Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SafeSearch and blacklists aren't working

    Scheduled Pinned Locked Moved pfBlockerNG
    8 Posts 3 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • SweetyS
      Sweety
      last edited by

      Hello !
      I wanted to set up a pfBlockerNG-Devel in a school so I tested everything at work and everything worked fine.
      When I installed this in place (school), nothing worked, not even safesearch or URL blocking with blacklists.
      I even removed Squid to cancel the proxy and test but nothing to do, nothing works ...
      Is it possible to use SquidGuard without SSL Filtering?
      Or pfBlocker without anything more?

      Thank you for your answers ^^

      viktor_gV 1 Reply Last reply Reply Quote 0
      • viktor_gV
        viktor_g Netgate @Sweety
        last edited by

        @sweety

        1. Make sure your clients are using pfSense as their DNS resolver;
        2. Create a Port Forwarding rule for DNS requests: https://docs.netgate.com/pfsense/en/latest/recipes/dns-redirect.html;
        3. Block all DNS-over-HTTPS servers using DoH pfBlockerNG feeds and DoH/DoT Blocking setting on the Firewall
          / pfBlockerNG / DNSBL / DNSBL SafeSearch page;
        SweetyS 1 Reply Last reply Reply Quote 0
        • SweetyS
          Sweety @viktor_g
          last edited by

          @viktor_g I have a DNS server just behind my pfsense is it a problem ?

          viktor_gV 1 Reply Last reply Reply Quote 0
          • viktor_gV
            viktor_g Netgate @Sweety
            last edited by

            @sweety Right
            You have to use pfSense DNS Resolver to use pfBlockerNG features

            SweetyS 1 Reply Last reply Reply Quote 0
            • SweetyS
              Sweety @viktor_g
              last edited by

              @viktor_g OOhhh ok !! and you think it's making problems with my other subject (SSL MITM problem ?) ^^

              viktor_gV 1 Reply Last reply Reply Quote 0
              • viktor_gV
                viktor_g Netgate @Sweety
                last edited by

                @sweety Yes

                SweetyS 1 Reply Last reply Reply Quote 0
                • SweetyS
                  Sweety @viktor_g
                  last edited by

                  @viktor_g So how can i adjust the DNS in Windows and pfSense ? Do you know each steps ? Thanks you ^^

                  W 1 Reply Last reply Reply Quote 0
                  • W
                    wolfsden3 @Sweety
                    last edited by

                    @sweety i am here because I have similar problems. Mine is:

                    ug(Removed due to SafeSearch conflict)
                    uk(Removed due to SafeSearch conflict)unicom|university|uno|uol|ups|
                    uy(Removed due to SafeSearch conflict)
                    uz(Removed due to SafeSearch conflict)va|vacations|vana|vanguard|
                    vc(Removed due to SafeSearch conflict)

                    ...so dumb. There's NO CONFLICT! What's that have to do with FireFox's dumb DNS lookup in the browser if it's to be blocked? FFS these browsers are getting aggressive. So my white lists aren't working either as a result of this feature.

                    TLD Whitelist - Missing data | mailchi.mp | No IP found! |

                    For you to use your Windows DNS servers you simply need to setup your network like this:

                    PC's = your windows DNS servers as their DNS servers
                    Servers = your PFSense as their DNS servers
                    PFSense = your outside DNS provider like OpenDNS, Google, Quad 9, etc, etc.

                    It's not terribly difficult.

                    Good luck!

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.