• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Creating a list for pfBlockerNG from uBlock's Logger

Scheduled Pinned Locked Moved pfBlockerNG
13 Posts 5 Posters 2.9k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P
    Presbuteros
    last edited by Mar 27, 2018, 2:40 PM Mar 20, 2018, 8:15 PM

    So I have visited a site and have uBlock's Logger running. I see several items in red. I assume the red items are being blocked by uBlock.
    Can I add those items into pfBlocker?
    Should they go in TLD Blacklist?
    Or should I create a feed and host it on a site like pastebin and put the link in DNSBL Feeds?

    Thanks for your help

    ![ublock logger.jpg](/public/imported_attachments/1/ublock logger.jpg)
    ![ublock logger.jpg_thumb](/public/imported_attachments/1/ublock logger.jpg_thumb)

    1 Reply Last reply Reply Quote 0
    • R
      RonpfS
      last edited by Mar 20, 2018, 9:35 PM

      Ublock Originin probably use some of the same DNSBL blocklists as pfBlockerNG

      Example.JPG
      Example.JPG_thumb

      2.4.5-RELEASE-p1 (amd64)
      Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
      Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

      1 Reply Last reply Reply Quote 0
      • P
        Presbuteros
        last edited by Mar 21, 2018, 7:19 AM

        Ron, thanks for responding and taking the time to post a screen. I see now what you are referring to.
        I have the clients behind pfSense and pfBlocker enabled with all the DNSBL categories selected. Adblocking is effectively working on many other sites thanks to pfBlocker.

        I'm curious though why I am seeing a difference between visiting the site through a browser (ie. Firefox) and not seeing ads and using the Google App to load the site and it serves ads. Any thoughts on this difference and what I could do to block ads at the app level too?

        1 Reply Last reply Reply Quote 0
        • A
          anttechs
          last edited by Mar 21, 2018, 1:45 PM

          You can always check out my site I am making for block lists for PfSense/PfBlocker at ant-techs.is/ip-blocklists

          Most of everyone uses Github to do block lists as I have started to make some lists of my own on Github and its far better than doing it on pastebin because Github will show any updates to the lists and 100% open source free.

          Intel(R) Celeron(R) CPU J1900 @ 1.99GHz
          Current: 1992 MHz, Max: 1993 MHz
          4 CPUs: 1 package(s) x 4 core(s)
          AES-NI CPU Crypto: No
          8 Gig RAM
          250GB SSD

          https://ant-techs.is/ip-blocklists

          1 Reply Last reply Reply Quote 0
          • ?
            Guest
            last edited by Mar 21, 2018, 4:59 PM

            I have been scolded by Netgate support for entering FQDNs into the TLD Blacklist - though it does work

            Creating a DNSBL feed with custom a FQDNs list that never needs updating will greatly reduce the overhead on Unbounds workload during the pfBlockerNG Update process.

            The unbound configuration doesn't need to know anything other than the FQDNs to ignore.

            TLD Blacklist probably has to do many lookups to create the lists for Unbound

            On another issue - how do I port pfBlockerNG config to another machine - there is zero capacity for pfBlockerNG in Backup/Restore under Diagnostics

            1 Reply Last reply Reply Quote 0
            • R
              RonpfS
              last edited by Mar 21, 2018, 5:02 PM

              There is a sync Tab under pfBlockerNG  ;)

              2.4.5-RELEASE-p1 (amd64)
              Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
              Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

              1 Reply Last reply Reply Quote 0
              • ?
                Guest
                last edited by Mar 21, 2018, 5:05 PM

                You are truly a hero Ron !
                Thank you

                1 Reply Last reply Reply Quote 0
                • ?
                  Guest
                  last edited by Mar 21, 2018, 5:16 PM

                  Hmmm  to be specific regarding Sync and my import export dilemma

                  …. I need to take portions of a huge Old config, port it to the new machine and then modify it. A lot of it is IPv4 ASN lookups for outbound rules

                  This is more of a one time replication of portions of an old config, which does have unknown misconfigurations in it that I dont want to propagate to the new machine.

                  I dont think this going to be possible

                  1 Reply Last reply Reply Quote 0
                  • R
                    RonpfS
                    last edited by Mar 21, 2018, 5:21 PM

                    You also have the option of editing config.xml to your taste, but that's prone to error.

                    2.4.5-RELEASE-p1 (amd64)
                    Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
                    Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

                    1 Reply Last reply Reply Quote 0
                    • P
                      Presbuteros
                      last edited by Mar 23, 2018, 12:10 PM

                      So before Locked hi-jacked the thread…

                      I was asking for thoughts on the difference between an ad being blocked by pfBlocker when using a browser and an ad not being blocked when using a Google App to access the same site. What am I overlooking as to why one is served ads and the other is blocked? Thanks.

                      1 Reply Last reply Reply Quote 0
                      • M
                        motific
                        last edited by Mar 26, 2018, 7:46 PM

                        My guess is the google app is bypassing your DNS to query their servers directly.

                        There are instructions for blocking other DNS services, you should probably implement them.

                        1 Reply Last reply Reply Quote 0
                        • P
                          Presbuteros
                          last edited by Mar 27, 2018, 2:40 PM Mar 27, 2018, 1:55 PM

                          Thank you for your reply. The LAN is on a VPN and should be routing through the VPN's DNS. By adding this firewall rule an ad will begin to play, then the app crashes. Interesting results. That's not what I was expecting.

                          blockotherDNS.jpg
                          blockotherDNS.jpg_thumb

                          1 Reply Last reply Reply Quote 0
                          • M
                            motific
                            last edited by Apr 8, 2018, 6:14 PM

                            IP6?  Or it’s querying a different domain for ads…

                            I’d consider putting a trace on the port 53 traffic from that host to see what it’s looking for and where.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                              This community forum collects and processes your personal information.
                              consent.not_received