Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Not updating dnsbl list

    Scheduled Pinned Locked Moved pfBlockerNG
    16 Posts 4 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      omethe
      last edited by omethe

      Hi,

      I have a small custom dnsbl list hosted on an internal web server. It's got 4 lines in it (all unrelated domains, no subdomains) ie;

      a.com
      b.com
      c.com
      d.com

      I've got the list set to update every hour and everything else seems correct.

      When I force an update it only sees 2 entries;

      [ xyz ] Reload . completed ..

      Orig. Unique # Dups # White # TOP1M Final

      2 2 0 0 0 2

      Why is pfblocker only grabbing 2 entries, and why isn't a force update grabbing all entries in the list. I can see all entries if I open the file in a browser.

      I've probably done something wrong, but I'm not sure.

      Many thanks! :)

      O 1 Reply Last reply Reply Quote 0
      • O
        omethe @omethe
        last edited by

        I tried taking all entries out of the file, forced an update, and it still shows 2 entries. Not sure what i'm doing wrong.

        BBcan177B 1 Reply Last reply Reply Quote 0
        • BBcan177B
          BBcan177 Moderator @omethe
          last edited by

          @omethe Try this patch. Am working on the next version... Thanks!

          curl -o /usr/local/pkg/pfblockerng/pfblockerng.inc "https://gist.githubusercontent.com/BBcan177/b735258a1267995046aab45aeaedc210/raw"
          

          "Experience is something you don't get until just after you need it."

          Website: http://pfBlockerNG.com
          Twitter: @BBcan177  #pfBlockerNG
          Reddit: https://www.reddit.com/r/pfBlockerNG/new/

          O 1 Reply Last reply Reply Quote 0
          • O
            omethe @BBcan177
            last edited by

            @bbcan177 thanks for that. I ran the command, rebooted, but it still doesn't update the list.

            One thing I did try was to change the Header/Label, once I did that and reran the force update it grabbed all the entries. But from then on didn't update the list once I added new entries to the list.

            BBcan177B 1 Reply Last reply Reply Quote 0
            • BBcan177B
              BBcan177 Moderator @omethe
              last edited by

              @omethe how is the file end of line character formatted? Try to use notepad++ or similar file editor to see the line endings.

              "Experience is something you don't get until just after you need it."

              Website: http://pfBlockerNG.com
              Twitter: @BBcan177  #pfBlockerNG
              Reddit: https://www.reddit.com/r/pfBlockerNG/new/

              O 1 Reply Last reply Reply Quote 0
              • O
                omethe @BBcan177
                last edited by omethe

                @bbcan177 I wrote the file in vi on the pfsense apache server, in notepad++ all lines have [LF] as the EOL character.

                lf.png

                BBcan177B 1 Reply Last reply Reply Quote 0
                • BBcan177B
                  BBcan177 Moderator @omethe
                  last edited by

                  @omethe what folder did you save the file? Try to click save on the DNSBL Group page and see if there were errors. Files on the pfSense box can only be saved to/usr/local/www or /var/db/pfblockerng

                  "Experience is something you don't get until just after you need it."

                  Website: http://pfBlockerNG.com
                  Twitter: @BBcan177  #pfBlockerNG
                  Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                  O 1 Reply Last reply Reply Quote 0
                  • O
                    omethe @BBcan177
                    last edited by

                    @bbcan177 sorry i misled you, I wrote the file in vi on my apache server.

                    BBcan177B 1 Reply Last reply Reply Quote 0
                    • BBcan177B
                      BBcan177 Moderator @omethe
                      last edited by

                      @omethe you could also add them to the custom list at the bottom of the DNSBL Group

                      "Experience is something you don't get until just after you need it."

                      Website: http://pfBlockerNG.com
                      Twitter: @BBcan177  #pfBlockerNG
                      Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                      O 2 Replies Last reply Reply Quote 0
                      • O
                        omethe @BBcan177
                        last edited by

                        @bbcan177 ok I did that and it worked. hopefully you find a fix in upcoming versions though :)

                        BBcan177B 1 Reply Last reply Reply Quote 0
                        • BBcan177B
                          BBcan177 Moderator @omethe
                          last edited by

                          @omethe from a pfSense shell try to curl the file and see if you get the correct file

                          "Experience is something you don't get until just after you need it."

                          Website: http://pfBlockerNG.com
                          Twitter: @BBcan177  #pfBlockerNG
                          Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                          O 1 Reply Last reply Reply Quote 0
                          • O
                            omethe @BBcan177
                            last edited by

                            @bbcan177 I just tried that, added more entries to the list from the webserver and it didn't update so that new pfblockerng.inc file didn't seem to fix the problem.

                            1 Reply Last reply Reply Quote 0
                            • O
                              omethe @BBcan177
                              last edited by

                              @bbcan177 thank you so much for helping me out! I should have been forcing a cron instead of doing a update/reload.

                              Thanks! :)

                              1 Reply Last reply Reply Quote 0
                              • J
                                jazzl0ver
                                last edited by

                                Hi @BBcan177

                                I've just found that custom DNSBL feeds are not re-downloaded despite the option I select under Update tab.
                                For example:

                                ====================[ DNSBL Last Updated List Summary ]==============
                                
                                Oct 26  2023    SFS_Toxic_BD
                                Oct 26  2023    EasyPrivacy
                                Oct 26  2023    EasyList
                                Oct 26  2023    Abuse_urlhaus
                                Oct 26  2023    AntiSocial_BD
                                Oct 26  2023    Spam404
                                Oct 26  2023    WindowsTelemetry_drop
                                Apr 6   04:00   SBL_ADs
                                ===============================================================
                                

                                After I manually deleted files from /var/db/pfblockerng/dnsblorig/ and restarted the update, they became to date:

                                ====================[ DNSBL Last Updated List Summary ]==============
                                ...
                                Aug 2   12:00   SFS_Toxic_BD
                                Aug 2   12:13   EasyList
                                Aug 2   12:13   EasyPrivacy
                                Aug 2   12:20   Abuse_urlhaus
                                Aug 2   12:23   SBL_ADs
                                Aug 2   12:23   AntiSocial_BD
                                Aug 2   12:25   Spam404
                                Aug 2   12:26   WindowsTelemetry_drop
                                ===============================================================
                                

                                Is there a way to set up pfBlockerNG to re-download the custom feeds periodically?

                                GertjanG 1 Reply Last reply Reply Quote 0
                                • GertjanG
                                  Gertjan @jazzl0ver
                                  last edited by

                                  @jazzl0ver

                                  Mine does :

                                  982b3f4c-8470-496a-b9ae-5332225ddc32-image.png

                                  320f8d7c-3fe3-4cc5-a373-74c1e57c0757-image.png

                                  06dc7fa9-1f0b-45dd-8df1-8a81b3fadf2b-image.png

                                  0f2532f6-f3b3-427e-a984-fb61ff1de1d0-image.png

                                  So, it works for me™, if it also works for BB, then it's time to show your settings, and/or any other details that might explain the situation.

                                  No "help me" PM's please. Use the forum, the community will thank you.
                                  Edit : and where are the logs ??

                                  J 1 Reply Last reply Reply Quote 0
                                  • J
                                    jazzl0ver @Gertjan
                                    last edited by

                                    Hi @Gertjan, thanks for your will to help me! Here are my settings:

                                    d4a72d4e-4fd3-4588-9b01-1cec1b230933-image.png

                                    Phishing group is defined here:
                                    195a7bb4-7c8c-455c-86bd-7b0211d252af-image.png

                                    4656cfd9-15f2-4ad8-854c-d01aa86eb585-image.png
                                    Nothing is selected under Shallalist and UT1.

                                    1 Reply Last reply Reply Quote 0
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.