Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Looks lke its " working ...

    Scheduled Pinned Locked Moved pfBlockerNG
    25 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG
      Gertjan
      last edited by Gertjan

      So, the default 192.168.1.0/24 should be fine for LAN setting - the default DHCP pool also.

      @VenimK said in Looks lke its " working ...:

      So Should i change PFBLOCKER IP to 10.10.10.1 again, then, reboot server ..

      Noop.
      You'll be breaking a condition :

      0ed78883-61db-4111-a830-1ca68848f77d-image.png

      Check also the last condition :
      192.168.0.0/16 (your 192.168.1.1) is in the range of this setting, and your WAN is in that range.
      Go for a 172.16.0.1 as a DNSBL Virtual IP setting.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      V 1 Reply Last reply Reply Quote 0
      • V
        VenimK @Gertjan
        last edited by

        @Gertjan

        Schermafbeelding 2019-11-04 om 08.31.58.png

        Changed DNSBL VIP to 172.16.0.1
        GEOIP is working but none of the other

        1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan
          last edited by

          Take an URL from a feed the first alias "pfB_DNSBLIP_v4".
          Feed that into a local "nslookup" prompt.
          Have it resolved.
          Did it return the real IPv4 - or the one from pfBlockerNG ? (like 0.0.0.1 or your local "DNSBL Webserver Configuration / Virtual IP Address ?

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          V 1 Reply Last reply Reply Quote 0
          • V
            VenimK @Gertjan
            last edited by

            @Gertjan said in Looks lke its " working ...:

            pfB_DNSBLIP_v4

            Schermafbeelding 2019-11-04 om 09.02.37.png

            Weird , going to 192.168.1.1

            GertjanG 1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan @VenimK
              last edited by

              @VenimK said in Looks lke its " working ...:

              Weird , going to 192.168.1.1

              That's your ""DNSBL Webserver Configuration / Virtual IP Address".

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              V 1 Reply Last reply Reply Quote 0
              • V
                VenimK @Gertjan
                last edited by

                @Gertjan said in Looks lke its " working ...:

                That's your ""DNSBL Webserver Configuration / Virtual IP Address".

                Schermafbeelding 2019-11-04 om 09.12.16.png

                1 Reply Last reply Reply Quote 0
                • GertjanG
                  Gertjan
                  last edited by

                  ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                  and you did that also ?

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  V 2 Replies Last reply Reply Quote 0
                  • V
                    VenimK @Gertjan
                    last edited by

                    @Gertjan
                    Yes
                    And rebooted to

                    1 Reply Last reply Reply Quote 0
                    • V
                      VenimK @Gertjan
                      last edited by

                      @Gertjan said in Looks lke its " working ...:

                      ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                      and you did that also ?

                      Maybe a reinstall off the plugin

                      1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan
                        last edited by

                        Don't think so.
                        A Force reload does it for me.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        V 1 Reply Last reply Reply Quote 0
                        • V
                          VenimK @Gertjan
                          last edited by

                          @Gertjan
                          NOw when i do nslookup from a client if get
                          nslookup www.upcoin.com
                          Server: 10.10.10.1 (PFSENSE LAN IP
                          Address: 10.10.10.1#53

                          Name: www.upcoin.com
                          Address: 172.16.0.1 (DNSBL IP)

                          So it kinda works
                          But i get still no logs

                          Schermafbeelding 2019-11-05 om 19.05.14.png

                          V 1 Reply Last reply Reply Quote 0
                          • V
                            VenimK @VenimK
                            last edited by

                            @VenimK
                            did a complete new install pfsense, and then pfblocker-dev.
                            And it still works as before, no loggin with DNSBL.
                            Allthough nslookup looks ok, and stuff
                            nslookup www.yahoo.com
                            Server: 10.10.10.1
                            Address: 10.10.10.1#53

                            Name: www.yahoo.com
                            Address: 10.10.10.1

                            GertjanG 1 Reply Last reply Reply Quote 0
                            • GertjanG
                              Gertjan @VenimK
                              last edited by

                              What is your "DNSBL Webserver Configuration Virtual IP Address " now ?
                              What is your pfSense LAN IP now ?

                              No "help me" PM's please. Use the forum, the community will thank you.
                              Edit : and where are the logs ??

                              V 1 Reply Last reply Reply Quote 0
                              • V
                                VenimK @Gertjan
                                last edited by

                                @Gertjan
                                LAN INFO

                                Schermafbeelding 2019-11-07 om 04.29.58.png Schermafbeelding 2019-11-07 om 04.29.48.png

                                DNSBL INFO
                                Schermafbeelding 2019-11-07 om 04.30.12.png

                                1 Reply Last reply Reply Quote 0
                                • GertjanG
                                  Gertjan
                                  last edited by

                                  Looks all fine to me.

                                  No "help me" PM's please. Use the forum, the community will thank you.
                                  Edit : and where are the logs ??

                                  V 1 Reply Last reply Reply Quote 0
                                  • V
                                    VenimK @Gertjan
                                    last edited by

                                    @Gertjan Schermafbeelding 2019-11-07 om 18.32.43.png

                                    Only pfb_TOP get logged ??

                                    1 Reply Last reply Reply Quote 0
                                    • GertjanG
                                      Gertjan
                                      last edited by

                                      Be happy about it.
                                      it means you're not looking at web pages that (try to) include links to sits that are blocked.
                                      It's as simple as that.

                                      Simply said : when you're looking for pub/scam/blacklisted-pages there is no need to block them.
                                      Because you're not visiting them.
                                      So, there is nothing to block ^^

                                      No "help me" PM's please. Use the forum, the community will thank you.
                                      Edit : and where are the logs ??

                                      V 1 Reply Last reply Reply Quote 0
                                      • V
                                        VenimK @Gertjan
                                        last edited by

                                        @Gertjan
                                        Great, it works now

                                        Schermafbeelding 2019-11-09 om 04.33.15.png

                                        IPblock and DNSBL.

                                        Had to change the NAT rulez
                                        instead of 127.0.0.1 to 10.10.10.1

                                        Schermafbeelding 2019-11-09 om 04.35.34.png

                                        1 Reply Last reply Reply Quote 0
                                        • GertjanG
                                          Gertjan
                                          last edited by Gertjan

                                          The webserver being used by pfBlockerNG is listening to :

                                          [2.4.4-RELEASE][admin@pfsense.brit-hotel-fumel.net]/root: sockstat -4l | grep 'lighttpd_p'
                                          root     lighttpd_p 33889 4  tcp4   *:8081                *:*
                                          root     lighttpd_p 33889 5  tcp4   *:8443                *:*
                                          root     lighttpd_p 33889 6  tcp4   10.10.10.1:443        *:*
                                          

                                          all interfaces, which includes "localhost" or 127.0.0.1

                                          This is probably not stated for nothing :

                                          4c42906b-18c0-4401-a896-01432068c3aa-image.png

                                          No "help me" PM's please. Use the forum, the community will thank you.
                                          Edit : and where are the logs ??

                                          1 Reply Last reply Reply Quote 0
                                          • V
                                            VenimK
                                            last edited by

                                            @Gertjan said in Looks lke its " working ...:

                                            The webserver being used by pfBlockerNG is listening to :

                                            If i leave it @ 127.0.0.1, my when i try to acces a blocked domain the browser keeps spining.
                                            ANd nothing getting logged in DNSBL

                                            sockstat -4l | grep 'lighttpd_p'
                                            root lighttpd_p 85774 4 tcp4 *:8081 :
                                            root lighttpd_p 85774 5 tcp4 *:8443 :
                                            root lighttpd_p 85774 6 tcp4 10.10.10.1:443 :

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.