Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PfBlockerNG

    Scheduled Pinned Locked Moved pfBlockerNG
    1.2k Posts 210 Posters 1.8m Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      BreeOge
      last edited by

      If you use the ZFS file system (If you do a full reload) It will work just fine. If you just upgrade or re-install with the UFS file system, then pfBlockerNG will lock up the system with a 502 bad gateway error.

      https://forum.pfsense.org/index.php?topic=137103.0

      In that thread there is a current work around, but like BBcan stated, if you do the work around your widget will not update properly.

      BreeOge

      1 Reply Last reply Reply Quote 0
      • B
        belt9
        last edited by

        I wanted to chime in here as I just updated from a month old RC to 2.4.0-RELEASE last night and ran into this problem today.

        I haven't read through all of the many pages of the many threads that seem related to this issue (show how popular pfBNG is!), so maybe this has already been covered.

        But I've seen several people state that this doesn't happen on ZFS - I have a raidz2 ZFS install, and this happened to me, just throwing that out there.

        1 Reply Last reply Reply Quote 0
        • B
          BreeOge
          last edited by

          @belt9:

          I wanted to chime in here as I just updated from a month old RC to 2.4.0-RELEASE last night and ran into this problem today.

          I haven't read through all of the many pages of the many threads that seem related to this issue (show how popular pfBNG is!), so maybe this has already been covered.

          But I've seen several people state that this doesn't happen on ZFS - I have a raidz2 ZFS install, and this happened to me, just throwing that out there.

          That is good to know. Thank you for the report.  BBcan177 is currently updating it to use SQLlite and this should fix any issues in the future.  In the other thread there is a temp fix posted..

          https://forum.pfsense.org/index.php?topic=137103.75

          Thank you
          BreeOge

          K 1 Reply Last reply Reply Quote 0
          • JailerJ
            Jailer
            last edited by

            Looks like there is an update available in the package manager. Where can one find release notes for the new version? I'm wondering if this has the fix in it.

            1 Reply Last reply Reply Quote 0
            • C
              Cino
              last edited by

              @Jailer:

              Looks like there is an update available in the package manager. Where can one find release notes for the new version? I'm wondering if this has the fix in it.

              https://github.com/pfsense/FreeBSD-ports/commit/fe101279ac400e2794fa27780f020c0bbe1c8caa
              https://github.com/pfsense/FreeBSD-ports/pull/424

              1 Reply Last reply Reply Quote 0
              • P
                pfcode
                last edited by

                @Cino:

                @Jailer:

                Looks like there is an update available in the package manager. Where can one find release notes for the new version? I'm wondering if this has the fix in it.

                https://github.com/pfsense/FreeBSD-ports/commit/fe101279ac400e2794fa27780f020c0bbe1c8caa
                https://github.com/pfsense/FreeBSD-ports/pull/424

                Has it fix the issue??

                Release: pfSense 2.4.3(amd64)
                M/B: Supermicro A1SRi-2558F
                HDD: Intel X25-M 160G
                RAM: 2x8Gb Kingston ECC ValueRAM
                AP: Netgear R7000 (XWRT), Unifi AC Pro

                1 Reply Last reply Reply Quote 0
                • S
                  strigona
                  last edited by

                  @pfcode:

                  @Cino:

                  @Jailer:

                  Looks like there is an update available in the package manager. Where can one find release notes for the new version? I'm wondering if this has the fix in it.

                  https://github.com/pfsense/FreeBSD-ports/commit/fe101279ac400e2794fa27780f020c0bbe1c8caa
                  https://github.com/pfsense/FreeBSD-ports/pull/424

                  Has it fix the issue??

                  No. That update was initiated 18 days ago and is unrelated to the current issue.

                  1 Reply Last reply Reply Quote 0
                  • B
                    BreeOge
                    last edited by

                    We are currently testing a fix, if all goes well you should see an update soon.

                    1 Reply Last reply Reply Quote 0
                    • BBcan177B
                      BBcan177 Moderator
                      last edited by

                      I am going to make a PR shortly to hopefully fix this issue….

                      You could download these two files from my Github gist to get the updated code:

                      fetch -o /usr/local/www/pfblockerng/www/index.php "https://gist.githubusercontent.com/BBcan177/9f9c8e62b166cee07ad16cd4ff59103c/raw"
                      
                      fetch -o /usr/local/pkg/pfblockerng/pfblockerng.inc "https://gist.githubusercontent.com/BBcan177/7ff15715be0f02afdbe0a00c676aedce/raw"
                      

                      You will need to restart the DNSBL Service for this to take effect.

                      A reboot is not required, but would be recommended.

                      "Experience is something you don't get until just after you need it."

                      Website: http://pfBlockerNG.com
                      Twitter: @BBcan177  #pfBlockerNG
                      Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                      1 Reply Last reply Reply Quote 0
                      • JailerJ
                        Jailer
                        last edited by

                        @BreeOge:

                        We are currently testing a fix, if all goes well you should see an update soon.

                        https://forum.pfsense.org/index.php?topic=137103.msg756625#msg756625

                        1 Reply Last reply Reply Quote 0
                        • A
                          akong
                          last edited by

                          I have get 502 Bad Gateway and use pfsense 2.4.0 pfblockerng 2.1.2
                          How to fix it?

                          1 Reply Last reply Reply Quote 0
                          • B
                            bctrainers
                            last edited by

                            Hi, one thing i am noticing with pfBlockerNG is that it may be missing an end-double quote on its shell commands?

                            root    81266   0.0  0.0  13084   2780  -  D    19:50        0:00.00 sh -c /usr/bin/grep -l ' "dmd\\.metaservices\\.microsoft\\.com 60 IN A' /var/db/pfblockerng/dnsblalias/*
                            root    81779   0.0  0.0  13084   2780  -  D    19:51        0:00.00 sh -c /usr/bin/grep -l ' "rules\\.quantcount\\.com 60 IN A' /var/db/pfblockerng/dnsblalias/*
                            root    82010   0.0  0.0  13084   2780  -  D    19:51        0:00.00 sh -c /usr/bin/grep -l ' "rules\\.quantcount\\.com 60 IN A' /var/db/pfblockerng/dnsblalias/*
                            

                            pfSense GUI was also seized up once more.

                            pkill, killall, and other assorted commands all fail to kill the commands running above.

                            Shell is accessible (otherwise, how would i be able to post the above code block!)  :D

                            Additional running services are also inaccessible; ntopng, OpenVPN. Fairly certain the box has all the latest packages/updates installed.

                            1 Reply Last reply Reply Quote 0
                            • BBcan177B
                              BBcan177 Moderator
                              last edited by

                              @BrettC:

                              Hi, one thing i am noticing with pfBlockerNG is that it may be missing an end-double quote on its shell commands?

                              No the quote is used in the grep command to find an exact match starting with the first quotation mark in the line…  The 502 error is being worked on...  The upcoming release doesn't seem to be affected by this and will hopefully be released shortly... Stay tuned!

                              "Experience is something you don't get until just after you need it."

                              Website: http://pfBlockerNG.com
                              Twitter: @BBcan177  #pfBlockerNG
                              Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                              1 Reply Last reply Reply Quote 0
                              • ontzuevanhussenO
                                ontzuevanhussen
                                last edited by

                                Ok, thank you so much

                                1 Reply Last reply Reply Quote 0
                                • E
                                  EdIlS0N LiMa
                                  last edited by

                                  ERRO MEMORIA.JPG

                                  Good afternoon friends this message arrives all the time,

                                  and when I restart pfsense the internet does not work I need to disable pfblocker save, then the internet works again, activate pfblocker again. every time I restart pfsense and need to do this.
                                     Any solution ?

                                  RonpfSR 1 Reply Last reply Reply Quote 0
                                  • E
                                    EdIlS0N LiMa
                                    last edited by

                                    Another thing I am not using DNSBL.

                                    1 Reply Last reply Reply Quote 0
                                    • RonpfSR
                                      RonpfS @EdIlS0N LiMa
                                      last edited by

                                      @EdIlS0N-LiMa
                                      Did you run a Force Update All, increase?

                                      @BBcan177 said in pfBlockerNG errors when GoeIP enabled:

                                      In pfSense > System > Advanced > Firewall & NAT > "Firewall Maximum Table Entries"

                                      The package should default that to "2000000" entries.

                                      Follow that with a Filter Reload

                                      2.4.5-RELEASE-p1 (amd64)
                                      Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
                                      Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

                                      E 1 Reply Last reply Reply Quote 0
                                      • E
                                        EdIlS0N LiMa @RonpfS
                                        last edited by

                                        @RonpfS Thank you friend it worked.

                                        1 Reply Last reply Reply Quote 0
                                        • P
                                          programmer1311 @wbennett77
                                          last edited by

                                          This post is deleted!
                                          1 Reply Last reply Reply Quote 0
                                          • K
                                            KennethMauriello777 @BreeOge
                                            last edited by KennethMauriello777

                                            @breeoge said in PfBlockerNG:

                                            @belt9:

                                            I wanted to chime in here as I just updated from a month old RC to 2.4.0-RELEASE last night and ran into this problem today.

                                            I haven't read through all of the many pages of the many threads that seem related to this issue (show how popular pfBNG is!), so maybe this has already been covered.

                                            But I've seen several people state that this doesn't happen on ZFS - I have a raidz2 ZFS install, and this happened to me, just throwing that out there.

                                            That is good to know. Thank you for the report.  BBcan177 is currently updating it to use SQLlite and this should fix any issues in the future.  In the other thread there is a temp fix posted..

                                            https://create.vista.com/colors/palettes/

                                            Thank you
                                            BreeOge

                                            Hello my friend. Many thanks to Bbcan177 for keeping the report up to date. as a result of this, in principle, the given problems are corrected.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.