Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Looks lke its " working ...

    Scheduled Pinned Locked Moved pfBlockerNG
    25 Posts 2 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG
      Gertjan
      last edited by

      Take an URL from a feed the first alias "pfB_DNSBLIP_v4".
      Feed that into a local "nslookup" prompt.
      Have it resolved.
      Did it return the real IPv4 - or the one from pfBlockerNG ? (like 0.0.0.1 or your local "DNSBL Webserver Configuration / Virtual IP Address ?

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      V 1 Reply Last reply Reply Quote 0
      • V
        VenimK @Gertjan
        last edited by

        @Gertjan said in Looks lke its " working ...:

        pfB_DNSBLIP_v4

        Schermafbeelding 2019-11-04 om 09.02.37.png

        Weird , going to 192.168.1.1

        GertjanG 1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan @VenimK
          last edited by

          @VenimK said in Looks lke its " working ...:

          Weird , going to 192.168.1.1

          That's your ""DNSBL Webserver Configuration / Virtual IP Address".

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          V 1 Reply Last reply Reply Quote 0
          • V
            VenimK @Gertjan
            last edited by

            @Gertjan said in Looks lke its " working ...:

            That's your ""DNSBL Webserver Configuration / Virtual IP Address".

            Schermafbeelding 2019-11-04 om 09.12.16.png

            1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan
              last edited by

              ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

              and you did that also ?

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              V 2 Replies Last reply Reply Quote 0
              • V
                VenimK @Gertjan
                last edited by

                @Gertjan
                Yes
                And rebooted to

                1 Reply Last reply Reply Quote 0
                • V
                  VenimK @Gertjan
                  last edited by

                  @Gertjan said in Looks lke its " working ...:

                  ff5bad85-f268-44a7-9907-eb5c27b2cd6e-image.png

                  and you did that also ?

                  Maybe a reinstall off the plugin

                  1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan
                    last edited by

                    Don't think so.
                    A Force reload does it for me.

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    V 1 Reply Last reply Reply Quote 0
                    • V
                      VenimK @Gertjan
                      last edited by

                      @Gertjan
                      NOw when i do nslookup from a client if get
                      nslookup www.upcoin.com
                      Server: 10.10.10.1 (PFSENSE LAN IP
                      Address: 10.10.10.1#53

                      Name: www.upcoin.com
                      Address: 172.16.0.1 (DNSBL IP)

                      So it kinda works
                      But i get still no logs

                      Schermafbeelding 2019-11-05 om 19.05.14.png

                      V 1 Reply Last reply Reply Quote 0
                      • V
                        VenimK @VenimK
                        last edited by

                        @VenimK
                        did a complete new install pfsense, and then pfblocker-dev.
                        And it still works as before, no loggin with DNSBL.
                        Allthough nslookup looks ok, and stuff
                        nslookup www.yahoo.com
                        Server: 10.10.10.1
                        Address: 10.10.10.1#53

                        Name: www.yahoo.com
                        Address: 10.10.10.1

                        GertjanG 1 Reply Last reply Reply Quote 0
                        • GertjanG
                          Gertjan @VenimK
                          last edited by

                          What is your "DNSBL Webserver Configuration Virtual IP Address " now ?
                          What is your pfSense LAN IP now ?

                          No "help me" PM's please. Use the forum, the community will thank you.
                          Edit : and where are the logs ??

                          V 1 Reply Last reply Reply Quote 0
                          • V
                            VenimK @Gertjan
                            last edited by

                            @Gertjan
                            LAN INFO

                            Schermafbeelding 2019-11-07 om 04.29.58.png Schermafbeelding 2019-11-07 om 04.29.48.png

                            DNSBL INFO
                            Schermafbeelding 2019-11-07 om 04.30.12.png

                            1 Reply Last reply Reply Quote 0
                            • GertjanG
                              Gertjan
                              last edited by

                              Looks all fine to me.

                              No "help me" PM's please. Use the forum, the community will thank you.
                              Edit : and where are the logs ??

                              V 1 Reply Last reply Reply Quote 0
                              • V
                                VenimK @Gertjan
                                last edited by

                                @Gertjan Schermafbeelding 2019-11-07 om 18.32.43.png

                                Only pfb_TOP get logged ??

                                1 Reply Last reply Reply Quote 0
                                • GertjanG
                                  Gertjan
                                  last edited by

                                  Be happy about it.
                                  it means you're not looking at web pages that (try to) include links to sits that are blocked.
                                  It's as simple as that.

                                  Simply said : when you're looking for pub/scam/blacklisted-pages there is no need to block them.
                                  Because you're not visiting them.
                                  So, there is nothing to block ^^

                                  No "help me" PM's please. Use the forum, the community will thank you.
                                  Edit : and where are the logs ??

                                  V 1 Reply Last reply Reply Quote 0
                                  • V
                                    VenimK @Gertjan
                                    last edited by

                                    @Gertjan
                                    Great, it works now

                                    Schermafbeelding 2019-11-09 om 04.33.15.png

                                    IPblock and DNSBL.

                                    Had to change the NAT rulez
                                    instead of 127.0.0.1 to 10.10.10.1

                                    Schermafbeelding 2019-11-09 om 04.35.34.png

                                    1 Reply Last reply Reply Quote 0
                                    • GertjanG
                                      Gertjan
                                      last edited by Gertjan

                                      The webserver being used by pfBlockerNG is listening to :

                                      [2.4.4-RELEASE][admin@pfsense.brit-hotel-fumel.net]/root: sockstat -4l | grep 'lighttpd_p'
                                      root     lighttpd_p 33889 4  tcp4   *:8081                *:*
                                      root     lighttpd_p 33889 5  tcp4   *:8443                *:*
                                      root     lighttpd_p 33889 6  tcp4   10.10.10.1:443        *:*
                                      

                                      all interfaces, which includes "localhost" or 127.0.0.1

                                      This is probably not stated for nothing :

                                      4c42906b-18c0-4401-a896-01432068c3aa-image.png

                                      No "help me" PM's please. Use the forum, the community will thank you.
                                      Edit : and where are the logs ??

                                      1 Reply Last reply Reply Quote 0
                                      • V
                                        VenimK
                                        last edited by

                                        @Gertjan said in Looks lke its " working ...:

                                        The webserver being used by pfBlockerNG is listening to :

                                        If i leave it @ 127.0.0.1, my when i try to acces a blocked domain the browser keeps spining.
                                        ANd nothing getting logged in DNSBL

                                        sockstat -4l | grep 'lighttpd_p'
                                        root lighttpd_p 85774 4 tcp4 *:8081 :
                                        root lighttpd_p 85774 5 tcp4 *:8443 :
                                        root lighttpd_p 85774 6 tcp4 10.10.10.1:443 :

                                        1 Reply Last reply Reply Quote 0
                                        • First post
                                          Last post
                                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.