• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

pfSense pfBlocker and mobile phones apps

Scheduled Pinned Locked Moved pfBlockerNG
9 Posts 4 Posters 2.3k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • W
    William Barni
    last edited by William Barni Oct 15, 2019, 2:54 PM Oct 15, 2019, 2:35 PM

    I can't seem to find a way to block any app activity in my mobile phones.
    I can block youtube in the workstations via TLD, but all the mobilephones have normal access to videos, facebook and whatever they want.

    I added a rule in pfSense to block all traffic on port 53 from LAN, so everyone needs to use pfSense as DNS server... but youtube and other apps keep working normally.

    Source any, Destination Lan net, allow port 53
    Source Lan net, Destination any, block port 53

    I've also added youtube (youtube.com and many other hosts) into a custom list, did not work.

    DNS Resolver is enabled.
    I'm on pfSense 2.4.4-RELEASE-p3 and pfBlockerNG 2.1.4_17.

    P 1 Reply Last reply Oct 15, 2019, 3:20 PM Reply Quote 0
    • P
      provels @William Barni
      last edited by Oct 15, 2019, 3:20 PM

      @William-Barni Try this:
      https://docs.netgate.com/pfsense/en/latest/dns/redirecting-all-dns-requests-to-pfsense.html
      But if your phones are using their data plan instead of your WiFi, you're SOL.

      Peder

      MAIN - pfSense+ 24.11-RELEASE - Adlink MXE-5401, i7, 16 GB RAM, 64 GB SSD. 500 GB HDD for SyslogNG
      BACKUP - pfSense+ 23.01-RELEASE - Hyper-V Virtual Machine, Gen 1, 2 v-CPUs, 3 GB RAM, 8GB VHDX (Dynamic)

      1 Reply Last reply Reply Quote 0
      • W
        William Barni
        last edited by Oct 15, 2019, 3:54 PM

        They are connected via the WiFi, without any data enabled but the WiFi and the WiFi routers are on bridge mode.

        1 Reply Last reply Reply Quote 0
        • P
          pfSenseTest
          last edited by Oct 15, 2019, 4:03 PM

          You didn't say, but depending on the mobile phone it could be this...
          https://forum.netgate.com/topic/135832/quad9-dns-over-tls-setup-with-unbound-forwarding-in-2-4-4-rc/2
          Phones could be using TLS via port 853 for DNS

          2x SG-5100 | MBT-4220 (retired) | SG-1000 (retired)

          W 1 Reply Last reply Oct 15, 2019, 5:01 PM Reply Quote 1
          • W
            William Barni @pfSenseTest
            last edited by Oct 15, 2019, 5:01 PM

            @pfSenseTest Added the firewall rules mentioned in the link (I already had added the DNS, and now I added the TLSDNS ones) and in the mobile the youtube is blocked when accesing via browser but the app still works perfectly fine.

            Several mobile phones, all the same behavior. iOS 10, 11 and 12. Android 6, 7 and 8.

            P 1 Reply Last reply Oct 15, 2019, 5:39 PM Reply Quote 0
            • P
              provels
              last edited by Oct 15, 2019, 5:03 PM

              Probably need to pick one of these phone's IPs and create a rule to log everything for that IP.

              Peder

              MAIN - pfSense+ 24.11-RELEASE - Adlink MXE-5401, i7, 16 GB RAM, 64 GB SSD. 500 GB HDD for SyslogNG
              BACKUP - pfSense+ 23.01-RELEASE - Hyper-V Virtual Machine, Gen 1, 2 v-CPUs, 3 GB RAM, 8GB VHDX (Dynamic)

              1 Reply Last reply Reply Quote 0
              • P
                pfSenseTest @William Barni
                last edited by Oct 15, 2019, 5:39 PM

                @William-Barni said in pfSense pfBlocker and mobile phones apps:

                blocked when accesing via browser but the app still works perfectly fine.

                web browser vs dedicated app are 2 different things.

                https://www.netgate.com/blog/application-detection-on-pfsense-software.html

                https://docs.netgate.com/pfsense/en/latest/ids-ips/setup-snort-package.html

                2x SG-5100 | MBT-4220 (retired) | SG-1000 (retired)

                W 1 Reply Last reply Oct 15, 2019, 6:57 PM Reply Quote 1
                • W
                  William Barni @pfSenseTest
                  last edited by Oct 15, 2019, 6:57 PM

                  @pfSenseTest Hum... ok. Thanks for the answer.

                  I need to learn a ton of new tools and to develop rules for them, understand their behavior, just to block youtube.

                  B 1 Reply Last reply Oct 16, 2019, 12:27 PM Reply Quote 0
                  • B
                    bmeeks @William Barni
                    last edited by bmeeks Oct 16, 2019, 12:28 PM Oct 16, 2019, 12:27 PM

                    @William-Barni said in pfSense pfBlocker and mobile phones apps:

                    @pfSenseTest Hum... ok. Thanks for the answer.

                    I need to learn a ton of new tools and to develop rules for them, understand their behavior, just to block youtube.

                    YouTube does not want to be blocked ... 😉 . So they make sure it is somewhere between difficult and impossible to block their traffic. Google has gotta have that ad revenue you know ... 😀 .

                    1 Reply Last reply Reply Quote 0
                    6 out of 9
                    • First post
                      6/9
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                      This community forum collects and processes your personal information.
                      consent.not_received