Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    site b2b blocked

    Scheduled Pinned Locked Moved Firewalling
    12 Posts 5 Posters 1.4k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M Offline
      michmoor LAYER 8 Rebel Alliance @MaioMaio
      last edited by

      @maiomaio You can change the DNS servers under System > General Setup. Try something like google dns or cloudflare.
      Also make sure your client is pointing to pfsense for dns.

      Firewall: NetGate,Palo Alto-VM,Juniper SRX
      Routing: Juniper, Arista, Cisco
      Switching: Juniper, Arista, Cisco
      Wireless: Unifi, Aruba IAP
      JNCIP,CCNP Enterprise

      1 Reply Last reply Reply Quote 0
      • provelsP Offline
        provels @MaioMaio
        last edited by

        @maiomaio said in site b2b blocked:

        https://sicomputer.com/b2b

        Their problem not yours. 404
        7fae2639-3f32-4bb7-8b82-3e008005b6a1-image.png

        Peder

        MAIN - pfSense+ 25.07.1-RELEASE - Adlink MXE-5401, i7, 16 GB RAM, 64 GB SSD. 500 GB HDD for SyslogNG
        BACKUP - pfSense+ 23.01-RELEASE - Hyper-V Virtual Machine, Gen 1, 2 v-CPUs, 3 GB RAM, 8GB VHDX (Dynamic)

        1 Reply Last reply Reply Quote 0
        • S Offline
          SteveITS Rebel Alliance @MaioMaio
          last edited by

          @maiomaio said in site b2b blocked:

          reset my pfsense to default settings (with dns provided by WAN DHCP)

          In General Setup the DNS servers are only used by clients on LAN if forwarding is enabled in the DNS Resolver settings. The "DNS Resolution Behavior" choice on that page controls whether pfSense itself uses its own DNS or remote/external DNS first. By default clients on LAN, using DHCP from pfSense, use pfSense for their DNS and Unbound resolves names directly from root servers. Just saying all this to explain why DNS from WAN DHCP is mostly irrelevant.

          So all that said what does "nslookup sicomputer.com" return for you?

          I also see the error page and the domain is resolving for me.

          Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
          Upvote šŸ‘ helpful posts!

          1 Reply Last reply Reply Quote 0
          • M Offline
            michmoor LAYER 8 Rebel Alliance
            last edited by

            @steveits hey Steve. I’m set up for dns resolver mode and using Cloudflare for DoT settings. Are you saying those settings aren’t used? This has been a confusing piece for me about pfsense.

            Firewall: NetGate,Palo Alto-VM,Juniper SRX
            Routing: Juniper, Arista, Cisco
            Switching: Juniper, Arista, Cisco
            Wireless: Unifi, Aruba IAP
            JNCIP,CCNP Enterprise

            S 1 Reply Last reply Reply Quote 0
            • S Offline
              SteveITS Rebel Alliance @michmoor
              last edited by

              @michmoor "DNS Resolution Behavior" defaults to ā€˜local, use remote as fallback’ or however it’s phrased. So by default pfSense uses itself as the primary DNS server.

              Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
              Upvote šŸ‘ helpful posts!

              M 1 Reply Last reply Reply Quote 0
              • M Offline
                michmoor LAYER 8 Rebel Alliance @SteveITS
                last edited by

                @steveits So out of the box im set up for DNS Resolver. But i will be contacting the DNS servers like Cloudflare that ive set up under System > General setup, yes?

                8d4c0fc7-2632-4d20-9713-973acdd368b0-image.png

                Firewall: NetGate,Palo Alto-VM,Juniper SRX
                Routing: Juniper, Arista, Cisco
                Switching: Juniper, Arista, Cisco
                Wireless: Unifi, Aruba IAP
                JNCIP,CCNP Enterprise

                S 1 Reply Last reply Reply Quote 0
                • S Offline
                  SteveITS Rebel Alliance @michmoor
                  last edited by

                  @michmoor If "DNS Query Forwarding" is checked in the DNS Resolver settings then unbound will forward queries instead of resolving DNS itself.

                  Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
                  Upvote šŸ‘ helpful posts!

                  M 1 Reply Last reply Reply Quote 1
                  • M Offline
                    michmoor LAYER 8 Rebel Alliance @SteveITS
                    last edited by

                    @steveits Gotcha im clear now. So yeah its being sent to the CF servers then.
                    So out of the box, pfsense is in resolver mode and queries root servers by default ignoring the upstream servers given by the ISP..

                    Firewall: NetGate,Palo Alto-VM,Juniper SRX
                    Routing: Juniper, Arista, Cisco
                    Switching: Juniper, Arista, Cisco
                    Wireless: Unifi, Aruba IAP
                    JNCIP,CCNP Enterprise

                    S 1 Reply Last reply Reply Quote 0
                    • S Offline
                      SteveITS Rebel Alliance @michmoor
                      last edited by

                      @michmoor said in site b2b blocked:

                      out of the box, pfsense is in resolver mode and queries root servers by default ignoring the upstream servers given by the ISP

                      correct.

                      Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                      When upgrading, allow 10-15 minutes to reboot, or more depending on packages, and device or disk speed.
                      Upvote šŸ‘ helpful posts!

                      1 Reply Last reply Reply Quote 1
                      • M Offline
                        MaioMaio
                        last edited by

                        I have set the dns server of the Provider and now pfsense resolve b2b site . I will reset to google dns or opendns and will try to resolve it.

                        1 Reply Last reply Reply Quote 0
                        • GertjanG Offline
                          Gertjan @MaioMaio
                          last edited by

                          @maiomaio said in site b2b blocked:

                          https://sicomputer.com/b2b.

                          If any doubts, use, for example : https://www.zonemaster.net/

                          See https://www.zonemaster.net/en/result/a5a8b50fd5447ce6

                          In this case: sicomputer.com is a complete mess, totally unusable.

                          No "help me" PM's please. Use the forum, the community will thank you.
                          Edit : and where are the logs ??

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.