Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Looks lke its " working ...

    Scheduled Pinned Locked Moved pfBlockerNG
    25 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      VenimK
      last edited by

      Been setting up Pfblocker
      when i do nslookup on client i get 10.10.10.1 (ip of pfsense)
      But i does 'nt picks up anything

      Schermafbeelding 2019-11-04 om 05.46.23.png

      Also have the 2 FW Rukel Allow and block DNS as it should work

      Schermafbeelding 2019-11-04 om 06.51.16.png

      What else can I Check ???

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan @VenimK
        last edited by Gertjan

        Hi,

        Read https://en.wikipedia.org/wiki/Domain_Name_System and discover that DNS requests can use TCP packets.

        edit :

        @VenimK said in Looks lke its " working ...:

        when i do nslookup on client i get 10.10.10.1 (ip of pfsense)

        What did you set up here Firewall > pfBlocker > NGDNSBL :
        d1247039-ce85-4de8-8ce3-04ee479673dd-image.png

        ?

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        V 1 Reply Last reply Reply Quote 0
        • V
          VenimK @Gertjan
          last edited by

          @Gertjan

          Schermafbeelding 2019-11-04 om 07.50.39.png

          i've changed that to 192.168.1.1
          Ran into problems because off my lan dhcp

          Schermafbeelding 2019-11-04 om 07.51.37.png

          GertjanG 1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan @VenimK
            last edited by

            @VenimK said in Looks lke its " working ...:

            Ran into problems because off my lan dhcp

            What problems ?
            192.168.1.0/24 was also used for WAN ?

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • V
              VenimK
              last edited by VenimK

              Schermafbeelding 2019-11-04 om 07.59.10.png

              DHCP WAN

              So Should i change PFBLOCKER IP to 10.10.10.1 again, then, reboot server ..

              1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan
                last edited by Gertjan

                So, the default 192.168.1.0/24 should be fine for LAN setting - the default DHCP pool also.

                @VenimK said in Looks lke its " working ...:

                So Should i change PFBLOCKER IP to 10.10.10.1 again, then, reboot server ..

                Noop.
                You'll be breaking a condition :

                0ed78883-61db-4111-a830-1ca68848f77d-image.png

                Check also the last condition :
                192.168.0.0/16 (your 192.168.1.1) is in the range of this setting, and your WAN is in that range.
                Go for a 172.16.0.1 as a DNSBL Virtual IP setting.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                V 1 Reply Last reply Reply Quote 0
                • V
                  VenimK @Gertjan
                  last edited by

                  @Gertjan

                  Schermafbeelding 2019-11-04 om 08.31.58.png

                  Changed DNSBL VIP to 172.16.0.1
                  GEOIP is working but none of the other

                  1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan
                    last edited by

                    Take an URL from a feed the first alias "pfB_DNSBLIP_v4".
                    Feed that into a local "nslookup" prompt.
                    Have it resolved.
                    Did it return the real IPv4 - or the one from pfBlockerNG ? (like 0.0.0.1 or your local "DNSBL Webserver Configuration / Virtual IP Address ?

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    V 1 Reply Last reply Reply Quote 0
                    • V
                      VenimK @Gertjan
                      last edited by

                      @Gertjan said in Looks lke its " working ...:

                      pfB_DNSBLIP_v4

                      Schermafbeelding 2019-11-04 om 09.02.37.png

                      Weird , going to 192.168.1.1

                      GertjanG 1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan @VenimK
                        last edited by

                        @VenimK said in Looks lke its " working ...:

                        Weird , going to 192.168.1.1

                        That's your ""DNSBL Webserver Configuration / Virtual IP Address".

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        V 1 Reply Last reply Reply Quote 0
                        • V
                          VenimK @Gertjan
                          last edited by

                          @Gertjan said in Looks lke its " working ...:

                          That's your ""DNSBL Webserver Configuration / Virtual IP Address".

                          Schermafbeelding 2019-11-04 om 09.12.16.png

                          1 Reply Last reply Reply Quote 0
                          • GertjanG
                            Gertjan
                            last edited by

                            ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                            and you did that also ?

                            No "help me" PM's please. Use the forum, the community will thank you.
                            Edit : and where are the logs ??

                            V 2 Replies Last reply Reply Quote 0
                            • V
                              VenimK @Gertjan
                              last edited by

                              @Gertjan
                              Yes
                              And rebooted to

                              1 Reply Last reply Reply Quote 0
                              • V
                                VenimK @Gertjan
                                last edited by

                                @Gertjan said in Looks lke its " working ...:

                                ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                                and you did that also ?

                                Maybe a reinstall off the plugin

                                1 Reply Last reply Reply Quote 0
                                • GertjanG
                                  Gertjan
                                  last edited by

                                  Don't think so.
                                  A Force reload does it for me.

                                  No "help me" PM's please. Use the forum, the community will thank you.
                                  Edit : and where are the logs ??

                                  V 1 Reply Last reply Reply Quote 0
                                  • V
                                    VenimK @Gertjan
                                    last edited by

                                    @Gertjan
                                    NOw when i do nslookup from a client if get
                                    nslookup www.upcoin.com
                                    Server: 10.10.10.1 (PFSENSE LAN IP
                                    Address: 10.10.10.1#53

                                    Name: www.upcoin.com
                                    Address: 172.16.0.1 (DNSBL IP)

                                    So it kinda works
                                    But i get still no logs

                                    Schermafbeelding 2019-11-05 om 19.05.14.png

                                    V 1 Reply Last reply Reply Quote 0
                                    • V
                                      VenimK @VenimK
                                      last edited by

                                      @VenimK
                                      did a complete new install pfsense, and then pfblocker-dev.
                                      And it still works as before, no loggin with DNSBL.
                                      Allthough nslookup looks ok, and stuff
                                      nslookup www.yahoo.com
                                      Server: 10.10.10.1
                                      Address: 10.10.10.1#53

                                      Name: www.yahoo.com
                                      Address: 10.10.10.1

                                      GertjanG 1 Reply Last reply Reply Quote 0
                                      • GertjanG
                                        Gertjan @VenimK
                                        last edited by

                                        What is your "DNSBL Webserver Configuration Virtual IP Address " now ?
                                        What is your pfSense LAN IP now ?

                                        No "help me" PM's please. Use the forum, the community will thank you.
                                        Edit : and where are the logs ??

                                        V 1 Reply Last reply Reply Quote 0
                                        • V
                                          VenimK @Gertjan
                                          last edited by

                                          @Gertjan
                                          LAN INFO

                                          Schermafbeelding 2019-11-07 om 04.29.58.png Schermafbeelding 2019-11-07 om 04.29.48.png

                                          DNSBL INFO
                                          Schermafbeelding 2019-11-07 om 04.30.12.png

                                          1 Reply Last reply Reply Quote 0
                                          • GertjanG
                                            Gertjan
                                            last edited by

                                            Looks all fine to me.

                                            No "help me" PM's please. Use the forum, the community will thank you.
                                            Edit : and where are the logs ??

                                            V 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.