Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Some Websites become not availiable - dont know why -

    Scheduled Pinned Locked Moved pfBlockerNG
    10 Posts 2 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      krischeu
      last edited by

      Hi,
      I am running pfsense 2.4.3-RELEASE-p1 (amd64) with pfBlockerNG.
      Logsettings at: Firewall/pfBlockerNG/Alerts/ show me the following:
      Jun 13 09:20:26
      INTERN pfB_Firehol_L3 (1512156596) TCP-S
      192.168.0.166:56671 pcheinz 217.160.0.139:80
      217-160-0-139.elastic-ssl.ui-...
      DE Firehol_L3
      217.160.0.0/24

      And at the Browser I get an error like:
      Error: not availiable at the moment, please try later.

      Example: wetterstein.com --> not working. --> alert entry see above.

      Does anybody can give me a hint, why this site is not working?

      Best Regards,
      Heinz

      1 Reply Last reply Reply Quote 0
      • K
        krischeu
        last edited by

        Next example which is not working: https://www.cl-handels-gmbh.de/Netzteile/ITX-Netzteile/LC-Power-LC90ITX-bulk-ITX-Netzteil.html

        1 Reply Last reply Reply Quote 0
        • K
          krischeu
          last edited by

          ipV4 List: https://raw.githubusercontent.com/firehol/blocklist-ipsets/master/firehol_level3.netset

          K 1 Reply Last reply Reply Quote 0
          • K
            krischeu @krischeu
            last edited by krischeu

            All Websites are on 217.160.0.0/24 and in ip-set of githubusercontent.com: The full /24 network is blocked.
            What a shit configuration of the list.

            1 Reply Last reply Reply Quote 0
            • RonpfSR
              RonpfS
              last edited by RonpfS

              Well don't use it 😉

              Or go to the Alerts (2.1.2_3) or Reports (2.2.1) Tab, there should be a "+" icon that you can use to suppress the IP range. pfBlockerNG will add the network range into the IPV4 Suppression Alias (2.1.2_3) or List (2.2.1) .

              2.4.5-RELEASE-p1 (amd64)
              Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
              Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

              K 1 Reply Last reply Reply Quote 1
              • K
                krischeu
                last edited by

                Thank you for your answer.
                I think to put a complete subnet into a block list should not be done.
                But this is only something from my mind.

                I will have a try with your suggestion to ignore subnet settings from a list.

                Thank you for your help.

                Best Regards,
                Heinz

                1 Reply Last reply Reply Quote 0
                • K
                  krischeu @RonpfS
                  last edited by

                  @ronpfs
                  Hi,
                  I only see an "i" at Alert, but there is no "+".
                  I solved it by creating a Whitelist.

                  RonpfSR 1 Reply Last reply Reply Quote 0
                  • RonpfSR
                    RonpfS @krischeu
                    last edited by RonpfS

                    @krischeu Do you have Suppression enabled ?

                    2.4.5-RELEASE-p1 (amd64)
                    Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
                    Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

                    1 Reply Last reply Reply Quote 1
                    • K
                      krischeu
                      last edited by

                      Now it is turned on. I will check logs when alerts comes up.

                      RonpfSR 1 Reply Last reply Reply Quote 0
                      • RonpfSR
                        RonpfS @krischeu
                        last edited by

                        @krischeu It might not generate alerts for that range if it is in a whitelist.

                        2.4.5-RELEASE-p1 (amd64)
                        Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
                        Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.