Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Have trouble accessing some websites, what to do?

    Firewalling
    3
    10
    693
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      Firewalldude89
      last edited by

      Hi all

      I use OPEN DNS for Dos Protection but still some trouble accessing some websites.
      Link local on IPv6 works very well and and can log into admin site on web to adjust firewall settings.

      the otherT 1 Reply Last reply Reply Quote 0
      • the otherT
        the other @Firewalldude89
        last edited by

        @Firewalldude89

        @Firewalldude89 said in Have trouble accessing some websites, what to do?:

        I use OPEN DNS

        ok, pfblocker and its feeds are not enough? Personal choice, ok....

        @Firewalldude89 said in Have trouble accessing some websites, what to do?:

        or Dos Protection

        you mean "DNS" protection, I guess ;)

        @Firewalldude89 said in Have trouble accessing some websites, what to do?:

        but still some trouble accessing some websites.

        hm, not "still", my guess, but "that's why"...
        Probably those for you not working sites are on one of those blacklists in use by open DNS? Happens...false entries. Using pfblocker DNS blocking, you could change that yourself. Since I am not familiar with (now) Cisco's open DNS, not sure how you can manage that.

        @Firewalldude89 said in Have trouble accessing some websites, what to do?:

        Link local on IPv6 works very well and and can log into admin site on web to adjust firewall settings

        Does that relate in any way to your question? If so, please explain...otherwise: congrats! ;)

        the other

        pure amateur home user, no business or professional background
        please excuse poor english skills and typpoz :)

        1 Reply Last reply Reply Quote 0
        • F
          Firewalldude89
          last edited by

          The firewall often blocks my own IP address, how to fix that?

          GertjanG 1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan @Firewalldude89
            last edited by

            @Firewalldude89

            What firewall ?
            What interface ?

            When you installed pfSense, on the one and only existing interface, called LAN, there is a (one) firewall rule. It passes any traffic. no one is blocked.

            These are mine :

            6152e9b2-a505-4974-ab48-e7edb5335615-image.png

            Forget about the first 3 rules, as the first is a spocial pass rule, and the second and third are de activated.
            Rules 4 and 5 should, I hope, be very obvious.

            These two rules - you can combine them in one - permits me to visit any host on planet earth (the Internet) and also other LAN's, and also pfSense, the GUI.

            As always, there is a 'but' ... see for an example here : System >> Advanced > Admin Access :

            b7a9a6a6-892d-4f79-9cb9-fb90495ce39c-image.png

            If, for some reason, on of your LAN devices is trying to login, and fails,
            And fails again.
            An again .....
            etc.
            Then sshguard will block your IP of your device, so you can't connect to the GUI anymore for a while.

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • F
              Firewalldude89
              last edited by

              16916578162965802934606850299958.jpg

              1 Reply Last reply Reply Quote 0
              • F
                Firewalldude89
                last edited by

                16916580690303123420161164031531.jpg

                GertjanG 1 Reply Last reply Reply Quote 0
                • F
                  Firewalldude89
                  last edited by

                  16916583289732359387252570119161.jpg

                  1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @Firewalldude89
                    last edited by

                    @Firewalldude89

                    Suricata ?
                    You made live hard on yourself, and now you wonder why ....

                    So, the easy, fast way out : don't.
                    Remove it. And no more issues.

                    To make Suricate work for you correctly, it takes time, is hard work, lots to learn. No easy way out.
                    It will take time.
                    Go figure, even after 10 years of pfSense usage, I never had time to handle this pfSense package correctly as it is an 'expert' one (IMHO), and I'm not.

                    Have trouble accessing some websites, what to do?

                    and you forgot to mention : I'm using Suricata

                    😊

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    F 1 Reply Last reply Reply Quote 0
                    • F
                      Firewalldude89 @Gertjan
                      last edited by

                      @Gertjan well there is a hacker and if I remove it then he could hack me.
                      Use snort instead or other package? Maybe dont use computer any more
                      cause I keep using many hours most weeks every year being bothered
                      by this all though I dont have to.

                      Maybe take a vacation..

                      GertjanG 1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan @Firewalldude89
                        last edited by

                        @Firewalldude89

                        Start by not allowing non trusted people on your networks. And if you have to, put them on a separated network, with no access to pfSense itself, neither your trusted LANs.
                        And if the networks are not yours, the problems isn't neither.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.