• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How to determine DNSBL block list

Scheduled Pinned Locked Moved pfBlockerNG
7 Posts 3 Posters 1.2k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • K
    krbvroc1
    last edited by Sep 20, 2018, 7:18 PM

    As of a few hours ago, facebook.com is blocked by DNSBL. How do I debug what list added this? Oddly enough, when I go to the Alerts tab, it doesn't show a list - is says 'no match'. All my other entries show a list, but not this one.

    I've been going to the various website/block lists that I use and so far don't see it listed on any of them.

    I am running 2.1.2_3, but I just clicked the upgrade to 2.1.4_9 button to test with the latest version and same problem. (Obviously I could get to the site while it was disabled/upgrading)

    1 Reply Last reply Reply Quote 0
    • G
      Grimson Banned
      last edited by Sep 20, 2018, 7:19 PM

      Upgrade to pfBlockerNG-devel.

      K 1 Reply Last reply Sep 20, 2018, 7:21 PM Reply Quote 0
      • K
        krbvroc1 @Grimson
        last edited by Sep 20, 2018, 7:21 PM

        @grimson Is that smart if I want a stable/production version? Is there something new going on that only devel handles?

        1 Reply Last reply Reply Quote 0
        • G
          Grimson Banned
          last edited by Sep 20, 2018, 7:24 PM

          https://forum.netgate.com/topic/135514/dnsbl-is-not-logging-everything

          From here on search the forums yourself.

          K 1 Reply Last reply Sep 20, 2018, 7:28 PM Reply Quote 0
          • K
            krbvroc1 @Grimson
            last edited by Sep 20, 2018, 7:28 PM

            @grimson I already saw that post and it doesn't seem to apply. That related to something not being logged at all and if I read it correctly, the devel version allows additional logging for 'https' sites. In my case it is being logged under the alerts tab, it just shows 'no match' where the list name would normally be. And I tried non-https with the same issue before I posted. This just happened today somehow since facebook url was working this morning.

            1 Reply Last reply Reply Quote 0
            • K
              krbvroc1
              last edited by Sep 21, 2018, 1:35 AM

              Finally tracked it down - I had followed some documentation here - https://docs.microsoft.com/en-us/windows/privacy/manage-windows-endpoints

              It listed 'star-mini.c10r.facebook.com' as an ms endpoint for facebook - I assumed for their store app. It has been blocked for months. For some reason today www.facebook.com started resolving to that cname and that is why it is blocked. It is a custom block list I entered months ago, not sure why pfblockerng doesn't show the feed name rather than 'no match' on the alerts - would have saved me hours.

              1 Reply Last reply Reply Quote 0
              • B
                BBcan177 Moderator
                last edited by Sep 22, 2018, 2:07 AM

                @krbvroc1 said in How to determine DNSBL block list:

                Finally tracked it down - I had followed some documentation here - https://docs.microsoft.com/en-us/windows/privacy/manage-windows-endpoints
                It listed 'star-mini.c10r.facebook.com' as an ms endpoint for facebook - I assumed for their store app. It has been blocked for months. For some reason today www.facebook.com started resolving to that cname and that is why it is blocked. It is a custom block list I entered months ago, not sure why pfblockerng doesn't show the feed name rather than 'no match' on the alerts - would have saved me hours.

                There are many changes to the code with pfBlockerNG-devel, including the Alerts Tab. I would suggest moving to devel and see if you can reproduce the same issue.

                "Experience is something you don't get until just after you need it."

                Website: http://pfBlockerNG.com
                Twitter: @BBcan177  #pfBlockerNG
                Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                1 Reply Last reply Reply Quote 0
                7 out of 7
                • First post
                  7/7
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                  This community forum collects and processes your personal information.
                  consent.not_received