Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfblocker – list only contains a single IP 1.1.1.1

    Scheduled Pinned Locked Moved pfSense Packages
    4 Posts 2 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      breakaway
      last edited by

      Hi,

      I just started playing with pfblocker a couple of days ago. For testing I setup an alias with IPv4 and IPv6 blocks for the "Oceania" continent. After a day or two, I found that the IPv4 block had emptied out and only had one IP address in it : 1.1.1.1

      This caused undesirable behaviour in the firewall.

      Usually if I force a reload the Alias becomes populated with blocks and works as you'd expect it to, but seems to come back after a few hours/ day or so at the most.

      Is this due to something I'm doing wrong?

      Edit: Thought I'd mention that I have enabled de-duplication for IPv4 lists. I'm going to disable this now and see if it has any bearing on the error.

      Any help appreciated.

      1 Reply Last reply Reply Quote 0
      • BBcan177B
        BBcan177 Moderator
        last edited by

        Hi breakaway,

        Are you sure that you only have the Oceania list and no other Lists configured? I have seen where someone has selected a Country from the Top20 tab and also selected the same Country in a Continent Tab and that can cause this scenario.

        "1.1.1.1" is an empty place holder so that the Alias is never empty when the de-duplication process determines that there are duplicates.

        "Experience is something you don't get until just after you need it."

        Website: http://pfBlockerNG.com
        Twitter: @BBcan177  #pfBlockerNG
        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

        1 Reply Last reply Reply Quote 0
        • BBcan177B
          BBcan177 Moderator
          last edited by

          Ok I tested this scenario in a test VM and it is a bug. After a couple updates with a single Country Alias and no other Blocklists defined and with de-duplication enabled the outcome is as you have described.

          Please leave de-duplication disabled until you add other Lists. Typically de-duplication is only needed for other types of Blocklists. MaxMind is the source of the Country lists and there will not be any duplication in those lists (except if you duplicate a Country in Top20).  Thanks for pointing this out and I will push a fix as time permits.

          Thanks!

          "Experience is something you don't get until just after you need it."

          Website: http://pfBlockerNG.com
          Twitter: @BBcan177  #pfBlockerNG
          Reddit: https://www.reddit.com/r/pfBlockerNG/new/

          1 Reply Last reply Reply Quote 0
          • B
            breakaway
            last edited by

            Hi BBCan177 – thanks for that, I did have two lists enabled, Top20 and Oceania but as far as I can remember Oceania is not part of Top20.

            I'll leave dedupe switched off for now, doesn't look like there is any benefit for having it enabled in my environment.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.