Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    DNSBL Not Blocking Ads or Yahoo

    pfBlockerNG
    3
    5
    1276
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      kidseven112002 last edited by

      Can't seem to get DNSBL working properly; configs attached. Pulled the updated ad list that isn't working nor is my yahoo.com custom list working. Please review and let me know what I'm doing wrong.
      ![Screen Shot 2017-12-27 at 6.15.08 PM.png](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.15.08 PM.png)
      ![Screen Shot 2017-12-27 at 6.15.08 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.15.08 PM.png_thumb)
      ![Screen Shot 2017-12-27 at 6.15.21 PM.png](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.15.21 PM.png)
      ![Screen Shot 2017-12-27 at 6.15.21 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.15.21 PM.png_thumb)
      ![Screen Shot 2017-12-27 at 6.17.57 PM.png](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.17.57 PM.png)
      ![Screen Shot 2017-12-27 at 6.17.57 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.17.57 PM.png_thumb)
      ![Screen Shot 2017-12-27 at 6.18.13 PM.png](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.18.13 PM.png)
      ![Screen Shot 2017-12-27 at 6.18.13 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.18.13 PM.png_thumb)
      ![Screen Shot 2017-12-27 at 6.18.44 PM.png](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.18.44 PM.png)
      ![Screen Shot 2017-12-27 at 6.18.44 PM.png_thumb](/public/imported_attachments/1/Screen Shot 2017-12-27 at 6.18.44 PM.png_thumb)

      1 Reply Last reply Reply Quote 0
      • BBcan177
        BBcan177 Moderator last edited by

        Settings look ok… Are you sure that your LAN devices have their DNS settings configured to use pfSense DNS Only?  If you have other DNS Servers configured then it will bypass DNSBL.

        From pfSense you can confirm that a domain is blocked via:

        host -t A example.com
        

        And on Windows use a```
        nslookup example.com

        
        If the Domain is filtered via DNSBL, it will reply with the DNSBL VIP Address that you configured.

        "Experience is something you don't get until just after you need it."

        Website: http://pfBlockerNG.com
        Twitter: @BBcan177  #pfBlockerNG
        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

        1 Reply Last reply Reply Quote 0
        • K
          kidseven112002 last edited by

          Thanks for the config verification, but still no go. Should my host DNS be set to the 10.10.10.1 address? I have them pulling the DNS from pfsense DHCP. Still no luck…

          1 Reply Last reply Reply Quote 0
          • RonpfS
            RonpfS last edited by

            Your host has to use pfsense+DNSBL DNS Resolver service.
            From a PC I get

            C:\Users\User1>nslookup steepto.com
            Server :   pfsense.local
            Address:  172.xx.xxx.254
            
            Nom :    steepto.com
            Address:  10.10.10.1
            

            2.4.5-RELEASE-p1 (amd64)
            Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
            Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

            1 Reply Last reply Reply Quote 0
            • K
              kidseven112002 last edited by

              That was it!! Thank you ;D

              1 Reply Last reply Reply Quote 0
              • First post
                Last post