Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PfBlockerNG trying to do too much?

    Scheduled Pinned Locked Moved pfBlockerNG
    4 Posts 4 Posters 1.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by

      So while BBcan177 you have done some amazing stuff with this package..  It came up in another thread that maybe your trying to throw everything even the kitchensink into it.  dnsbl, tld, etc.  There are threads with version 2.0 and 2.1 and then with TLD, etc.

      While I would love just to have the feature set of your geoip stuff into aliases, I personally do not want or need all the other features you have thrown in.

      the ability to create my own list with picking and choosing which countries - kind of like the top 20 but maybe I want countries that are not spammers or in the top 20 in this list and from different regions of the world, etc..  Maybe there already is that option?  If so I did not see it, maybe because of all the other features.

      Curious would anyone else like to see slimmed down version of pfblocker?  I really don't want it creating auto firewall rules for me, no offense at your coding stills or anything.  I just do not like the idea of auto rules in any sense of the word.  But I do love the ability to easy pick IP blocks of specific countries to use in an alias.. You made that brain dead easy - would love to see package that does just that..

      An easy package for alias management of different list sources, sure ad servers could be in there, etc. your package feature of using custom lists is great.  This is the part I would like to see broken out on its own, I don't want to run a server providing images, etc.  I just want leverage the great work you have done with the alias and geoip and possible other lists, etc.

      If there was enough call for this, would you be willing to create I guess sub systems of the overall package that could be used on their own without having to install the whole kitchensink, etc.

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      1 Reply Last reply Reply Quote 0
      • kklouzalK
        kklouzal
        last edited by

        I only use the DNSBL features with custom Feeds and EasyList. No need for the other bells and whistles included within DNSBL such as Alexa or TLD but that's not to say someone else doesn't! :)

        As far as automatic rule creation goes it personally doesn't bother me however it might be an issue with complicated setups? On the other hand, requiring a separate web server to serve up 1x1px images is something I don't enjoy. Just forward blocked requests to 0.0.0.0?

        I in no way want to tell the author how to create.
        Keep up the fantastic work,
        bows

        1 Reply Last reply Reply Quote 0
        • RonpfSR
          RonpfS
          last edited by

          @kklouzal:

          On the other hand, requiring a separate web server to serve up 1x1px images is something I don't enjoy. Just forward blocked requests to 0.0.0.0?

          DNSBL web server also logs the access for the Alerts tab.

          2.4.5-RELEASE-p1 (amd64)
          Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
          Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

          1 Reply Last reply Reply Quote 0
          • M
            Mr. Jingles
            last edited by

            @johnpoz:

            Curious would anyone else like to see slimmed down version of pfblocker?

            I really don't want it creating auto firewall rules for me, no offense at your coding stills or anything.  I just do not like the idea of auto rules in any sense of the word.  But I do love the ability to easy pick IP blocks of specific countries to use in an alias.. You made that brain dead easy - would love to see package that does just that..

            To answer: no. I think BB is, to put it in popular sitcom-TV terms: ""like" OMG".

            Because BB probably (I haven't asked, so just guessing) has a Blueprint of '"The Ultimate Firewall Blocking Tool Set", and in such an ultimate tool set you want as many different tools.

            6 and a half billion people know that they are stupid, agressive, lower life forms.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.