• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

PfBlockerNG

Scheduled Pinned Locked Moved pfBlockerNG
7 Posts 3 Posters 2.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • R
    repa
    last edited by Jan 6, 2016, 4:15 PM

    Hi,

    we're currently "playing" arround with pfBlockerNG to secure our systems a bit more.

    The big question that is currently in the room:

    • we have some pfsense firewalls with alot of networks behind. Is it possible to use PfBlockerNG and select specific destinations?

    So ex: pfB_Africa_V4 is only blocked for network 1.2.3.4/24, but not for other networks.

    I can edit the firwall rules, but on next update, the changes are lost.

    Thank!

    1 Reply Last reply Reply Quote 0
    • R
      RonpfS
      last edited by Jan 6, 2016, 4:22 PM

      You can use the List Action : Alias Deny/Pass/Match/Native and create you own FW rules using those aliases

      2.4.5-RELEASE-p1 (amd64)
      Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
      Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

      1 Reply Last reply Reply Quote 0
      • R
        repa
        last edited by Jan 6, 2016, 4:25 PM

        thanks for your quick answer!

        You mean i can use the pfblockNG Aliases and create my own rules ?

        But this will not work, when the rule order is pfB_Block/Reject | All other rules ?

        1 Reply Last reply Reply Quote 0
        • R
          repa
          last edited by Jan 6, 2016, 4:31 PM

          @RonpfS:

          You can use the List Action : Alias Deny/Pass/Match/Native and create you own FW rules using those aliases

          Okay, got it now, thanks!

          1 Reply Last reply Reply Quote 0
          • B
            BBcan177 Moderator
            last edited by Jan 8, 2016, 10:01 PM

            You can also customize the pfBNG firewall rules using the "Adv. Inbound Settings".

            The next release will also allow the customization of the "Outbound" Firewall rules… This will make it easier to manage firewall rules instead of manually creating "Alias" Type rules.

            "Experience is something you don't get until just after you need it."

            Website: http://pfBlockerNG.com
            Twitter: @BBcan177  #pfBlockerNG
            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

            1 Reply Last reply Reply Quote 0
            • R
              repa
              last edited by Jan 9, 2016, 7:30 AM

              @BBcan177:

              You can also customize the pfBNG firewall rules using the "Adv. Inbound Settings".

              The next release will also allow the customization of the "Outbound" Firewall rules… This will make it easier to manage firewall rules instead of manually creating "Alias" Type rules.

              Thanks for your reply.

              we have the following condition:

              Germany needs to access Host #1, but Germany dont have to enter Host #2

              Sweden needs to have access to Host #2 but not to host #1

              I think, we can't get this working with pfBlockerNG, right ?

              1 Reply Last reply Reply Quote 0
              • B
                BBcan177 Moderator
                last edited by Jan 9, 2016, 9:56 PM

                @repa:

                I think, we can't get this working with pfBlockerNG, right ?

                Yes

                "Experience is something you don't get until just after you need it."

                Website: http://pfBlockerNG.com
                Twitter: @BBcan177  #pfBlockerNG
                Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                1 Reply Last reply Reply Quote 0
                7 out of 7
                • First post
                  7/7
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                  This community forum collects and processes your personal information.
                  consent.not_received