<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[https]]></title><description><![CDATA[<p dir="auto">Hi,</p>
<p dir="auto">Sorry for my English.<br />
I installed pfBockerNG-devel 3.0.0_16 and it blocks all porn sites It's good !<br />
When the site is in http I see the pfBlockerNG page but when the site is in https I see an error page with code erreur : SSL_ERROR_INTERNAL_ERROR_ALERT.<br />
Why ?</p>
<p dir="auto">Thanks for your help</p>
]]></description><link>https://forum.netgate.com/topic/164243/https</link><generator>RSS for Node</generator><lastBuildDate>Wed, 20 May 2026 08:15:44 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/164243.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 07 Jun 2021 11:30:12 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to https on Mon, 07 Jun 2021 12:54:50 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ik2189">@<bdi>ik2189</bdi></a> said in <a href="/post/986592">https</a>:</p>
<blockquote>
<p dir="auto">So if i understand it's not possible to display a web page displaying that the site is not allowed ?</p>
</blockquote>
<p dir="auto">Thats correct. Gertjan has explained you the reason why thats so.</p>
]]></description><link>https://forum.netgate.com/post/986596</link><guid isPermaLink="true">https://forum.netgate.com/post/986596</guid><dc:creator><![CDATA[fireodo]]></dc:creator><pubDate>Mon, 07 Jun 2021 12:54:50 GMT</pubDate></item><item><title><![CDATA[Reply to https on Mon, 07 Jun 2021 12:47:19 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/gertjan">@<bdi>gertjan</bdi></a></p>
<p dir="auto">So if i understand it's not possible to display a web page displaying that the site is not allowed ?</p>
]]></description><link>https://forum.netgate.com/post/986592</link><guid isPermaLink="true">https://forum.netgate.com/post/986592</guid><dc:creator><![CDATA[ik2189]]></dc:creator><pubDate>Mon, 07 Jun 2021 12:47:19 GMT</pubDate></item><item><title><![CDATA[Reply to https on Mon, 07 Jun 2021 12:33:41 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/ik2189">@<bdi>ik2189</bdi></a> said in <a href="/post/986565">https</a>:</p>
<blockquote>
<p dir="auto">Why ?</p>
</blockquote>
<p dir="auto">The short answer : because no one** can break https = TLS.<br />
If a web server want to connect to some 'p0rn-site-here.tld' and a web server, the one used by pfBlockerNG answers (because the DNS record matches a list) then the web browser tells you that that pfB web server, on your pfSense, does not have 'p0rn-site-here.tld' in it's certificate.<br />
Which is understandable.<br />
So, your web browser does not show the 'this site is blocked' page at all.</p>
<p dir="auto">You might think : because 99,99 % of all traffic is https  these days, is it useful to have this page  'this site is blocked' page being shown ?<br />
Answer : of course not. It's something of the past. We see our browser telling us that 'there was an (cert !) issue'.</p>
<p dir="auto">This is a TLS issue, not a pfBlockerNG issue ;)</p>
<p dir="auto">** and the day some one breaks it, is the day that 'Internet' dies.</p>
]]></description><link>https://forum.netgate.com/post/986585</link><guid isPermaLink="true">https://forum.netgate.com/post/986585</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Mon, 07 Jun 2021 12:33:41 GMT</pubDate></item></channel></rss>