Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    reject or approve a specific country - page does not show edit for rules

    pfBlockerNG
    5
    12
    203
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nirmelamoud last edited by

      I installed pfblocker_dev added MaxMind lic, run update
      but still, I can't edit a continent and choose a specific country

      -see picture no edit column
      pfblocker.png

      Logs are full of errors!! here parts of the update log ==>, not sure its related

       UPDATE PROCESS START [ v3.0.0_8 ] [ 01/10/21 14:10:25 ]
      
      ......
      
      [ MDS ]				 Downloading update [ 01/10/21 14:10:57 ] .. 404 Not Found
      
       [ DNSBL_Malicious - MDS ] Download FAIL [ 01/10/21 14:11:07 ]
        Firewall and/or IDS (Legacy mode only) are not blocking download.
      
      [ MDS_Immortal ]		 Downloading update [ 01/10/21 14:11:12 ] .. 404 Not Found
      
       [ DNSBL_Malicious - MDS_Immortal ] Download FAIL [ 01/10/21 14:11:22 ]
        Firewall and/or IDS (Legacy mode only) are not blocking download.
      
      [ MDL ]				 Reload [ 01/10/21 14:11:28 ] . completed .
       No Domains Found! Ensure only domain based Feeds are used for DNSBL!
      
      [ MVPS ]			 Reload . completed ..
      
      .......
      
      MaxMind Database downloading and processing ( approx 4MB ) ... Please wait ...
      
      Download Process Starting [ 01/10/21 14:11:56 ]
       /usr/local/share/GeoIP/GeoLite2-Country.tar.gz		401 Unauthorized
      
      Failed to Download GeoLite2-Country.mmdb
       /usr/local/share/GeoIP/GeoLite2-Country-CSV.zip		401 Unauthorized
      
      Failed to Download 
      Download Process Ended
      
      
      Could not open ISO [ 6255147_v4 ]
      
      Could not open ISO [ 6255147_rep_v4 ]
      
      Could not open ISO [ AF_v4 ]
      
      Could not open ISO [ AF_rep_v4 ]
      
      Could not open ISO [ AM_v4 ]
      
      Could not open ISO [ AM_rep_v4 ]
      
      Could not open ISO [ AZ_v4 ]
      
      Could not open ISO [ AZ_rep_v4 ]
      
      Could not open ISO [ BH_v4 ]
      
      Could not open ISO [ BH_rep_v4 ]
      
      Could not open ISO [ BD_v4 ]
      
      Could not open ISO [ BD_rep_v4 ]
      
      Could not open ISO [ BT_v4 ]
      
      Could not open ISO [ BT_rep_v4 ]
      
      Could not open ISO [ IO_v4 ]
      
      Could not open ISO [ IO_rep_v4 ]
      
      Could not open ISO [ BN_v4 ]
      
      Could not open ISO [ BN_rep_v4 ]
      
      Could not open ISO [ KH_v4 ]
      
      Could not open ISO [ KH_rep_v4 ]
      
      Could not open ISO [ CN_v4 ]
      
      Could not open ISO [ CN_rep_v4 ]
      
      Could not open ISO [ CX_v4 ]
      
      Could not open ISO [ CX_rep_v4 ]
      
      Could not open ISO [ CC_v4 ]
      
      Could not open ISO [ CC_rep_v4 ]
      
      Could not open ISO [ GE_v4 ]
      
      Could not open ISO [ GE_rep_v4 ]
      
      Could not open ISO [ JO_v4 ]
      
      Could not open ISO [ JO_rep_v4 ]
      
      Could not open ISO [ HK_v4 ]
      
      Could not open ISO [ HK_rep_v4 ]
      
      Could not open ISO [ IN_v4 ]
      
      Could not open ISO [ IN_rep_v4 ]
      
      Could not open ISO [ ID_v4 ]
      
      Could not open ISO [ ID_rep_v4 ]
      
      Could not open ISO [ IR_v4 ]
      
      Could not open ISO [ IR_rep_v4 ]
      
      Could not open ISO [ IQ_v4 ]
      
      Could not open ISO [ IQ_rep_v4 ]
      
      Could not open ISO [ JP_v4 ]
      
      Could not open ISO [ JP_rep_v4 ]
      
      Could not open ISO [ KZ_v4 ]
      
      Could not open ISO [ KZ_rep_v4 ]
      
      Could not open ISO [ KW_v4 ]
      
      Could not open ISO [ KW_rep_v4 ]
      
      Could not open ISO [ KG_v4 ]
      
      Could not open ISO [ KG_rep_v4 ]
      
      Could not open ISO [ LA_v4 ]
      
      Could not open ISO [ LA_rep_v4 ]
      
      Could not open ISO [ LB_v4 ]
      
      Could not open ISO [ LB_rep_v4 ]
      
      Could not open ISO [ MO_v4 ]
      
      Could not open ISO [ MO_rep_v4 ]
      
      Could not open ISO [ MY_v4 ]
      
      Could not open ISO [ MY_rep_v4 ]
      
      Could not open ISO [ MV_v4 ]
      
      Could not open ISO [ MV_rep_v4 ]
      
      Could not open ISO [ MN_v4 ]
      
      Could not open ISO [ MN_rep_v4 ]
      
      Could not open ISO [ MM_v4 ]
      
      Could not open ISO [ MM_rep_v4 ]
      
      Could not open ISO [ NP_v4 ]
      
      Could not open ISO [ NP_rep_v4 ]
      
      Could not open ISO [ KP_v4 ]
      
      Could not open ISO [ KP_rep_v4 ]
      
      Could not open ISO [ OM_v4 ]
      
      Could not open ISO [ OM_rep_v4 ]
      
      Could not open ISO [ PK_v4 ]
      
      Could not open ISO [ PK_rep_v4 ]
      
      Could not open ISO [ PS_v4 ]
      
      Could not open ISO [ PS_rep_v4 ]
      
      Could not open ISO [ PH_v4 ]
      
      Could not open ISO [ PH_rep_v4 ]
      
      Could not open ISO [ QA_v4 ]
      
      Could not open ISO [ QA_rep_v4 ]
      
      Could not open ISO [ KR_v4 ]
      
      Could not open ISO [ KR_rep_v4 ]
      
      Could not open ISO [ SA_v4 ]
      
      Could not open ISO [ SA_rep_v4 ]
      
      Could not open ISO [ SG_v4 ]
      
      Could not open ISO [ SG_rep_v4 ]
      
      Could not open ISO [ LK_v4 ]
      
      Could not open ISO [ LK_rep_v4 ]
      
      Could not open ISO [ SY_v4 ]
      
      Could not open ISO [ SY_rep_v4 ]
      
      Could not open ISO [ TW_v4 ]
      
      Could not open ISO [ TW_rep_v4 ]
      
      Could not open ISO [ TJ_v4 ]
      
      Could not open ISO [ TJ_rep_v4 ]
      
      Could not open ISO [ TH_v4 ]
      
      Could not open ISO [ TH_rep_v4 ]
      
      Could not open ISO [ TR_v4 ]
      
      Could not open ISO [ TR_rep_v4 ]
      
      Could not open ISO [ TM_v4 ]
      
      Could not open ISO [ TM_rep_v4 ]
      
      Could not open ISO [ AE_v4 ]
      
      Could not open ISO [ AE_rep_v4 ]
      
      Could not open ISO [ UZ_v4 ]
      
      Could not open ISO [ UZ_rep_v4 ]
      
      Could not open ISO [ VN_v4 ]
      
      Could not open ISO [ VN_rep_v4 ]
      
      Could not open ISO [ YE_v4 ]
      
      Could not open ISO [ YE_rep_v4 ]
      
      [ pfB_Asia_v4 ]			 Changes found... Updating
        ------------------------------
        Original Master     Final     
        ------------------------------
        0        0          0           [ Pass ] 
        -----------------------------------------------------------------
      [ pfB_Asia_v4 ] Found no unique IPs, adding '127.1.7.7' to avoid empty file
      
      Could not open ISO [ 6255147_v6 ]
      
      Could not open ISO [ AF_v6 ]
      .....
      
       Updating: pfB_Europe_v6
      no changes.
       Updating: pfB_NAmerica_v4
      no changes.
       Updating: pfB_NAmerica_v6
      no changes.
       Updating: pfB_PRI1_v4
      573 addresses added.
      
      ===[ FINAL Processing ]=====================================
      
         [ Original IP count   ]  [ 23672 ]
      
         [ Final IP Count  ]  [ 22481 ]
      
      
      ===[ Permit List IP Counts ]=========================
      
             2 total
             1 /var/db/pfblockerng/permit/pfB_NAmerica_v6.txt
             1 /var/db/pfblockerng/permit/pfB_NAmerica_v4.txt
      
      ===[ Deny List IP Counts ]===========================
      
         22486 total
         15000 /var/db/pfblockerng/deny/CINS_army_v4.txt
          4149 /var/db/pfblockerng/deny/ET_Comp_v4.txt
          2274 /var/db/pfblockerng/deny/ET_Block_v4.txt
           740 /var/db/pfblockerng/deny/Talos_BL_v4.txt
           111 /var/db/pfblockerng/deny/Abuse_SSLBL_v4.txt
           111 /var/db/pfblockerng/deny/Abuse_Feodo_C2_v4.txt
            78 /var/db/pfblockerng/deny/Spamhaus_eDrop_v4.txt
            18 /var/db/pfblockerng/deny/ISC_Block_v4.txt
             1 /var/db/pfblockerng/deny/pfB_Europe_v6.txt
             1 /var/db/pfblockerng/deny/pfB_Europe_v4.txt
             1 /var/db/pfblockerng/deny/pfB_Asia_v6.txt
             1 /var/db/pfblockerng/deny/pfB_Asia_v4.txt
             1 /var/db/pfblockerng/deny/Spamhaus_Drop_v4.txt
      
      ====================[ Empty Lists w/127.1.7.7 ]==================
      
      Spamhaus_Drop_v4.txt
      pfB_Asia_v4.txt
      pfB_Asia_v6.txt
      pfB_Europe_v4.txt
      pfB_Europe_v6.txt
      
      ===[ DNSBL Domain/IP Counts ] ===================================
      
        342212 total
        138306 /var/db/pfblockerng/dnsbl/Maltrail_BD.txt
        122595 /var/db/pfblockerng/dnsbl/C19_CTC.txt
         24508 /var/db/pfblockerng/dnsbl/SFS_Toxic_BD.txt
         13432 /var/db/pfblockerng/dnsbl/SWC.txt
         11806 /var/db/pfblockerng/dnsbl/EasyList.txt
          8935 /var/db/pfblockerng/dnsbl/Adaway.txt
          6999 /var/db/pfblockerng/dnsbl/Spam404.txt
          6671 /var/db/pfblockerng/dnsbl/MVPS.txt
          2994 /var/db/pfblockerng/dnsbl/EasyPrivacy.txt
          2498 /var/db/pfblockerng/dnsbl/D_Me_ADs.txt
          1983 /var/db/pfblockerng/dnsbl/Krisk_C19.txt
          1461 /var/db/pfblockerng/dnsbl/Yoyo.txt
            23 /var/db/pfblockerng/dnsbl/D_Me_Tracking.txt
             1 /var/db/pfblockerng/dnsbl/D_Me_Malv.txt
             0 /var/db/pfblockerng/dnsbl/MDS_Immortal.fail
             0 /var/db/pfblockerng/dnsbl/MDS.fail
             0 /var/db/pfblockerng/dnsbl/MDL.txt
             0 /var/db/pfblockerng/dnsbl/ISC_Host_Onyphe.txt
             0 /var/db/pfblockerng/dnsbl/D_Me_Malw.txt
      
      ====================[ IPv4/6 Last Updated List Summary ]==============
      
      Dec 30	16:14	Spamhaus_eDrop_v4
      Jan 8	18:18	ET_Comp_v4
      Jan 8	18:18	ET_Block_v4
      Jan 8	19:28	Spamhaus_Drop_v4
      Jan 10	12:53	ISC_Block_v4
      Jan 10	13:19	CINS_army_v4
      Jan 10	14:00	Abuse_SSLBL_v4
      Jan 10	14:00	Abuse_Feodo_C2_v4
      Jan 10	14:04	Talos_BL_v4
      Jan 10	14:11	pfB_Asia_v4
      Jan 10	14:11	pfB_Asia_v6
      Jan 10	14:11	pfB_Europe_v4
      Jan 10	14:11	pfB_Europe_v6
      Jan 10	14:11	pfB_NAmerica_v4
      Jan 10	14:11	pfB_NAmerica_v6
      
      ====================[ DNSBL Last Updated List Summary ]==============
      
      Jul 31	2015	D_Me_Tracking
      Jan 31	2020	D_Me_ADs
      Jul 10	2020	D_Me_Malw
      Jul 10	2020	D_Me_Malv
      Nov 12	17:17	MDL
      Dec 15	03:07	MVPS
      Dec 20	23:06	SWC
      Dec 31	14:09	Adaway
      Jan 7	05:35	Yoyo
      Jan 9	12:54	Maltrail_BD
      Jan 9	12:54	Spam404
      Jan 9	19:30	Krisk_C19
      Jan 9	22:10	C19_CTC
      Jan 9	23:00	SFS_Toxic_BD
      Jan 9	23:42	EasyPrivacy
      Jan 9	23:50	EasyList
      Jan 10	00:01	ISC_Host_Onyphe
      ===============================================================
      
      Database Sanity check [  PASSED  ]
      ------------------------
      Masterfile/Deny folder uniq check
      Deny folder/Masterfile uniq check
      
      Sync check (Pass=No IPs reported)
      ----------
      
      Alias table IP Counts
      -----------------------------
         22488 total
         22482 /var/db/aliastables/pfB_PRI1_v4.txt
             1 /var/db/aliastables/pfB_NAmerica_v6.txt
             1 /var/db/aliastables/pfB_NAmerica_v4.txt
             1 /var/db/aliastables/pfB_Europe_v6.txt
             1 /var/db/aliastables/pfB_Europe_v4.txt
             1 /var/db/aliastables/pfB_Asia_v6.txt
             1 /var/db/aliastables/pfB_Asia_v4.txt
      
      pfSense Table Stats
      -------------------
      table-entries hard limit   400000
      Table Usage Count         142050
      
       UPDATE PROCESS ENDED [ 01/10/21 14:12:02 ]
      
      
      M RonpfS 2 Replies Last reply Reply Quote 0
      • M
        mcury @nirmelamoud last edited by

        @nirmelamoud I didn't proceed like that..

        d2ead4e5-47e6-46d4-a567-4e27db23120c-image.png

        Then, click in add:

        dd130d6c-fda2-46aa-9ac8-011ab1cbeca5-image.png

        N 1 Reply Last reply Reply Quote 0
        • RonpfS
          RonpfS @nirmelamoud last edited by

          @nirmelamoud Do you see any activity on your maxmind account View Your Download History

          N 1 Reply Last reply Reply Quote 0
          • N
            nirmelamoud @RonpfS last edited by

            @ronpfs i have download activities

            1 Reply Last reply Reply Quote 0
            • N
              nirmelamoud @mcury last edited by

              @mcury I will try your way - thanks

              BBcan177 1 Reply Last reply Reply Quote 0
              • BBcan177
                BBcan177 Moderator @nirmelamoud last edited by

                @nirmelamoud

                Need to see why your not authorized to download from MaxMind?

                Check the Key, and if you attempted too many downloads in a 24 hr period, MaxMind could be rate-limiting you.

                MaxMind Database downloading and processing ( approx 4MB ) ... Please wait ...
                
                Download Process Starting [ 01/10/21 14:11:56 ]
                 /usr/local/share/GeoIP/GeoLite2-Country.tar.gz		401 Unauthorized
                
                Failed to Download GeoLite2-Country.mmdb
                 /usr/local/share/GeoIP/GeoLite2-Country-CSV.zip		401 Unauthorized
                
                Failed to Download 
                Download Process Ended
                
                N 1 Reply Last reply Reply Quote 0
                • N
                  nirmelamoud @BBcan177 last edited by

                  @bbcan177 its working now, I switched to a new maxmind account with different email - now its working - thanks

                  N 1 Reply Last reply Reply Quote 0
                  • N
                    nirmelamoud @nirmelamoud last edited by

                    @nirmelamoud now I see errors like this all the time :

                    There were error(s) loading the rules: /tmp/rules.debug:25: cannot define table pfB_Europe_v4: Cannot allocate memory - The line in question reads [25]: table <pfB_Europe_v4> persist file "/var/db/aliastables/pfB_Europe_v4.txt"
                    @ 2021-01-12 10:26:12
                    There were error(s) loading the rules: /tmp/rules.debug:25: cannot define table pfB_Europe_v4: Cannot allocate memory - The line in question reads [25]: table <pfB_Europe_v4> persist file "/var/db/aliastables/pfB_Europe_v4.txt"
                    @ 2021-01-12 10:26:43
                    
                    johnpoz 1 Reply Last reply Reply Quote 0
                    • johnpoz
                      johnpoz LAYER 8 Global Moderator @nirmelamoud last edited by

                      @nirmelamoud

                      https://forum.netgate.com/topic/149418/cannot-allocate-memor-after-adding-geo-ip

                      N 1 Reply Last reply Reply Quote 0
                      • N
                        nirmelamoud @johnpoz last edited by

                        @johnpoz thanks

                        johnpoz 1 Reply Last reply Reply Quote 0
                        • johnpoz
                          johnpoz LAYER 8 Global Moderator @nirmelamoud last edited by

                          @nirmelamoud

                          NP - I currently have my max set at 1600000, but I do not do much in the way of tables. A few geoip ones and I do not do bogon for IPv6 (which is large)..

                          So you might need to adjust for your own use..

                          N 1 Reply Last reply Reply Quote 0
                          • N
                            nirmelamoud @johnpoz last edited by

                            @johnpoz done and seems to be working.... thanks

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post

                            Products

                            • Platform Overview
                            • TNSR
                            • pfSense Plus
                            • Appliances

                            Services

                            • Training
                            • Professional Services

                            Support

                            • Subscription Plans
                            • Contact Support
                            • Product Lifecycle
                            • Documentation

                            News

                            • Media Coverage
                            • Press
                            • Events

                            Resources

                            • Blog
                            • FAQ
                            • Find a Partner
                            • Resource Library
                            • Security Information

                            Company

                            • About Us
                            • Careers
                            • Partners
                            • Contact Us
                            • Legal
                            Our Mission

                            We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

                            Subscribe to our Newsletter

                            Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

                            © 2021 Rubicon Communications, LLC | Privacy Policy