<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[pfBlockerNG not blocking from the LAN]]></title><description><![CDATA[<p dir="auto">Hello,<br />
I am playing with pfBlockerNG (2.2.5_20), and I used the wizard to configure it.<br />
It seems to be active and running just fine, but what is funny is that I get the expected behavior if I nslookup a site that should be on the list:</p>
<pre><code class="language-java">nslookup secure.quantserve.com
Server:		127.0.0.1
Address:	127.0.0.1#53

Name:	secure.quantserve.com
Address: 10.10.10.1
</code></pre>
<p dir="auto">But, if I try the same for anywhere in the LAN I actually can resolve the name:</p>
<pre><code class="language-java">nslookup  secure.quantserve.com
;; Truncated, retrying in TCP mode.
Server:		127.0.0.1
Address:	127.0.0.1#53

Non-authoritative answer:
secure.quantserve.com	canonical name = 2kpixel.quantserve.com.
2kpixel.quantserve.com	canonical name = global.px.quantserve.com.
global.px.quantserve.com	canonical name = pixel-use101-lighttpd.pixel.quantserve.net.
pixel-use101-lighttpd.pixel.quantserve.net	canonical name = internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com.
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.225
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.227
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.223
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.217
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.206
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.193
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.194
Name:	internal-pixel-use101-lighttpd-elb-1202564112.us-east-1.elb.amazonaws.com
Address: 192.184.68.212
</code></pre>
<p dir="auto">Any suggestions on what I might be doing wrong? This is the out of the box wizard config...</p>
<p dir="auto">Thanks in advance!</p>
]]></description><link>https://forum.netgate.com/topic/139765/pfblockerng-not-blocking-from-the-lan</link><generator>RSS for Node</generator><lastBuildDate>Mon, 08 Jun 2026 10:47:31 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/139765.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 20 Jan 2019 05:55:18 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to pfBlockerNG not blocking from the LAN on Sun, 20 Jan 2019 16:58:06 GMT]]></title><description><![CDATA[<p dir="auto">Thanks for the reply, Johnpoz. Turns out that some of the firewalls/antiviruses in the Mac are messing with the DNS. Everything is working fine on systems that don't have that junk.</p>
]]></description><link>https://forum.netgate.com/post/818703</link><guid isPermaLink="true">https://forum.netgate.com/post/818703</guid><dc:creator><![CDATA[apellegr]]></dc:creator><pubDate>Sun, 20 Jan 2019 16:58:06 GMT</pubDate></item><item><title><![CDATA[Reply to pfBlockerNG not blocking from the LAN on Sun, 20 Jan 2019 16:19:01 GMT]]></title><description><![CDATA[<p dir="auto">Yeah looks like its pointing to local caching prob running dnsmasq locally and that is forwarding to where exactly?</p>
]]></description><link>https://forum.netgate.com/post/818698</link><guid isPermaLink="true">https://forum.netgate.com/post/818698</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Sun, 20 Jan 2019 16:19:01 GMT</pubDate></item><item><title><![CDATA[Reply to pfBlockerNG not blocking from the LAN on Sun, 20 Jan 2019 15:44:59 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/apellegr">@<bdi>apellegr</bdi></a> said in <a href="/post/818645">pfBlockerNG not blocking from the LAN</a>:</p>
<blockquote>
<p dir="auto">secure.quantserve.com</p>
</blockquote>
<p dir="auto">Actually looks like a DNS issue on the mac I am using to run the tests, somehow it's still using its own DNS setting.</p>
]]></description><link>https://forum.netgate.com/post/818696</link><guid isPermaLink="true">https://forum.netgate.com/post/818696</guid><dc:creator><![CDATA[apellegr]]></dc:creator><pubDate>Sun, 20 Jan 2019 15:44:59 GMT</pubDate></item></channel></rss>