pfblocker blocks

  • Hi, I am trying to tell pfblocker to not block security patch address.
    The entry in the dnsbl alert task looks strange:


    whitelist entry for TLD and DNSBL has been added and DNSBL got reloaded. any hint where to search?


  • Put instead or in TLD exclusion list, remove and from Whitelist, Force Reload DNSBL.

    Access the site, then see what Alert is showing. You can then use the Alerts tab "+" icon to whitelist what's needed.

  • followed your instructions, but still the same.
    I do not get a plus sign to add it. See 1st screenshot

  • Well did you look at pfblockerng.log to see what is done ? Do you see debian anywhere in the processing ? Do you have TLD enabled ?

  • TLD Whitelist|

    yes, it is included
    yes, TLD enabled

  • Well from what you typed is still in the DNSBL Whitelist...

  • To find out the feed for debian, do this in a Shell cmd

    grep "" /var/db/pfblockerng/dnsbl/*.txt /var/db/pfblockerng/dnsblorig/*.orig /usr/local/pkg/pfblockerng/dnsbl_tld

  • @RonpfS
    sorry to ask, but how do I do it?
    via execute command (browser UI?)
    or do I need to open up an SSH session?

  • Diagnostics / Command prompt is one way.

  • @RonpfS said in pfblocker blocks

    grep "" /var/db/pfblockerng/dnsbl/.txt /var/db/pfblockerng/dnsblorig/.orig /usr/local/pkg/pfblockerng/dnsbl_tld


  • @RonpfS said in pfblocker blocks

    grep "" /var/db/pfblockerng/dnsbl/.txt /var/db/pfblockerng/dnsblorig/.orig /usr/local/pkg/pfblockerng/dnsbl_tld

    It doesn't seems you have in any DNSBL group....
    Add the dnsblalias/* to the grep :

    grep "" /var/db/pfblockerng/dnsbl/*.txt /var/db/pfblockerng/dnsblorig/*.orig /var/db/pfblockerng/dnsblalias/*  /usr/local/pkg/pfblockerng/dnsbl_tld

    Do you have it in any DNSBL Custom_List ?

    Why don't you post pfblockerng.log so we can put some light on you issue.

  • the log is just too big to post it in this forum, here is one run attached:

  • You can also zip the log.

    For all those URLs that gave you SSL certificate problem, change the State from ON to FLEX. Than run a Force Reload DNSBL.

    You also have problem with your DNSBL Whitelist

     TLD Whitelist - Missing data | | 2019041401 1800 900 604800 86400 |
     TLD Whitelist|
     TLD Whitelist - Missing data | | 1552922405 10800 3600 604800 10800 |
     TLD Whitelist|
     TLD Whitelist - Missing data | | |
     TLD Whitelist|
     TLD Whitelist - Missing data | | |
     TLD Whitelist|
     Blocking full TLD/Sub-Domain(s)... ||| completed

    Fix that first, click on the blue Infoblock to get it right. Again a Force Reload DNSBL for change to take effect.

  • thanks for your support,
    will try to fix that and come back tomorrow.
    one loading round takes about 20 minutes

  • Well you have probably too many URLs.
    Do you really need all the EasyList language ?

    Also you are using some tables that haven't changed since 2014 : May 20 2014 Malekal_Hosts

    Review the logs file to detect issues.

Log in to reply