Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DNSBL Category not working

    Scheduled Pinned Locked Moved pfBlockerNG
    1 Posts 1 Posters 271 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      Inf1n1ty33
      last edited by

      Hi,

      I am preety new to pfBlockerNG and just started with the latest stable version from the pfsense repository.

      I have already configured IP filtering and DNSBL groups (and feeds) which are working fine

      But I am not able to get the webfilter (DNSBL Category) to work.

      Do I have to enable something else to get this to work!?

      I can see that when I try to access pornhub something is recognized from UT1 (see attached picture).

      Here are some screenshots from my config:

      Screenshot 2024-10-10 194940.png Screenshot 2024-10-10 195627.png Screenshot 2024-10-10 195647.png Screenshot 2024-10-10 195809.png

      Here is the log from the update folder:

      UPDATE PROCESS START [ v3.2.0_8 ]

      ===[ DNSBL Process ]================================================

      Loading DNSBL Statistics... completed
      Loading DNSBL SafeSearch... disabled
      Loading DNSBL Whitelist... completed
      Blacklist database(s) ... exists.

      [ UT1_adult ] exists.
      [ UT1_agressif ] exists. [ 10/10/24 20:00:10 ]
      [ UT1_arjel ] exists.
      [ UT1_dangerous_material ] exists.
      [ UT1_drogue ] exists.
      [ UT1_hacking ] exists.
      [ UT1_malware ] exists.
      [ UT1_mixed_adult ] exists.
      [ UT1_sexual_education ] exists.
      [ StevenBlack_ADs ] exists.
      [ EasyList ] exists.
      [ EasyList_German ] exists.
      [ EasyPrivacy ] exists.
      [ EasyList_custom ] exists.
      [ D_Me_Malv ] exists.
      [ D_Me_Malw ] exists.
      [ Maltrail_BD ] exists.
      [ MVPS ] exists. [ 10/10/24 20:00:11 ]
      [ SFS_Toxic_BD ] exists.
      [ Spam404 ] exists.
      [ SWC ] exists.

      ===[ GeoIP Process ]============================================

      ===[ IPv4 Process ]=================================================

      [ Abuse_Feodo_C2_v4 ] Downloading update .. 200 OK. completed ..
      Empty file, Adding '127.1.7.7' to avoid download failure.

      Original Master Final

      0 1 1 [ Pass ]

      [ Abuse_SSLBL_v4 ] Downloading update .. 200 OK. completed ..

      Aggregation Stats:

      Original Final

      40 38


      Original Master Final

      40 32 32 [ Pass ]

      [ CINS_army_v4 ] Downloading update [ 10/10/24 20:00:12 ] .. 200 OK. completed ..

      Aggregation Stats:

      Original Final

      15000 11863


      Original Master Final

      15000 11642 11642 [ Pass ]

      [ ET_Block_v4 ] exists.
      [ ET_Comp_v4 ] exists.
      [ ISC_Block_v4 ] Downloading update .. 200 OK. completed ..

      Aggregation Stats:

      Original Final

      40 19


      Original Master Final

      20 1 1 [ Pass ]

      [ Spamhaus_Drop_v4 ] exists. [ 10/10/24 20:00:13 ]
      [ Spamhaus_eDrop_v4 ] Downloading update .. 200 OK. completed ..
      [ pfB_PRI1_v4 Spamhaus_eDrop_v4 ] No IPs found! Ensure only IP based Feeds are used! ]

      [ Talos_BL_v4 ] Downloading update .. 503 Service Unavailable

      [ pfB_PRI1_v4 - Talos_BL_v4 ] Download FAIL [ 10/10/24 20:00:14 ]
      DNSBL, Firewall, and IDS (Legacy mode only) are not blocking download.

      Restoring previously downloaded file contents... completed ..
      [ pfB_PRI1_v4 Talos_BL_v4 ] No IPs found! Ensure only IP based Feeds are used! ]

      ===[ Aliastables / Rules ]==========================================

      No changes to Firewall rules, skipping Filter Reload

      Updating: pfB_PRI1_v4
      322 addresses added.559 addresses deleted.

      ===[ FINAL Processing ]=====================================

      [ Original IP count ] [ 18831 ]

      [ Final IP Count ] [ 13540 ]

      ===[ Deny List IP Counts ]===========================

      13541 total
      11642 /var/db/pfblockerng/deny/CINS_army_v4.txt
      1322 /var/db/pfblockerng/deny/ET_Block_v4.txt
      542 /var/db/pfblockerng/deny/ET_Comp_v4.txt
      32 /var/db/pfblockerng/deny/Abuse_SSLBL_v4.txt
      1 /var/db/pfblockerng/deny/Spamhaus_Drop_v4.txt
      1 /var/db/pfblockerng/deny/ISC_Block_v4.txt
      1 /var/db/pfblockerng/deny/Abuse_Feodo_C2_v4.txt

      ====================[ Empty Lists w/127.1.7.7 ]==================

      Abuse_Feodo_C2_v4.txt
      Spamhaus_Drop_v4.txt

      ===[ DNSBL Domain/IP Counts ] ===================================

      5257782 total
      4525810 /var/db/pfblockerng/dnsbl/UT1_adult.txt
      417843 /var/db/pfblockerng/dnsbl/Maltrail_BD.txt
      116348 /var/db/pfblockerng/dnsbl/StevenBlack_ADs.txt
      60726 /var/db/pfblockerng/dnsbl/UT1_malware.txt
      51267 /var/db/pfblockerng/dnsbl/SFS_Toxic_BD.txt
      39769 /var/db/pfblockerng/dnsbl/EasyPrivacy.txt
      37028 /var/db/pfblockerng/dnsbl/EasyList.txt
      6962 /var/db/pfblockerng/dnsbl/Spam404.txt
      897 /var/db/pfblockerng/dnsbl/D_Me_Malv.txt
      427 /var/db/pfblockerng/dnsbl/UT1_drogue.txt
      256 /var/db/pfblockerng/dnsbl/UT1_agressif.txt
      152 /var/db/pfblockerng/dnsbl/UT1_hacking.txt
      133 /var/db/pfblockerng/dnsbl/UT1_mixed_adult.txt
      69 /var/db/pfblockerng/dnsbl/UT1_arjel.txt
      55 /var/db/pfblockerng/dnsbl/EasyList_German.txt
      30 /var/db/pfblockerng/dnsbl/UT1_dangerous_material.txt
      8 /var/db/pfblockerng/dnsbl/UT1_sexual_education.txt
      2 /var/db/pfblockerng/dnsbl/MVPS.txt
      0 /var/db/pfblockerng/dnsbl/SWC.txt
      0 /var/db/pfblockerng/dnsbl/EasyList_custom.txt
      0 /var/db/pfblockerng/dnsbl/D_Me_Malw.txt

      ====================[ IPv4/6 Last Updated List Summary ]==============

      Oct 8 14:17 Spamhaus_Drop_v4
      Oct 9 06:30 ET_Block_v4
      Oct 9 22:33 ET_Comp_v4
      Oct 10 18:12 ISC_Block_v4
      Oct 10 18:49 CINS_army_v4
      Oct 10 18:52 Spamhaus_eDrop_v4
      Oct 10 19:55 Abuse_SSLBL_v4
      Oct 10 19:55 Abuse_Feodo_C2_v4
      Oct 10 19:59 Talos_BL_v4

      ====================[ DNSBL Last Updated List Summary ]==============

      Jul 11 2020 D_Me_Malw
      Jul 11 2020 D_Me_Malv
      Mar 6 2021 MVPS
      Oct 9 00:13 SWC
      Oct 10 18:05 EasyPrivacy
      Oct 10 18:14 EasyList_German
      Oct 10 19:00 SFS_Toxic_BD
      Oct 10 19:33 EasyList
      Oct 10 19:46 StevenBlack_ADs
      Oct 10 19:46 EasyList_custom
      Oct 10 19:46 Maltrail_BD
      Oct 10 19:46 Spam404
      Oct 10 19:51 UT1_adult
      Oct 10 19:54 UT1_agressif
      Oct 10 19:54 UT1_arjel
      Oct 10 19:54 UT1_dangerous_material
      Oct 10 19:55 UT1_drogue
      Oct 10 19:55 UT1_hacking
      Oct 10 19:55 UT1_malware
      Oct 10 19:56 UT1_mixed_adult
      Oct 10 19:56 UT1_sexual_education

      Database Sanity check [ PASSED ]

      Masterfile/Deny folder uniq check
      Deny folder/Masterfile uniq check

      Sync check (Pass=No IPs reported)

      Alias table IP Counts

      13541 /var/db/aliastables/pfB_PRI1_v4.txt

      pfSense Table Stats

      table-entries hard limit 400000
      Table Usage Count 162440

      UPDATE PROCESS ENDED [ 10/10/24 20:00:16 ]

      Thank you!

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.