Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DNSBL Virtual IP takes over BridgeLAN on reboot

    Scheduled Pinned Locked Moved pfBlockerNG
    9 Posts 2 Posters 915 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      teknikalcrysis
      last edited by teknikalcrysis

      My pfSense box has a LAN1, LAN2, and a WIFI adapter...those 3 adapters are Bridged together as the LAN under 172.16.1.1 as the pfSense LAN IP ...everything works as expected until I decided to install pfBlockerNG with DNSBL enabled so that I can block ads/malware and various malicious IPs. So I have DNSBL enabled with the built-in Virtual IP function; the Virtual IP is set to 10.10.10.1 ...and DNSBL work great, when I go to a black listed IP I am redirected to the 10.10.10.1 Virtual IP as I should be.

      The problem lies in rebooting the pfSense box..after a reboot the 172.16.1.1 BridgeLAN IP is changed to the DNSBL Virtual IP of 10.10.10.1 ....when this happens I have NO INTERNET connection across the BridgeLAN. When I look at the PC's Ethernet connection details, it lists 10.10.10.1 as the gateway, when it should be 172.16.1.1.
      To resolve this issue, I have to use putty via serial connection to reset the assigned IP from 10.10.10.1 back to 172.16.1.1, and then I have to restart multiple services such as Unbound, Squid, SquidGuard, and Dansguardian to get an internet connect back on the network...When this issue started, I was abled to login to the webConfigurator by navigating to the DNSBL Virtual IP 10.10.10.1 ..and go into the BridgeLAN interface settings and just RESAVE ...as the 172.16.1.1 would already be listed and I wouldn't have to type anything in...just Save and apply, and then restart the services I listed above...but something has changed and now I can no longer login to the webConfigurator using the Virtual IP, and nothing works until I putty in with serial connection...this is a bit of a nag, and create an issue of not being able to remote to my VPN if I have a power failure because I wouldn't be home to manual reset all of this...

      is this a bug, or do I have something configured wrong? Any help would be appreciated!

      2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
      AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

      1 Reply Last reply Reply Quote 0
      • RonpfSR
        RonpfS
        last edited by RonpfS

        We don't have much information to debug your problem.
        What pfsense version? what pfblockerNG version? What packages ? etc

        One thing you might try is to go to Diagnostics / Backup & Restore / Config History and check the differences between the config pre and post reboot.

        2.4.5-RELEASE-p1 (amd64)
        Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
        Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

        1 Reply Last reply Reply Quote 1
        • T
          teknikalcrysis
          last edited by

          2.2.6-RELEASE (amd64)
          

          built on Tue Dec 22 16:37:36 CST 2015
          FreeBSD 10.1-RELEASE-p25

          pfBlockerNG Security 2.0.6

          other packages installed:
          arpwatch
          Backup
          Cron
          Dansguardian
          File Manager
          freeradius2
          Lightsquid
          mailreport
          nmap
          OpenVPN Client Export Utility
          Sarg
          Service Watchdog
          snort
          squid
          squidGuard
          stunnel
          syslog-ng

          2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
          AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

          1 Reply Last reply Reply Quote 0
          • RonpfSR
            RonpfS
            last edited by

            Well if there was a bug fix at some point with pfBlockerNG Security 2.0.6 or 2.2.6-RELEASE (amd64) your are probably on your own as you didn't upgrade pfsense since 2016 🙄

            2.4.5-RELEASE-p1 (amd64)
            Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
            Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

            1 Reply Last reply Reply Quote 0
            • T
              teknikalcrysis
              last edited by

              yeah, the new versions remove the ability to download and run dansguardian...and I have that setup as a parental filter for my kids when they use their devices, which is why I have refrained from upgrading

              2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
              AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

              1 Reply Last reply Reply Quote 0
              • T
                teknikalcrysis
                last edited by

                How do I update to the newer version of pfBlockerBG? the only version listed in packages is the version I have installed..is it because I'm on an older version of pfSense or is there a command line I can run?

                2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
                AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

                1 Reply Last reply Reply Quote 0
                • RonpfSR
                  RonpfS
                  last edited by RonpfS

                  @teknikalcrysis
                  The version offered is related to the pfsense version you are using. Maybe it's time to drop dansguardian 😭

                  2.4.5-RELEASE-p1 (amd64)
                  Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
                  Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

                  T 1 Reply Last reply Reply Quote 0
                  • T
                    teknikalcrysis @RonpfS
                    last edited by

                    @ronpfs said in DNSBL Virtual IP takes over BridgeLAN on reboot:

                    @teknikalcrysis
                    The version offered is related to the pfsense version you are using. Maybe it's time to drop dansguardian 😭

                    I was afraid you were gonna say that...so no possible way to force a package update through command line to update pfblocker (I'm not a very experienced linux user)?

                    2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
                    AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

                    1 Reply Last reply Reply Quote 0
                    • T
                      teknikalcrysis
                      last edited by teknikalcrysis

                      I had a spare mSata drive for my pfsense box...so I used that to upgrade and retained a full backup of the older version by swapping the drive... this issue is resolved in the newer version of pfsense

                      2.4.3-RELEASE-p1 (amd64) - FreeBSD 11.1-RELEASE-p10
                      AMD G-T40E Processor - 2 CPUs: 1 package(s) x 2 core(s)

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.