SafeSearch conflict - DNSBL out of sync
-
I am on pfblocker devel v3.0.0_9 and today I noticed the pfblocker widget had a warning next to DNSBL that DNSBL is out of sync force reload to correct.
I went and looked at pfblockerng.log and sure enough it said:
*** DNSBL update [ 14530 ] [ 14585 ] ... OUT OF SYNC ! ***I scrolled up looking for clues and came across one in the TLD section: cn(Removed due to SafeSearch conflict). Yes, cn is one of a handful of TLDs I block.
Over in DNSBL SafeSearch the DoH/DoT Blocking option is enabled (firefox selected) and I disabled it to resolve the error. In a previous version I had been trying to stop DOH by blocking use-application-dns.net but something isnt working right here in regard to the sync error when DoH/DoT Blocking is enabled. I think this might be a bug.
For now I put use-application-dns.net on a custom blocklist and everything is back how it was. I am not trying to block all DOH, but just tell the automated mechanisms not to use it.
-
@ex1580 I appreciate the post. I have the same TLD CN block and couldn't get past the OUT OF SYNC error until encountering your post. This does seem to be a defect on the surface but I'm interested to see how it ultimately resolves.