Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IP-Blocklist

    Scheduled Pinned Locked Moved pfSense Packages
    496 Posts 86 Posters 533.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      Guest
      last edited by

      @tommyboy180:

      I had a question for you. What do you think about the countryblock package for pfsense? It downloads countrylists from your site directly. A while ago we had a small discussion over the semi automated process and your rules within the FAQ. At the time we determined that it does not break your rules, however now that you're here you could comment and give me a final say.

      I appreciate the question. I haven't seen your pfsense package yet. Could you provide me with a little info?

      We arecurrently in the process of deciding how we want to deliver our, the formats, etc. One of the issues we are struggling with is the automated connections. When we started the website in 2007 we decided not to allow users to use automated tools to update. Our concern was an increase in traffic without the benefit of having the traffic originate through the site pages.

      In 2008, I decided to change this rule and allow reasonable automation. We now get thousands of automated requests each day. I feel this is a good thing for those who use our data, but still leaves us paying exorbitant server and network costs in order to handle the growth.

      We responded to these increased costs by placing some limited display ads on the website, but of course if the site is bypassed and the data download is automated the ads are missed.

      In your case I think we can probably offer our assistance. We would appreciate credits and links back to the website.

      We could probably collaborate on the project and create data expressly for your needs.

      We recently added change logs to the site. This enables users to make daily modifications as opposed to downloading all or most of the countries.

      Let's talk about what you would like to accomplish.

      1 Reply Last reply Reply Quote 0
      • T
        tommyboy180
        last edited by

        @countryipblocks:

        @tommyboy180:

        I had a question for you. What do you think about the countryblock package for pfsense? It downloads countrylists from your site directly. A while ago we had a small discussion over the semi automated process and your rules within the FAQ. At the time we determined that it does not break your rules, however now that you're here you could comment and give me a final say.

        I appreciate the question. I haven't seen your pfsense package yet. Could you provide me with a little info?

        We arecurrently in the process of deciding how we want to deliver our, the formats, etc. One of the issues we are struggling with is the automated connections. When we started the website in 2007 we decided not to allow users to use automated tools to update. Our concern was an increase in traffic without the benefit of having the traffic originate through the site pages.

        In 2008, I decided to change this rule and allow reasonable automation. We now get thousands of automated requests each day. I feel this is a good thing for those who use our data, but still leaves us paying exorbitant server and network costs in order to handle the growth.

        We responded to these increased costs by placing some limited display ads on the website, but of course if the site is bypassed and the data download is automated the ads are missed.

        In your case I think we can probably offer our assistance. We would appreciate credits and links back to the website.

        We could probably collaborate on the project and create data expressly for your needs.

        We recently added change logs to the site. This enables users to make daily modifications as opposed to downloading all or most of the countries.

        Let's talk about what you would like to accomplish.

        I sent you a PM with more info. Thank you!

        -Tom Schaefer
        SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

        Please support pfBlocker | File Browser | Strikeback

        1 Reply Last reply Reply Quote 0
        • T
          tommyboy180
          last edited by

          Troubleshooting guide:

          Some people have been having issues getting the package to run. Before you think you need to rebuild pfsense try a simple test first.
          Go to Firewall -> Rules and pick a random entry. Click the edit button. Don't make any changes! Now click save.
          Go back to your package. Ensure Enable is checked and Click save. Your package should be running now.

          -Tom Schaefer
          SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

          Please support pfBlocker | File Browser | Strikeback

          1 Reply Last reply Reply Quote 0
          • T
            ThinkSmart
            last edited by

            Hey,

            i can install the package but i can't load the blacklists into it. So if i use the examples (level1, level2, level3)  or other blacklists from here they are at the list, but it says there were no blocked ips or networks.

            I've tried it with pfsense 1.2.3. and 2.0BETA5. The tipp above me doesn't make changes. Thanks.

            1 Reply Last reply Reply Quote 0
            • T
              tommyboy180
              last edited by

              @ThinkSmart:

              Hey,

              i can install the package but i can't load the blacklists into it. So if i use the examples (level1, level2, level3)  or other blacklists from here they are at the list, but it says there were no blocked ips or networks.

              I've tried it with pfsense 1.2.3. and 2.0BETA5. The tipp above me doesn't make changes. Thanks.

              Take a look at the first post in this topic for the FAQ. If you still have problems let me know.

              -Tom Schaefer
              SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

              Please support pfBlocker | File Browser | Strikeback

              1 Reply Last reply Reply Quote 0
              • T
                ThinkSmart
                last edited by

                Take a look at the Pictures, after adding the Link in the Textbox and pressing + and save/update, there where no changes. :/

                packages.jpg
                packages.jpg_thumb
                ip-blocklist.jpg
                ip-blocklist.jpg_thumb

                1 Reply Last reply Reply Quote 0
                • W
                  Wolfsokin
                  last edited by

                  Try loading the url of that blocklist in a browser and see what you get. I get a 404 file not found.

                  :edit to add

                  try using the url to this blocklist and see if it works. This list works for me so I know the url is good.

                  http://list.iblocklist.com/files/tzmtqbbsgbtfxainogvm.gz

                  1 Reply Last reply Reply Quote 0
                  • K
                    kalons
                    last edited by

                    Hi, tommyboy180

                    I don't think it is working, now my pfsense working on transparent bridging mode.
                    I installed the IP-blocklist without any error.
                    I add URL list such as "http://www.google.com" for test. And click "block outbound?" as well.
                    But I still can logon the website.
                    And I check the Rules under firewall. There is no any change for my original setting there.
                    Would you please to check that?
                    Thx!

                    1 Reply Last reply Reply Quote 0
                    • K
                      kalons
                      last edited by

                      @tommyboy180:

                      Troubleshooting guide:

                      Some people have been having issues getting the package to run. Before you think you need to rebuild pfsense try a simple test first.
                      Go to Firewall -> Rules and pick a random entry. Click the edit button. Don't make any changes! Now click save.
                      Go back to your package. Ensure Enable is checked and Click save. Your package should be running now.

                      Hi Tommy,

                      I try this way many times but still not working.

                      1 Reply Last reply Reply Quote 0
                      • T
                        tommyboy180
                        last edited by

                        @kalons:

                        Hi, tommyboy180

                        I don't think it is working, now my pfsense working on transparent bridging mode.
                        I installed the IP-blocklist without any error.
                        I add URL list such as "http://www.google.com" for test. And click "block outbound?" as well.
                        But I still can logon the website.
                        And I check the Rules under firewall. There is no any change for my original setting there.
                        Would you please to check that?
                        Thx!

                        Please re-read the FAQ items on post #1. You don't add domain names as the url you add lists in the url list.

                        -Tom Schaefer
                        SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                        Please support pfBlocker | File Browser | Strikeback

                        1 Reply Last reply Reply Quote 0
                        • R
                          rajkedda
                          last edited by

                          Hi countryipblocks,
                            I am trying to access your site to download the country ip blocks.  I keep getting forbidden, but i access your site from different location, it works fine.  By any chance my WAN IP is blocked on your network?

                          Link I am trying is http://www.countryipblocks.net/networking/pg2-formatted-acess-control-lists/

                          1 Reply Last reply Reply Quote 0
                          • ?
                            Guest
                            last edited by

                            Our servers have some auto-defense characteristics to prevent multiple high volume data downloads during a single day. Let me know the IP address you are using (send me a private message) and I will investigate.

                            1 Reply Last reply Reply Quote 0
                            • S
                              Spock75
                              last edited by

                              Is it possible to add description after the link in "Current List(s):" ?

                              I use iblocklist.com and many of the links look like this "ghlzqtqxnzctvvajwwag.gz"

                              1 Reply Last reply Reply Quote 0
                              • T
                                tommyboy180
                                last edited by

                                @Spock75:

                                Is it possible to add description after the link in "Current List(s):" ?

                                I use iblocklist.com and many of the links look like this "ghlzqtqxnzctvvajwwag.gz"

                                Thanks for the idea! It's now in my to-do list.

                                -Tom Schaefer
                                SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                                Please support pfBlocker | File Browser | Strikeback

                                1 Reply Last reply Reply Quote 0
                                • P
                                  p-root
                                  last edited by

                                  @rajkedda:

                                  Hi countryipblocks,
                                    I am trying to access your site to download the country ip blocks.  I keep getting forbidden, but i access your site from different location, it works fine.  By any chance my WAN IP is blocked on your network?

                                  Link I am trying is http://www.countryipblocks.net/networking/pg2-formatted-acess-control-lists/

                                  Same thing, i can't access to countryblocks.net

                                  Countryblock status :

                                  Current Status = running
                                  
                                  You are blocking 0 Networks
                                  
                                  
                                  1 Reply Last reply Reply Quote 0
                                  • T
                                    tommyboy180
                                    last edited by

                                    Countryipblocks contacted me about this a couple days ago. I am working on a solution right now.

                                    -Tom Schaefer
                                    SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                                    Please support pfBlocker | File Browser | Strikeback

                                    1 Reply Last reply Reply Quote 0
                                    • P
                                      p-root
                                      last edited by

                                      @tommyboy180:

                                      Countryipblocks contacted me about this a couple days ago. I am working on a solution right now.

                                      Thank you tommyboy180 and countryipblocks  :)

                                      1 Reply Last reply Reply Quote 0
                                      • T
                                        tommyboy180
                                        last edited by

                                        @p-root:

                                        @tommyboy180:

                                        Countryipblocks contacted me about this a couple days ago. I am working on a solution right now.

                                        Thank you tommyboy180 and countryipblocks   :)

                                        For the countryipblocks PG2 format list you have to link directly to the .txt file. For example, for AFGHANISTAN add the direct link like: https://www.countryipblocks.net/e_country_data/AF_pg2.txt

                                        Try that and see if your lists will now work.

                                        -Tom Schaefer
                                        SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                                        Please support pfBlocker | File Browser | Strikeback

                                        1 Reply Last reply Reply Quote 0
                                        • D
                                          darxmurf
                                          last edited by

                                          Hi there,

                                          Quick question, I tried to install IP-Blocklist on my 1.2.3 Embedded system.
                                          The installation is ok (tooks few seconds on : Executing custom_php_install_command()…) and then I'v got this message in the config page

                                          Warning: fopen(lists.txt): failed to open stream: Read-only file system in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 69 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 70 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 75 Warning: filesize(): Stat failed for lists.txt (errno=2 - No such file or directory) in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 79

                                          When I try to add a list, it displays this

                                          Warning: fopen(lists.txt): failed to open stream: Read-only file system in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 69 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 70 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 72 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 75 Warning: filesize(): Stat failed for lists.txt (errno=2 - No such file or directory) in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 79

                                          I tried to uninstall/reinstall but same error.
                                          I tried with and without the *Enable IP-Blocklist" box checked
                                          I tried with and without country-block

                                          Cheers

                                          Darx

                                          1 Reply Last reply Reply Quote 0
                                          • T
                                            tommyboy180
                                            last edited by

                                            @darxmurf:

                                            Hi there,

                                            Quick question, I tried to install IP-Blocklist on my 1.2.3 Embedded system.
                                            The installation is ok (tooks few seconds on : Executing custom_php_install_command()…) and then I'v got this message in the config page

                                            Warning: fopen(lists.txt): failed to open stream: Read-only file system in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 69 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 70 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 75 Warning: filesize(): Stat failed for lists.txt (errno=2 - No such file or directory) in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 79

                                            When I try to add a list, it displays this

                                            Warning: fopen(lists.txt): failed to open stream: Read-only file system in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 69 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 70 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 72 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 75 Warning: filesize(): Stat failed for lists.txt (errno=2 - No such file or directory) in /usr/local/www/packages/ipblocklist/ipblocklist_list.php on line 79

                                            I tried to uninstall/reinstall but same error.
                                            I tried with and without the *Enable IP-Blocklist" box checked
                                            I tried with and without country-block

                                            Cheers

                                            Darx

                                            It's because you're running embedded. I don't have the time right now to work on embedded (sorry). If you know PHP I can take your fixes and update my package.

                                            -Tom Schaefer
                                            SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                                            Please support pfBlocker | File Browser | Strikeback

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.