Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    2.5.0 no love for Unbound python mode

    pfBlockerNG
    3
    19
    154
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • chudak
      chudak last edited by

      I can't make pfB run with Unbound python mode

      Getting error:

      [pfBlockerNG]: Terminating DNSBL Python mode due to DNS Resolver DHCP Registration option enabled!

      even tho my DNS Resolver DHCP Registration option disabled.

      e2d78801-e412-49a5-a1c1-a8c4df836b42-image.png

      Unbound mode seems working fine.

      @BBcan177 FYI

      BBcan177 1 Reply Last reply Reply Quote 0
      • BBcan177
        BBcan177 Moderator @chudak last edited by

        @chudak Click "Save" and "Apply" in the DNS Resolver page and re-try.

        chudak 1 Reply Last reply Reply Quote 0
        • chudak
          chudak @BBcan177 last edited by

          @bbcan177

          did that several times - still no love

          BBcan177 1 Reply Last reply Reply Quote 0
          • BBcan177
            BBcan177 Moderator @chudak last edited by

            @chudak

            What does this report back?

            grep "<regdhcp>" /conf/config.xml
            chudak 1 Reply Last reply Reply Quote 0
            • chudak
              chudak @BBcan177 last edited by

              @bbcan177 said in 2.5.0 no love for Unbound python mode:

              @chudak

              What does this report back?

              grep "<regdhcp>" /conf/config.xml
              

              nothing

              chudak 1 Reply Last reply Reply Quote 0
              • chudak
                chudak @chudak last edited by

                I actually have an uneducated suspicion that unbound issues described here https://forum.netgate.com/topic/161025/to-2-5-0-or-not-that-is-the-question/74 relate to this Unbound python mode issue.

                BBcan177 1 Reply Last reply Reply Quote 0
                • BBcan177
                  BBcan177 Moderator @chudak last edited by

                  @chudak
                  When you first enabled Unbound Python Mode, you could only do that if DHCP Registration was disabled.
                  My suspicion, is that after Unbound Python Mode was enabled, you manually re-enabled the DHCP Registration option in the DNS Resolver.
                  So when the code sees that DHCP Registration is enabled, it will terminate Python mode.

                  chudak 1 Reply Last reply Reply Quote 0
                  • chudak
                    chudak @BBcan177 last edited by

                    @bbcan177

                    Possibly but then I should be able to make it right, but I do:

                    Make sure Unbound has DHCP Registration is disabled => Save, Apply
                    Restart Unbound
                    Enable DNSBL Python mode
                    +
                    Restart DNSBL and then Unbound
                    Or
                    Other way around, but DNSBL Python mode still shows error !

                    :(

                    RonpfS 1 Reply Last reply Reply Quote 0
                    • RonpfS
                      RonpfS @chudak last edited by

                      @chudak said in 2.5.0 no love for Unbound python mode:

                      Make sure Unbound has DHCP Registration is disabled => Save, Apply
                      Restart Unbound
                      Enable DNSBL Python mode

                      Save, Apply should restart Unbound.

                      After Enabling DNSBL Python Mode, do a Force Update, monitor pfblockerng.log at the end of DNSBL processing.

                      chudak 1 Reply Last reply Reply Quote 0
                      • chudak
                        chudak @RonpfS last edited by

                        @ronpfs

                        Same result

                        RonpfS 1 Reply Last reply Reply Quote 0
                        • RonpfS
                          RonpfS @chudak last edited by

                          @chudak maybe post the log.

                          BBcan177 1 Reply Last reply Reply Quote 0
                          • BBcan177
                            BBcan177 Moderator @RonpfS last edited by

                            Where are you enabling Unbound Python Mode? That needs to be enabled in the pfBlockerNG package > DNSBL Tab. Do not touch the setting in the Resolver as those are managed by the package.

                            chudak 1 Reply Last reply Reply Quote 0
                            • chudak
                              chudak @BBcan177 last edited by

                              @bbcan177

                              Here :

                              37D0FB14-A1DB-461A-BE47-1B5E01C2E925.jpeg

                              BBcan177 1 Reply Last reply Reply Quote 0
                              • BBcan177
                                BBcan177 Moderator @chudak last edited by

                                @chudak
                                So when you hit save in the pfBlockerNG package, do you get a warning about DHCP Registration being enabled? Or when you Force Update?
                                Have you rebooted this box?

                                RonpfS chudak 2 Replies Last reply Reply Quote 0
                                • RonpfS
                                  RonpfS @BBcan177 last edited by

                                  @bbcan177 Also do you see dhcp leases in DHCP server log? Does that trigger Unbound reload ?

                                  BBcan177 1 Reply Last reply Reply Quote 0
                                  • BBcan177
                                    BBcan177 Moderator @RonpfS last edited by

                                    @ronpfs He has Static DHCP enabled, so that doesn't reload Unbound.

                                    RonpfS 1 Reply Last reply Reply Quote 0
                                    • RonpfS
                                      RonpfS @BBcan177 last edited by RonpfS

                                      @bbcan177 DHCP service will issue new leases if the device is not in Static map.

                                      1 Reply Last reply Reply Quote 0
                                      • chudak
                                        chudak @BBcan177 last edited by

                                        @bbcan177 said in 2.5.0 no love for Unbound python mode:

                                        @chudak
                                        So when you hit save in the pfBlockerNG package, do you get a warning about DHCP Registration being enabled? Or when you Force Update?
                                        Have you rebooted this box?

                                        I get no warning, but again it’s not enabled
                                        I see the yellow icon on the dashboard and error in the log.

                                        Again, I was running Unbound python mode with DHCP Registration disabled for awhile on 2.4.5 (after you warned to disable it via Twitter or in the release notes) and had no issues.

                                        All this is new in 2.5.0 since I upgraded today.
                                        And yes, the box was rebooted multiple times today.

                                        The only thing I didn’t do - remove and reinstall pfB

                                        Will that help ?

                                        Thx

                                        PS - it runs fine without python mode too

                                        chudak 1 Reply Last reply Reply Quote 0
                                        • chudak
                                          chudak @chudak last edited by

                                          @BBcan177

                                          Well, did a clean reinstall today and - Unbound python mode love is back !
                                          What was it ? No clue, suspect that package updates did not worked well after 2.5.0. upgrade.

                                          Thanks all !

                                          1 Reply Last reply Reply Quote 1
                                          • First post
                                            Last post

                                          Products

                                          • Platform Overview
                                          • TNSR
                                          • pfSense
                                          • Appliances

                                          Services

                                          • Training
                                          • Professional Services

                                          Support

                                          • Subscription Plans
                                          • Contact Support
                                          • Product Lifecycle
                                          • Documentation

                                          News

                                          • Media Coverage
                                          • Press
                                          • Events

                                          Resources

                                          • Blog
                                          • FAQ
                                          • Find a Partner
                                          • Resource Library
                                          • Security Information

                                          Company

                                          • About Us
                                          • Careers
                                          • Partners
                                          • Contact Us
                                          • Legal
                                          Our Mission

                                          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

                                          Subscribe to our Newsletter

                                          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

                                          © 2021 Rubicon Communications, LLC | Privacy Policy