Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfBlockerNG-devel v3.0.0_15

    Scheduled Pinned Locked Moved pfBlockerNG
    39 Posts 15 Posters 4.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      matthewgcampbell
      last edited by

      Still shows 3.0.0_10 as the latest on my XG-7100 running 21.02-release-p1

      Cool_CoronaC 1 Reply Last reply Reply Quote 1
      • Cool_CoronaC
        Cool_Corona @matthewgcampbell
        last edited by

        @matthewgcampbell

        Exactly my point... updates to packages doesnt show at all.

        You need to CTRL + F5 or reboot.

        If rebooted, all updates are showing.

        M 1 Reply Last reply Reply Quote 0
        • M
          matthewgcampbell @Cool_Corona
          last edited by

          @cool_corona Ive rebooted mine and updates still donโ€™t show.

          1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan @BBcan177
            last edited by Gertjan

            @cool_corona said in pfBlockerNG-devel v3.0.0_15:

            Exactly my point... updates to packages doesnt show at all.

            You mean the dot 15 isn't visible yet ?
            Right now, it's :

            f8b4e63d-e7d4-4af8-a680-564d27934d8c-image.png

            for me because :

            @bbcan177 said in pfBlockerNG-devel v3.0.0_15:

            A Pull Request has been submitted to the pfSense devs for review and approval.

            I explain :
            bbcan edits the code - you can see him doing so in real time : he is using his own github.
            When he thinks it's ok, he places a "pull request".
            Now the Netgate guys come into play : they can look at the code, smoke a pipe, deliberate, accepts, or place questions. They might even leave office for a long weekend.
            Or just stay home, because Netgate's office is in Texas, and they are all on the beach.
            Or remove the snow, and how electricity comes back.
            Or play with the dog (see below) and boxes
            Anyway : they are in Texas, if this rings a bell (the news is international now, we all have CNN, right ?).

            When the pull request gets accepted, they push the Accept button, thebbcan stuff gets merged with the main pfSense github.
            A build is programmed - for the FreeBSD pfSense package.
            If, by any chance, the build is successful, it get published on the files servers

            Our pfSense package sub system checks ones in a while against the Netgate's files servers if new stuff is available.

            If so, you see this :

            38067ceb-a8a4-4799-98f4-20e213947bd4-image.png

            An upgrade exists !!!!!! (dot 14 for me).

            Now, normally, DO NOT upgrade.
            Goto the (this !) forum and have a look for the guy that did upgrade, and see what he has to say ;)
            If the forums messages show a globally positive review, you might considering upgrading.

            Btw : WTF : BBcan : I've not even .14 installed yet, and now .15 is already ramping up ....... ๐Ÿ˜Š

            The dog :

            9a8b72c0-6e7b-4b8a-9132-976ded0fcc7a-image.png

            ( Netgate must be a cool company - thanks for that blog page, rather difference as the others. I do like reading about compilers messing up the optimization of machine code so it kills spin-locks so it kills SG3100 devices, but I like dog also )

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            johnpozJ 1 Reply Last reply Reply Quote 1
            • johnpozJ
              johnpoz LAYER 8 Global Moderator @Gertjan
              last edited by

              @gertjan

              Hmmm - I am only showing
              pfBlockerNG-devel net 3.0.0_10

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 0
              • bmeeksB
                bmeeks
                last edited by bmeeks

                There are two different and distinct respositories for packages. One repo is for CE and the other is for pfSense+. Been that way since "Factory Edition" appeared a while back.

                The Netgate developer team has to manually merge Pull Requests into the pfSense+ repo and then kick off a package build there. Until that is done, new packages that appear for CE users don't show up for pfSense+ users.

                RIght now, looking in the two repos, I see pfSense-2.5.0 CE has version .14 of pfBlockerNG-devel while pfSense+ is still showing only version .10.

                MORGiONM GertjanG 2 Replies Last reply Reply Quote 2
                • MORGiONM
                  MORGiON @bmeeks
                  last edited by

                  @bmeeks Thankyou for the clarification, I was beginning to think something was wrong with my install

                  1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @bmeeks
                    last edited by

                    @bmeeks thank for the heads up.

                    I better get used to mention that I'm using the CE.
                    pfBlockerNG-devel is mostly if not all PHP scripts files, some python script files . No binaries, so basiclly, it's just a pure copy from CE (bbcan is using CE I guess) to +.

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    bmeeksB 1 Reply Last reply Reply Quote 0
                    • bmeeksB
                      bmeeks @Gertjan
                      last edited by

                      @gertjan said in pfBlockerNG-devel v3.0.0_15:

                      @bmeeks thank for the heads up.

                      I better get used to mention that I'm using the CE.
                      pfBlockerNG-devel is mostly if not all PHP scripts files, some python script files . No binaries, so basiclly, it's just a pure copy from CE (bbcan is using CE I guess) to +.

                      Yeah, discovered the existence of the two distinct repos shortly after "Factory Edition" emerged when trying to figure out why my "latest" Snort package update was not showing up for Netgate appliances but showed up for me on CE in my test virtual machines at the time.

                      johnpozJ 1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator @bmeeks
                        last edited by

                        _15 is available for 21.02p1 now - just updated to it.

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        GertjanG 1 Reply Last reply Reply Quote 0
                        • GertjanG
                          Gertjan @johnpoz
                          last edited by Gertjan

                          Also for the CE.

                          No "help me" PM's please. Use the forum, the community will thank you.
                          Edit : and where are the logs ??

                          GertjanG 1 Reply Last reply Reply Quote 0
                          • GertjanG
                            Gertjan @Gertjan
                            last edited by

                            What ?
                            No dot 16 this morning ??

                            No "help me" PM's please. Use the forum, the community will thank you.
                            Edit : and where are the logs ??

                            fireodoF BBcan177B 2 Replies Last reply Reply Quote 0
                            • fireodoF
                              fireodo @Gertjan
                              last edited by

                              @gertjan said in pfBlockerNG-devel v3.0.0_15:

                              What ?
                              No dot 16 this morning ??

                              No ๐Ÿ˜ ๐Ÿ˜‚

                              Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
                              SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
                              pfsense 2.8.0 CE
                              Packages: Apcupsd, Cron, Iftop, Iperf, LCDproc, Nmap, pfBlockerNG, RRD_Summary, Shellcmd, Snort, Speedtest, System_Patches.

                              1 Reply Last reply Reply Quote 0
                              • BBcan177B
                                BBcan177 Moderator @Gertjan
                                last edited by

                                @gertjan said in pfBlockerNG-devel v3.0.0_15:

                                What ?
                                No dot 16 this morning ??

                                Is this a challenge :)

                                "Experience is something you don't get until just after you need it."

                                Website: http://pfBlockerNG.com
                                Twitter: @BBcan177ย  #pfBlockerNG
                                Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                DaddyGoD 1 Reply Last reply Reply Quote 2
                                • DaddyGoD
                                  DaddyGo @BBcan177
                                  last edited by

                                  @bbcan177 said in pfBlockerNG-devel v3.0.0_15:

                                  Is this a challenge :)

                                  Like the life :)

                                  Cats bury it so they can't see it!
                                  (You know what I mean if you have a cat)

                                  1 Reply Last reply Reply Quote 0
                                  • P
                                    pftdm007
                                    last edited by pftdm007

                                    Anybody gets "parse error: Invalid numeric literal" while manually doing an update (probably also during automatic updates) with 3.0.0_15 ?

                                    I see tons of these... Seems to happen with IPv4 lists....

                                    See attached file for log output, the SPAM bot wont let me post the 20 odd lines snippet without flagging me as spam..... What a PITA.

                                    log.txt

                                    Also any of you guys noticed Unbound does NOT restart automatically after pfBlockerNG package update?

                                    ? BBcan177B 2 Replies Last reply Reply Quote 2
                                    • ?
                                      A Former User @pftdm007
                                      last edited by

                                      @pftdm007 You need more upvotes. Let's help them out.

                                      1 Reply Last reply Reply Quote 1
                                      • BBcan177B
                                        BBcan177 Moderator @pftdm007
                                        last edited by

                                        @pftdm007 said in pfBlockerNG-devel v3.0.0_15:

                                        Anybody gets "parse error: Invalid numeric literal" while manually doing an update (probably also during automatic updates) with 3.0.0_15 ?

                                        BGPView is rate-limiting:
                                        https://twitter.com/BBcan177/status/1357161876812087297

                                        Reduce the frequency of ASN Updates.

                                        Also any of you guys noticed Unbound does NOT restart automatically after pfBlockerNG package update?

                                        See:
                                        https://redmine.pfsense.org/issues/11398

                                        "Experience is something you don't get until just after you need it."

                                        Website: http://pfBlockerNG.com
                                        Twitter: @BBcan177ย  #pfBlockerNG
                                        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                        ? P 2 Replies Last reply Reply Quote 0
                                        • ?
                                          A Former User @BBcan177
                                          last edited by A Former User

                                          @bbcan177 Yeah, it is ;)

                                                  try:
                                                      manager = urllib3.PoolManager()
                                                      # bgpview throttles queries
                                                      time.sleep(0.5)     <----------------
                                                      response = manager.request(
                                                          "GET", "https://api.bgpview.io/asn/" + self.asn + "/prefixes")
                                                  except (urllib3.exceptions.HTTPError, urllib3.exceptions.PoolError):
                                                      return
                                          

                                          Edited to add:
                                          In case anyone cares, an alternative to BGPView is this for getting the routed prefixes for an ASN:

                                                  elif data_provider == "radb":
                                                      result = ""
                                                      try:
                                                          sock = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
                                                          sock.connect(("whois.radb.net", 43))
                                                          sock.send(bytes("-i origin " + self.asn + "\r\n", "utf-8"))
                                                          while True:
                                                              data = sock.recv(1024)
                                                              if not data:
                                                                  break
                                                              result += data.decode("utf-8")
                                                          sock.close()
                                                      except OSError:
                                                          sock.close()
                                                          return
                                                      if result:
                                                          output = result.splitlines()
                                                          # The error message if the ASN returns no data is:
                                                          # "%  No entries found for the selected source(s)."
                                                          if output[0].startswith("% "):
                                                              return
                                                          routes4 = [line.removeprefix("route:").strip()
                                                                     for line in output if line.startswith("route:")]
                                                          routes6 = [line.removeprefix("route6:").strip()
                                                                     for line in output if line.startswith(("route6:"))]
                                          
                                          BBcan177B 1 Reply Last reply Reply Quote 0
                                          • BBcan177B
                                            BBcan177 Moderator @A Former User
                                            last edited by

                                            @jwj said in pfBlockerNG-devel v3.0.0_15:

                                            whois.radb.net

                                            Radb.net isn't as accurate as BGPview

                                            "Experience is something you don't get until just after you need it."

                                            Website: http://pfBlockerNG.com
                                            Twitter: @BBcan177ย  #pfBlockerNG
                                            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                            ? 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.