• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Problem with pfBlockerNG List - How can I fix it? [SOLVED]

Scheduled Pinned Locked Moved pfBlockerNG
5 Posts 3 Posters 1.9k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G
    guardian Rebel Alliance
    last edited by Jan 20, 2017, 3:01 AM Jan 19, 2017, 10:03 PM

    There appears to be an issue with these two lists:

    http://hosts-file.net/exp.txt
    http://hosts-file.net/hjk.txt

    that appear on firehol_level1 that are causing problems:

    **[ hphosts_exp ] Downloading update .. 200 OK. completed ..
    [ pfB_Level_1 hphosts_exp ] List Error ]

    [ hphosts_hjk ] Downloading update [ 01/19/17 13:08:31 ] .. 200 OK. completed ..
    [ pfB_Level_1 hphosts_hjk ] List Error ]**

    I am assuming that the "converted lists" should be stored in /var/db/pfblockerng/deny , and there is no file corresponding to hphosts exp/hjk.

    How do I find out what is causing the problem, and more importantly fix it/remove the offending line so that I can use the rest of the list.

    In case anyone wants to see it, the full log is below:

    UPDATE PROCESS START [ 01/19/17 13:08:26 ]
    
    Clearing all DNSBL Feeds... 
    ** DNSBL Disabled **
    
    ===[  Continent Process  ]============================================
    
    ===[  IPv4 Process  ]=================================================
    
    [ hphosts_psh ]		 exists. [ 01/19/17 13:08:27 ]
    [ badips ]		 exists.
    [ openbl_90d ]		 exists.
    [ stopforumspam_toxic ]	 exists.
    [ botscout ]		 exists.
    [ malc0de ]		 exists.
    [ cleanmx_phishing ]	 exists.
    [ greensnow ]		 exists.
    [ maxmind_proxy_fraud ]	 exists.
    [ hphosts_emd ]		 exists.
    
    [ hphosts_exp ]		 Downloading update .. 200 OK. completed ..
    [ pfB_Level_1 hphosts_exp ] List Error ]
    
    [ hphosts_hjk ]		 Downloading update [ 01/19/17 13:08:31 ] .. 200 OK. completed ..
    [ pfB_Level_1 hphosts_hjk ] List Error ]
    
    [ iblocklist_spyware ]	 exists. [ 01/19/17 13:08:32 ]
    [ dshield ]		 exists.
    [ zeus_badips ]		 exists.
    [ feodo_badips ]	 exists.
    [ ransomware_rw ]	 exists.
    [ et_compromised ]	 exists.
    [ et_block ]		 exists.
    [ spamhaus_drop ]	 exists.
    [ spamhaus_edrop ]	 exists.
    [ sslbl ]		 exists.
    [ snort_ipfilter ]	 exists.
    [ bambenek_c2 ]		 exists.
    [ alienvault_reputation ] exists.
    [ malwaredomainlist ]	 exists.
    [ nt_malware_http ]	 exists.
    [ nt_malware_dns ]	 exists.
    [ nt_ssh_7d ]		 exists.
    [ bruteforceblocker ]	 exists.
    [ blocklist_de ]	 exists.
    [ ciarmy ]		 exists.
    [ feodo ]		 exists.
    [ zeus ]		 exists.
    
    ===[  IPv6 Process  ]=================================================
    
    ===[  Aliastables / Rules  ]==========================================
    
    No changes to Firewall rules, skipping Filter Reload
    No Changes to Aliases, Skipping pfctl Update
    
    ===[  Kill States  ]==================================================
    
     No matching states found
    ======================================================================
    
     UPDATE PROCESS ENDED [ 01/19/17 13:08:34 ]
    
    

    If you find my post useful, please give it a thumbs up!
    pfSense 2.7.2-RELEASE

    1 Reply Last reply Reply Quote 0
    • R
      RonpfS
      last edited by Jan 19, 2017, 10:07 PM

      These 2 lists are to be used with DNSBL.

      2.4.5-RELEASE-p1 (amd64)
      Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
      Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

      1 Reply Last reply Reply Quote 0
      • B
        BBcan177 Moderator
        last edited by Jan 19, 2017, 10:24 PM

        And there is also a combined DNSBL feed from hpHosts:

        http://hosts-file.net/download/hosts.zip

        "Experience is something you don't get until just after you need it."

        Website: http://pfBlockerNG.com
        Twitter: @BBcan177  #pfBlockerNG
        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

        1 Reply Last reply Reply Quote 0
        • G
          guardian Rebel Alliance
          last edited by Jan 19, 2017, 10:48 PM

          OK, I get it now.  I thought that pfB was doing a reverse DNS on those names, but now that you tell me that…

          So is it correct to assume that I can import any "hosts" file into the DNSBL?

          If you find my post useful, please give it a thumbs up!
          pfSense 2.7.2-RELEASE

          1 Reply Last reply Reply Quote 0
          • B
            BBcan177 Moderator
            last edited by Jan 19, 2017, 11:01 PM

            Firehol is converting those Domain based lists into an IP format… I'd not recommend that...  The pfBlockerNG package has an IP and a Domain section.... so best to use the applicable format (IP or DNSBL)...

            Yes hpHosts has individual Feeds, or the combined feed linked above... Take a look at their website for further details.

            "Experience is something you don't get until just after you need it."

            Website: http://pfBlockerNG.com
            Twitter: @BBcan177  #pfBlockerNG
            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

            1 Reply Last reply Reply Quote 0
            5 out of 5
            • First post
              5/5
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
              This community forum collects and processes your personal information.
              consent.not_received