Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Looks lke its " working ...

    Scheduled Pinned Locked Moved pfBlockerNG
    25 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      VenimK
      last edited by VenimK

      Schermafbeelding 2019-11-04 om 07.59.10.png

      DHCP WAN

      So Should i change PFBLOCKER IP to 10.10.10.1 again, then, reboot server ..

      1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan
        last edited by Gertjan

        So, the default 192.168.1.0/24 should be fine for LAN setting - the default DHCP pool also.

        @VenimK said in Looks lke its " working ...:

        So Should i change PFBLOCKER IP to 10.10.10.1 again, then, reboot server ..

        Noop.
        You'll be breaking a condition :

        0ed78883-61db-4111-a830-1ca68848f77d-image.png

        Check also the last condition :
        192.168.0.0/16 (your 192.168.1.1) is in the range of this setting, and your WAN is in that range.
        Go for a 172.16.0.1 as a DNSBL Virtual IP setting.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        V 1 Reply Last reply Reply Quote 0
        • V
          VenimK @Gertjan
          last edited by

          @Gertjan

          Schermafbeelding 2019-11-04 om 08.31.58.png

          Changed DNSBL VIP to 172.16.0.1
          GEOIP is working but none of the other

          1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan
            last edited by

            Take an URL from a feed the first alias "pfB_DNSBLIP_v4".
            Feed that into a local "nslookup" prompt.
            Have it resolved.
            Did it return the real IPv4 - or the one from pfBlockerNG ? (like 0.0.0.1 or your local "DNSBL Webserver Configuration / Virtual IP Address ?

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            V 1 Reply Last reply Reply Quote 0
            • V
              VenimK @Gertjan
              last edited by

              @Gertjan said in Looks lke its " working ...:

              pfB_DNSBLIP_v4

              Schermafbeelding 2019-11-04 om 09.02.37.png

              Weird , going to 192.168.1.1

              GertjanG 1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan @VenimK
                last edited by

                @VenimK said in Looks lke its " working ...:

                Weird , going to 192.168.1.1

                That's your ""DNSBL Webserver Configuration / Virtual IP Address".

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                V 1 Reply Last reply Reply Quote 0
                • V
                  VenimK @Gertjan
                  last edited by

                  @Gertjan said in Looks lke its " working ...:

                  That's your ""DNSBL Webserver Configuration / Virtual IP Address".

                  Schermafbeelding 2019-11-04 om 09.12.16.png

                  1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan
                    last edited by

                    ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                    and you did that also ?

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    V 2 Replies Last reply Reply Quote 0
                    • V
                      VenimK @Gertjan
                      last edited by

                      @Gertjan
                      Yes
                      And rebooted to

                      1 Reply Last reply Reply Quote 0
                      • V
                        VenimK @Gertjan
                        last edited by

                        @Gertjan said in Looks lke its " working ...:

                        ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                        and you did that also ?

                        Maybe a reinstall off the plugin

                        1 Reply Last reply Reply Quote 0
                        • GertjanG
                          Gertjan
                          last edited by

                          Don't think so.
                          A Force reload does it for me.

                          No "help me" PM's please. Use the forum, the community will thank you.
                          Edit : and where are the logs ??

                          V 1 Reply Last reply Reply Quote 0
                          • V
                            VenimK @Gertjan
                            last edited by

                            @Gertjan
                            NOw when i do nslookup from a client if get
                            nslookup www.upcoin.com
                            Server: 10.10.10.1 (PFSENSE LAN IP
                            Address: 10.10.10.1#53

                            Name: www.upcoin.com
                            Address: 172.16.0.1 (DNSBL IP)

                            So it kinda works
                            But i get still no logs

                            Schermafbeelding 2019-11-05 om 19.05.14.png

                            V 1 Reply Last reply Reply Quote 0
                            • V
                              VenimK @VenimK
                              last edited by

                              @VenimK
                              did a complete new install pfsense, and then pfblocker-dev.
                              And it still works as before, no loggin with DNSBL.
                              Allthough nslookup looks ok, and stuff
                              nslookup www.yahoo.com
                              Server: 10.10.10.1
                              Address: 10.10.10.1#53

                              Name: www.yahoo.com
                              Address: 10.10.10.1

                              GertjanG 1 Reply Last reply Reply Quote 0
                              • GertjanG
                                Gertjan @VenimK
                                last edited by

                                What is your "DNSBL Webserver Configuration Virtual IP Address " now ?
                                What is your pfSense LAN IP now ?

                                No "help me" PM's please. Use the forum, the community will thank you.
                                Edit : and where are the logs ??

                                V 1 Reply Last reply Reply Quote 0
                                • V
                                  VenimK @Gertjan
                                  last edited by

                                  @Gertjan
                                  LAN INFO

                                  Schermafbeelding 2019-11-07 om 04.29.58.png Schermafbeelding 2019-11-07 om 04.29.48.png

                                  DNSBL INFO
                                  Schermafbeelding 2019-11-07 om 04.30.12.png

                                  1 Reply Last reply Reply Quote 0
                                  • GertjanG
                                    Gertjan
                                    last edited by

                                    Looks all fine to me.

                                    No "help me" PM's please. Use the forum, the community will thank you.
                                    Edit : and where are the logs ??

                                    V 1 Reply Last reply Reply Quote 0
                                    • V
                                      VenimK @Gertjan
                                      last edited by

                                      @Gertjan Schermafbeelding 2019-11-07 om 18.32.43.png

                                      Only pfb_TOP get logged ??

                                      1 Reply Last reply Reply Quote 0
                                      • GertjanG
                                        Gertjan
                                        last edited by

                                        Be happy about it.
                                        it means you're not looking at web pages that (try to) include links to sits that are blocked.
                                        It's as simple as that.

                                        Simply said : when you're looking for pub/scam/blacklisted-pages there is no need to block them.
                                        Because you're not visiting them.
                                        So, there is nothing to block ^^

                                        No "help me" PM's please. Use the forum, the community will thank you.
                                        Edit : and where are the logs ??

                                        V 1 Reply Last reply Reply Quote 0
                                        • V
                                          VenimK @Gertjan
                                          last edited by

                                          @Gertjan
                                          Great, it works now

                                          Schermafbeelding 2019-11-09 om 04.33.15.png

                                          IPblock and DNSBL.

                                          Had to change the NAT rulez
                                          instead of 127.0.0.1 to 10.10.10.1

                                          Schermafbeelding 2019-11-09 om 04.35.34.png

                                          1 Reply Last reply Reply Quote 0
                                          • GertjanG
                                            Gertjan
                                            last edited by Gertjan

                                            The webserver being used by pfBlockerNG is listening to :

                                            [2.4.4-RELEASE][admin@pfsense.brit-hotel-fumel.net]/root: sockstat -4l | grep 'lighttpd_p'
                                            root     lighttpd_p 33889 4  tcp4   *:8081                *:*
                                            root     lighttpd_p 33889 5  tcp4   *:8443                *:*
                                            root     lighttpd_p 33889 6  tcp4   10.10.10.1:443        *:*
                                            

                                            all interfaces, which includes "localhost" or 127.0.0.1

                                            This is probably not stated for nothing :

                                            4c42906b-18c0-4401-a896-01432068c3aa-image.png

                                            No "help me" PM's please. Use the forum, the community will thank you.
                                            Edit : and where are the logs ??

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.