Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unbound Reverse DNS Script on PfSense

    Scheduled Pinned Locked Moved DHCP and DNS
    11 Posts 4 Posters 875 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator @A Former User
      last edited by

      @42sec you understand pfblocker does that already - plus much much more ;)

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      ? 1 Reply Last reply Reply Quote 0
      • ?
        A Former User @johnpoz
        last edited by A Former User

        @johnpoz yes i understand you but I'm sorry : i hate pfblocker , that's the reason i wrote that script

        johnpozJ 1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator @A Former User
          last edited by

          @42sec hahaha.. Ok..

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          DefenderLLCD 1 Reply Last reply Reply Quote 1
          • DefenderLLCD
            DefenderLLC @johnpoz
            last edited by

            @johnpoz said in Unbound Reverse DNS Script on PfSense:

            @42sec hahaha.. Ok..

            He's creating pfBlockerBetter... LOL

            ? 1 Reply Last reply Reply Quote 0
            • ?
              A Former User @DefenderLLC
              last edited by

              @defenderllc less is better, YES :D

              johnpozJ 1 Reply Last reply Reply Quote 1
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @A Former User
                last edited by

                @42sec said in Unbound Reverse DNS Script on PfSense:

                less is better

                While I won't disagree with you there completely.. I do not personally use all the features of pfblocker.. You don't have to use all of its features.. I pretty much use it as a fancy aliases creator that I use in my firewall rules.. It does some great stuff with asns, and lists, whois info even, geoip is big one I use.. But I have it create some custom lists pulling info from lists that I use to block known scanners, etc.

                Way back in the data many moons ago I had asked bbcan177 for like a "lite" version..

                But just because something has features xyz, you can just use feature y if you want ;)

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                DefenderLLCD M 2 Replies Last reply Reply Quote 0
                • DefenderLLCD
                  DefenderLLC @johnpoz
                  last edited by

                  @johnpoz said in Unbound Reverse DNS Script on PfSense:

                  @42sec said in Unbound Reverse DNS Script on PfSense:

                  less is better

                  While I won't disagree with you there completely.. I do not personally use all the features of pfblocker.. You don't have to use all of its features.. I pretty much use it as a fancy aliases creator that I use in my firewall rules.. It does some great stuff with asns, and lists, whois info even, geoip is big one I use.. But I have it create some custom lists pulling info from lists that I use to block known scanners, etc.

                  Way back in the data many moons ago I had asked bbcan177 for like a "lite" version..

                  But just because something has features xyz, you can just use feature y if you want ;)

                  It's a fantastic tool and was one of the primary reasons that I chose to use a Netgate 6100 MAX as my primary firewall in front of my UDM-SE (now just used as my network/protect controller).

                  Dual Pi-hole servers was just not cutting it for me and pfBlocker does SOOO much more. I ran pfSense+ on a VM for a month first and loved the control I never had before.

                  1 Reply Last reply Reply Quote 0
                  • M
                    markster @johnpoz
                    last edited by

                    @johnpoz If you need something lite here you go.

                    Geo block by country

                    https://www.ipdeny.com/ipblocks/data/aggregated/cn-aggregated.zone

                    Block by ASN

                    https://api.hackertarget.com/aslookup/?q=AS9002

                    Firehol block lists

                    https://iplists.firehol.org/files/firehol_level3.netset

                    I never needed any additional packages to provide this functionality.

                    johnpozJ 1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator @markster
                      last edited by

                      @markster no I don't need anything - pfblocker does all I need, and way more that I don't.. Not looking for anything..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • M
                        markster @A Former User
                        last edited by

                        @42sec This is what I use.
                        https://github.com/markster17/unbound/tree/main

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.