNSBL and IP lists - including HTTPS hits to the DNSBL VIP So it seems this version is the golden standard going forward. Hope it makes it to release/stable version soon. Would be nice to run this version on production hardware and more speculative/beta like features once again can make it into the -devel version.
  • pfBlockerNG-devel DNSBL not working after 21.05 upgrade

    Moved
    10
    1
    6 Votes
    10 Posts
    2k Views
    W
    Fixed in pfBlockerNG-devel v3.1.0_0 CHANGELOG: ... Fix Unbound Mode logging of HTTPS domains (lighttpd regression)
  • Pfblocker not working after upgrading to Pfsense 21.05.1-RELEASE (arm)

    11
    0 Votes
    11 Posts
    2k Views
    S
    @mikej47 said in Pfblocker not working after upgrading to Pfsense 21.05.1-RELEASE (arm): Should I delete my old pfB_Africa_v4, pfB_xxx, aliases now If you're not using them I would, otherwise (I assume) they would use memory.
  • Feature Request: Export/Copy IP List

    12
    0 Votes
    12 Posts
    2k Views
    MMapplebeckM
    @bbcan177 hmm... might work... Things are complicated by the fact that I have a mix of standalone boxes(satellite offices) and HA pairs(main office and multiple data centers). I might be able to figure a way to make it work, it would be helpful if the "Disable General/IP/DNSBL tab settings sync" button were available per target if using the "Sync to host(s) defined below" option. What are your thoughts on: I might be able to do a "full" sync from Main Office #1 to Main Office #2(HA paired with Main Office #1), then use "Disable General/IP/DNSBL tab settings sync" to sync from Main Office #2 to DC1 #1, DC2 #1, DC3 #1, and Satellite 1, 2, 3, 4, 5, 6, I could then do "full" sync from DC1 #1 to DC1 #2, DC2 #1 to DC2 #2, DC3 #1 to DC3 #2 and so forth. Does that sound right? Also, can I get some clarification on the "Disable General/IP/DNSBL tab settings sync" button, am I correct in assuming that the following will/will not sync? Will not sync: /pfblockerng/pfblockerng_general.php /pfblockerng/pfblockerng_ip.php /pfblockerng/pfblockerng_dnsbl.php Will sync: /pfblockerng/pfblockerng_category.php?type=ipv4 /pfblockerng/pfblockerng_category.php?type=ipv6 /pfblockerng/pfblockerng_category.php?type=geoip /pfblockerng/pfblockerng_reputation.php /pfblockerng/pfblockerng_category.php?type=dnsbl /pfblockerng/pfblockerng_blacklist.php /pfblockerng/pfblockerng_safesearch.php If the above assumptions are correct, I may be able to make my life even easier, with even less work than my feature request would make.
  • Let's Encrypt and pfBlockerNG

    1
    2 Votes
    1 Posts
    590 Views
    No one has replied
  • pfblockerng whitelisting help

    1
    0 Votes
    1 Posts
    402 Views
    No one has replied
  • 0 Votes
    41 Posts
    4k Views
    C
    @gertjan said in Can someone help me understand why is unbound resolving foreign domains (e.g. China)? Is this normal?: Ask it ! Wow seriously thank you once more! Learned something new once again. Btw : Having unbound return "10.10.10.1", the (VIP) IP, the pfBlockerNG web server that will try to tell you that the domain is blocked ,is close to completely useless. Thanks again. I was unsure about it, so I left it as the default. Your explanation definitely cleared that up.
  • Bypassing openvpn for Prime video on Android TV device

    10
    0 Votes
    10 Posts
    2k Views
    G
    @gertjan said in Bypassing openvpn for Prime video on Android TV device: @meridium said in Bypassing openvpn for Prime video on Android TV device: I am using pfSense 2.4.5-RELEASE-p1 with pfBlockerNG-devel 3.0.0_5. You saw : pfBlockerNG v3.0.0_6 update ? If you want pfBlockerNG to' work' for some IP's, and not others, then this : (future update) Add preliminary DNSBL Group Policy configuration that will globally bypass DNSBL for the defined LA tells me that pfBlockerNG can't do want you want - for now. Policy routing 'some IP's' to have them using the WAN interface, and other using the OpenVPN cinema hd apk download interface is done without using pfBlockerNG. I've the impression this policy routing isn't set up correctly. Thnaks buddy for the great information It really help me!!
  • Pfblocker Gaming Feed?

    3
    0 Votes
    3 Posts
    857 Views
    ?
    @viktor_g thanks, I enabled & updated. It works better for other categories than my custom feeds. How ever this does not block your traditional triple AAA games and major platforms. I am eager for a good custom list. thank you.
  • Could not open ISO

    3
    0 Votes
    3 Posts
    913 Views
    A
    @steveits We created the new key with your instructions. We also changed after the key, the field: MaxMind CSV Updates. Cleared: Check to disable MaxMind CSV updates. And after updating, the download directory /usr/local/share/GeoIP/cc/ populated with files and can select the countries. Problem solved, thank you Steve!
  • MaxMind configuration to update list GeoIP

    11
    0 Votes
    11 Posts
    5k Views
    S
    @johnpoz said in MaxMind configuration to update list GeoIP: create the alias with the feeds you want to use John is correct, just wanted to note for you that this is accomplished via "Alias Native" which creates an alias without a deny rule.
  • pfBlocker not logging after 2.5.2 pfSense upgrade

    53
    1
    6 Votes
    53 Posts
    13k Views
    GertjanG
    @MG85 Here is my regex. It's more test-of-proof sample for me. I remember finding it somewhere on Reddit. ^(.+[_.-])?adse?rv(er?|ice)?s?[0-9]*[_.-] #Regex RGX1 ^(.+[_.-])?telemetry[_.-] #Regex RGX2 ^ad([sxv]?[0-9]*|system)[_.-]([^.[:space:]]+\.){1,}|[_.-]ad([sxv]?[0-9]*|system)[_.-] #test RGX3 ^adim(age|g)s?[0-9]*[_.-] #Regex RGX4 ^adtrack(er|ing)?[0-9]*[_.-] #Regex RGX5 ^advert(s|is(ing|ements?))?[0-9]*[_.-] #Regex RGX6 ^aff(iliat(es?|ion))?[_.-] #Regex RGX7 ^analytics?[_.-] #Regex RGX8 ^banners?[_.-] #Regex RGX9 ^beacons?[0-9]*[_.-] #Regex RGX10 ^count(ers?)?[0-9]*[_.-] #Regex RGX11 ^mads\. #Regex RGX12 ^pixels?[-.] #Regex RGX13 ^stat(s|istics)?[0-9]*[_.-] #Regex RGX14 Keep in mind : the ending "Space # text string" needs to be unique.
  • pfblockerNG slows network traffic and I get an error

    1
    0 Votes
    1 Posts
    207 Views
    No one has replied
  • How to Whitelist Single IP address of users in PFBLOCKER

    1
    0 Votes
    1 Posts
    235 Views
    No one has replied
  • appears to be working, but reports are empty

    1
    0 Votes
    1 Posts
    307 Views
    No one has replied
  • Logging when using IP “ALIAS DENY/PERMIT” lists

    1
    0 Votes
    1 Posts
    159 Views
    No one has replied
  • Unbound reliability goes down when using pfBlockerNG

    1
    0 Votes
    1 Posts
    205 Views
    No one has replied
  • Recommended staple IPv4, IPv6, DNSBL lists

    8
    0 Votes
    8 Posts
    2k Views
    S
    @code4food23 said in Recommended staple IPv4, IPv6, DNSBL lists: why not use both? and how can tell if they show up in rulesets There's no point in scanning for DROP packets in Snort if they were blocked by the firewall. Category emerging-drop.rules is the Spamhaus DROP list. Click the category name to open the file and it usually has a note explaining what it is.
  • Unable to Connect to Outbound IP Address

    1
    0 Votes
    1 Posts
    214 Views
    No one has replied
  • Custom DNSBL rules or Group Alias [FQDN]

    7
    0 Votes
    7 Posts
    2k Views
    N
    Alright, thanks for the help, @keyser!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.