Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Country Block

    Scheduled Pinned Locked Moved pfSense Packages
    691 Posts 79 Posters 692.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tommyboy180
      last edited by

      The fetch was the old way to pull the country files directly from countryipblocks.net but that's what created the bandwidth problem for them.

      So now the cat CIDR is the solution. It pulls the country ip blocks from a local file that it download during package install. That's why it's kind of weird it's not working for you since it's so simple.

      -Tom Schaefer
      SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

      Please support pfBlocker | File Browser | Strikeback

      1 Reply Last reply Reply Quote 0
      • D
        dlawley
        last edited by

        Something must have been hanging around.  Had to remove, then reinstall.  Now have CIDR folder and have networks blocked.

        Thanks for the help, its better help than we get around here for paid support…

        1 Reply Last reply Reply Quote 0
        • S
          Supermule Banned
          last edited by

          HAHAHAHAHHAHAHAHAHAHAHAHAHAHAHAHAHA

          :)

          @dlawley:

          Something must have been hanging around.  Had to remove, then reinstall.  Now have CIDR folder and have networks blocked.

          Thanks for the help, its better help than we get around here for paid support…

          1 Reply Last reply Reply Quote 0
          • T
            tommyboy180
            last edited by

            @dlawley:

            Something must have been hanging around.  Had to remove, then reinstall.  Now have CIDR folder and have networks blocked.

            Thanks for the help, its better help than we get around here for paid support…

            Well thank you for the compliment. I try to provide half decent support. Check out tomschaefer.org/pfsense
            I created it to try to help more people that needed a way to directly contact me.

            -Tom Schaefer
            SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

            Please support pfBlocker | File Browser | Strikeback

            1 Reply Last reply Reply Quote 0
            • X
              XIII
              last edited by

              um..the forum is free support, no paid support is offered "here" on the forum. If you want paid support see here:
              https://portal.pfsense.org/index.php/support-subscription

              The support here is really great, one of the top ones compared to other forums. tommyboy180 is excellent at providing support for his packages, he is really fast at getting back to you.

              -Chris Stutzman
              Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
              Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
              freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
              Check out the pfSense Wiki

              1 Reply Last reply Reply Quote 0
              • T
                tommyboy180
                last edited by

                @XIII:

                um..the forum is free support, no paid support is offered "here" on the forum. If you want paid support see here:
                https://portal.pfsense.org/index.php/support-subscription

                The support here is really great, one of the top ones compared to other forums. tommyboy180 is excellent at providing support for his packages, he is really fast at getting back to you.

                Thank you. I appreciate the kind words. I'm sure many other package managers are just the same.

                -Tom Schaefer
                SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                Please support pfBlocker | File Browser | Strikeback

                1 Reply Last reply Reply Quote 0
                • G
                  ghm
                  last edited by

                  Hi,

                  I use 1.2.3 embedded. Country Block apparently installed ok and I could commit countries + enable but sadly Country Block drops into disabled pretty often (stays on for maybe an hour or so).

                  One thing I have seen: Under the "Whitelist" tab (where I have not added any IPs), there is this message:

                  Warning: fopen(countries-white.txt): failed to open stream: Read-only file system in /usr/local/www/packages/countryblock/whitelist.php on line 134 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/countryblock/whitelist.php on line 135 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/countryblock/whitelist.php on line 140 
                  

                  Any chance to get this going on embedded? I really like the package…

                  Thanks1

                  1 Reply Last reply Reply Quote 0
                  • T
                    tommyboy180
                    last edited by

                    @ghm:

                    Hi,

                    I use 1.2.3 embedded. Country Block apparently installed ok and I could commit countries + enable but sadly Country Block drops into disabled pretty often (stays on for maybe an hour or so).

                    One thing I have seen: Under the "Whitelist" tab (where I have not added any IPs), there is this message:

                    Warning: fopen(countries-white.txt): failed to open stream: Read-only file system in /usr/local/www/packages/countryblock/whitelist.php on line 134 Warning: fwrite(): supplied argument is not a valid stream resource in /usr/local/www/packages/countryblock/whitelist.php on line 135 Warning: fclose(): supplied argument is not a valid stream resource in /usr/local/www/packages/countryblock/whitelist.php on line 140 
                    

                    Any chance to get this going on embedded? I really like the package…

                    Thanks1

                    That's strange. I added embedded support in version 1.5 a long time ago. What package version do you have?

                    -Tom Schaefer
                    SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                    Please support pfBlocker | File Browser | Strikeback

                    1 Reply Last reply Reply Quote 0
                    • G
                      ghm
                      last edited by

                      @tommyboy180:

                      That's strange. I added embedded support in version 1.5 a long time ago. What package version do you have?

                      0.2.0 - I attach a list of my installed packages below. CB is my newest.

                      packages.png
                      packages.png_thumb

                      1 Reply Last reply Reply Quote 0
                      • D
                        dlawley
                        last edited by

                        @dlawley:

                        Something must have been hanging around.  Had to remove, then reinstall.  Now have CIDR folder and have networks blocked.

                        Thanks for the help, its better help than we get around here for paid support…

                        Sorry sorry for the misunderstanding…. I meant paid support here at our shop  ::)

                        1 Reply Last reply Reply Quote 0
                        • M
                          mst
                          last edited by

                          I am sorry for confusion …..

                          recently had this:

                          Current Status = Restarting
                          no IP address found for __csrf_magic
                          You are blocking 0 Networks

                          Pfsence 2.0 Beta 5 ......

                          1 Reply Last reply Reply Quote 0
                          • G
                            ghm
                            last edited by

                            @ghm:

                            @tommyboy180:

                            That's strange. I added embedded support in version 1.5 a long time ago. What package version do you have?

                            0.2.0 - I attach a list of my installed packages below. CB is my newest.

                            OK - and I can reproduce the following: My system gets a new dynamic WAN-IP every 12hrs (ISP requires that). That change renders CountyBlock not enabled and I have to re-enable manually.

                            1 Reply Last reply Reply Quote 0
                            • S
                              Supermule Banned
                              last edited by

                              You can add a cron job…..

                              I cant remember which file to add to the job, but Tom knows.....:)

                              1 Reply Last reply Reply Quote 0
                              • M
                                mst
                                last edited by

                                I have the same problem even after setting up the cron. Have to manually enable it and then it works. 2.0 beta 5 …...

                                I have fallowed this thread with cron guidance but it looks like it does not work .....

                                Please advice

                                1 Reply Last reply Reply Quote 0
                                • J
                                  JackANSI
                                  last edited by

                                  When you check "Enable Logging?" in the settings page, where is it being logged to?

                                  1 Reply Last reply Reply Quote 0
                                  • T
                                    tommyboy180
                                    last edited by

                                    @JackANSI:

                                    When you check "Enable Logging?" in the settings page, where is it being logged to?

                                    The firewall tab under system logs.

                                    -Tom Schaefer
                                    SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

                                    Please support pfBlocker | File Browser | Strikeback

                                    1 Reply Last reply Reply Quote 0
                                    • X
                                      XIII
                                      last edited by

                                      @tommyboy180:

                                      Thank you. I appreciate the kind words. I'm sure many other package managers are just the same.

                                      I am only referring to my personal experience in contacting you. I know most if not all are very excellent.

                                      For the cron job the command is : /usr/local/etc/rc.d/countryblock.sh

                                      -Chris Stutzman
                                      Sys0:2.0.1: AMD Sempron 140 @2.7 1024M RAM 100GHD
                                      Sys1:2.0.1: Intel P4 @2.66 1024M RAM 40GHD
                                      freedns.afraid.org - Free DNS dynamic DNS subdomain and domain hosting.
                                      Check out the pfSense Wiki

                                      1 Reply Last reply Reply Quote 0
                                      • G
                                        ghm
                                        last edited by

                                        @XIII:

                                        For the cron job the command is : /usr/local/etc/rc.d/countryblock.sh

                                        I have now installed the Cron package as well, reinstalled Country Block and added the above command (every */5 minutes). It does not restart Country Block properly.  I do see the following in Syslog every 5 minutes:

                                        root: Countryblock was found not running
                                        

                                        Is there a restart option that I need to add or is 5min to long - or else?

                                        Thanks!

                                        1 Reply Last reply Reply Quote 0
                                        • S
                                          Supermule Banned
                                          last edited by

                                          Is it possible to build a cron job as a part of CB?? So it does this automatically??

                                          1 Reply Last reply Reply Quote 0
                                          • S
                                            Supermule Banned
                                            last edited by

                                            My cronjob is not working either…...it starts the package every minute.

                                            Not running is the current status and the Cron doesnt start it.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.