• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

DNSBL doesn't work

Scheduled Pinned Locked Moved pfBlockerNG
4 Posts 2 Posters 550 Views 2 Watching
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A Offline
    Abdulkarim
    last edited by Nov 25, 2020, 9:48 AM

    Hi team, I have installed pfBlockerNG in pfsense but the issue is on DNSBL it doesn't direct the blocked sites to Virtual IP. When I checked the errors logs am seeing this message [ DNSBL FAIL ] [ Skipping : Social ] what could be the issue?

    1 Reply Last reply Reply Quote 0
    • G Offline
      Gertjan
      last edited by Nov 25, 2020, 11:59 AM

      You want to see :

      0998d4a1-9f31-4628-8eed-7d415fd32698-image.png

      ?
      You can !
      Visit https://10.10.10.1:8443, acknowledge all the browser alerts, no risk as you are visiting a web server on your router/firewall that is administered by you - and you'll see it.
      ok .... that was a joke.

      The virtual-pfBlockerNG webserver uses it's own certificate, which says that it is not facebook, Istagram or Twitter etc.
      Your browser want to visit a social network site, but finds something else.

      Now, think. What happens ? You already know it ! ;)
      At best : you see the browser error message that states that it block the 'site' because the it's answer wasn't the social network.
      Worst : the certificate the virtual-pfBlockerNG webserver is is a self signed. So the browser (probably) doesn't even bother showing you something.
      Both reactions are what you want to happen.
      So : question solved.

      The idea of using an isolated Ip with a low-bud web browser to show people that the content the browser is looking for is blocked has no real meaning any more.

      You do not want to see the banner (image above) because you are against MITM, right ?

      Btw :
      You said "pfBlockerNG " : that one is very old.
      pfBlockerNGpfBlockerNG-devel is about to get retired.
      Version 3+fraction came out today.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      1 Reply Last reply Reply Quote 0
      • A Offline
        Abdulkarim
        last edited by Nov 25, 2020, 12:31 PM

        The issue is I don't want to see the page you mentioned above, but I can still access Youtube, Twitter, etc. while I blocked them. When I check error logs it says the [ DNSBL FAIL ] [ Skipping : Social ].

        G 1 Reply Last reply Nov 25, 2020, 12:42 PM Reply Quote 0
        • G Offline
          Gertjan @Abdulkarim
          last edited by Nov 25, 2020, 12:42 PM

          Actually, some thinking on my side was needed ;)

          @Abdulkarim said in DNSBL doesn't work:

          [ DNSBL FAIL ] [ Skipping : Social ].

          Do you see this message in an pfBlocker 'update log' ?
          Doesn't this mean that the download of feed that implements social blocking failed ? Which would explain the non blocking.

          Can you give more info / context ?

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received