Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    URL Blacklist squidGuard

    Scheduled Pinned Locked Moved Cache/Proxy
    24 Posts 12 Posters 35.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dolson11
      last edited by

      I am really surprised that netgate does not offer a list. because the advertise that is has pfsense but its really of no use without a active list. Someone needs to start a new business and charge $20 a month for list access.

      R 1 Reply Last reply Reply Quote 0
      • R
        Rhuan @dolson11
        last edited by

        @dolson11
        Utilizo o Squid + SquidGuard.
        Veja como fiz.

        Vá em: Services > Proxy filter SquidGuard > General settings

        dd3abe09-e964-4a0c-b4a3-1391036980c3-image.png

        Depois seleciono Blacklist e clico em Download para baixar a lista e categorias.

        5fcdd657-220b-40a4-af71-3f461d444407-image.png

        Agora clico em Groups ACL e crio uma.

        a5cd6d1f-95c3-4014-ba68-2157fc037ac9-image.png

        Logo abaixo, veja que as categorias da lista aparecem pra mim.

        d3d26929-c61a-4294-9396-eef04431833b-image.png

        Espero ter ajudado!

        D 1 Reply Last reply Reply Quote 1
        • D
          dolson11 @Rhuan
          last edited by

          @rhuan I think I am missing something. It downloaded ok

          7.JPG

          8.JPG

          R 1 Reply Last reply Reply Quote 0
          • R
            Rhuan @dolson11
            last edited by Rhuan

            @dolson11

            Vi que foi apresentado uma mensagem de erro. Você precisa adicionar a rede que seu SquidGuard vai trabalhar, ex.: 10.10.0.0/23

            Nesta rede (LAN) que as políticas de acesso serão empregadas.

            e5f39b0a-0ece-42f8-ad13-29c6eb6c24cf-image.png

            D 1 Reply Last reply Reply Quote 0
            • D
              dolson11 @Rhuan
              last edited by

              @rhuan Still no luck .... I must be doing something wrong.888.JPG 999.JPG

              1 Reply Last reply Reply Quote 0
              • senseivitaS
                senseivita
                last edited by senseivita

                Hey guys, on OPNsense there another one:
                http://pgl.yoyo.org/adservers/serverlist.php?hostformat=nohtml
                I don't know if the format can be used as is or if it needs to be converted. It also parses categories so I assume it has all the fields needed to work and should be n't be too hard toeverything in there to work and shouldn't be that hard in a Bash script, or from what I hear trivial in Python. I don't know Python myself so…yeah.

                I already checked, it looks like the categories are nothing but lists in folders:
                Remote Desktop Picture October 8, 2022 at 1.05.46 PM GMT-6.png

                Knowing that you can easily use one of the many lists there are, e.g;
                Screen Shot 2022-10-08 at 1.24.57 PM.png
                Many with their own classifications, for example; Steven Black's. grep or awk or whatever is the easiest to remove the bad IP address-per-entry these come with put 'em in category folders, tar it, rsync it into a local web server, point pfSense to it. Maybe even add to the script to trigger the Squidguard update, there are some examples in the ACME package if I remember correctly. :) They should serve at least as hints to places in the filesystem.

                Another option that comes to mind, is transforming the already-in-pfSense lists from pfBlockerNG but, I've never found it easy dealing with any native package-related thing on pfSense. They have some sort of obfuscation or inexplicably obvious oversight, I can't tell exactly what, but will make you miserable. 🔪

                The file from l'Université Toulouse 1 appears to have additional files for heuristics or something (somebody will correct me, I hope), but the domain lists are on every category/folder whereas the others aren't, so I think it's a safe bet you'll be fine without them. Good luck!

                Missing something? Word endings, maybe? I included a free puzzle in this msg if you solv--okay, I'm lying. It's dyslexia, makes me do that, sorry! Just finish the word; they're rarely misspelled, just incomplete. Yeah-yeah-I know. Same thing.

                1 Reply Last reply Reply Quote 0
                • P
                  pontoexe
                  last edited by

                  O único link que consegui encontrar que ainda está funcionando na nova versão do pfsense é esse aqui:

                  http://dsi.ut-capitole.fr/blacklists/download/all.tar.gz

                  1 Reply Last reply Reply Quote 0
                  • S
                    Sr.Sayonara
                    last edited by

                    I have follow the steps of @Reeko and restore to default blacklist update then i download it again and when everything was completed i enable the blacklist in general settings and put the url of capitole and works fine here.

                    1 Reply Last reply Reply Quote 0
                    • J
                      jaoms2024
                      last edited by

                      @aGeekhere said in URL Blacklist squidGuard:

                      http://dsi.ut-capitole.fr/blacklists/download/blacklists_for_pfsense.tar.gz

                      cuando trato de actualizar la lista me pone esto

                      Begin blacklist update
                      Start download.
                      Download archive http://dsi.ut-capitole.fr/blacklists/download/blacklists_for_pfsense.tar.gz
                      Bad content from http://dsi.ut-capitole.fr/blacklists/download/blacklists_for_pfsense.tar.gz. Terminate.

                      A 1 Reply Last reply Reply Quote 0
                      • A
                        aGeekhere @jaoms2024
                        last edited by

                        @jaoms2024 said in URL Blacklist squidGuard:

                        http://dsi.ut-capitole.fr/blacklists/download/blacklists_for_pfsense.tar.gz

                        I just updated and it works still

                        Begin blacklist update
                        Start download.
                        Download archive http://dsi.ut-capitole.fr/blacklists/download/blacklists_for_pfsense.tar.gz
                        Download complete
                        Unpack archive
                        Scan blacklist categories.
                        Found 64 items.
                        Start rebuild DB.
                        Copy DB to workdir.
                        Reconfigure Squid proxy.
                        Blacklist update complete.
                        

                        Never Fear, A Geek is Here!

                        1 Reply Last reply Reply Quote 1
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.