pfBlockerNG-devel doesn't block anything
-
I installed the latest version of pfBlockerNG-devel on virtualbox as well as on a lenovo thinkcentre following this youtube video:
https://www.youtube.com/watch?v=xizAeAqYde4
I have no error messages and everything seems to be good, but no blocking happens and advertisments appear as before. It's the same picture in both cases. Here are some stats:
What am I doing wrong? Could it be because I only have the community edition of pfsense?
-
Now I just got an error message about a Download Fail. Has it something to do with it?
-
If the Resolver doesn't see any requests, it can't act upon them.
-
https://learn.akamai.com/en-us/webhelp/enterprise-threat-protector/etp-client-configuration-guide/GUID-04D2A852-CB51-4210-9CE3-7F6ABB3B84E2.html
-
Thank you very much for your help. After I disabled DNS over HTTPS in the browser, ads disapeared as they should. Also there are some stats that tell me blocking is going on.
Nevertheless some issues/error messages remain (on my virtualbox-installation and on my thinkcentre-installation of pfSense in the same way):
(1) After every update of pfBlockerNG, I get messages of the type
1.[pfB_PRI1_v4 - Abuse_ IPBL_v4]Download FAIL [12/14/21 18:22:58](2) No "Unbound Resolver Queries since last clearing" are registered. (On the thinkcentre I have additionaly configured DNS Redirect over pfSense (that is over Unbound, if I understand it right), but the same situation there).
(3) Under "Installed Packages" I get
Package is configured but not (fully) installed or deprecated. -
- That feed has a problem. I see the same message :
-
Dono what to say. Goto Services > DNS Resolver > Advanced Settings page and crank up the Log level to "level 3" and check out the Resolver log.
-
That red message is an example : if a package name (left colum) is shown in red, then you know what this means.
Same for yellow etc.
-
To point 2: How long do I have to wait until the next clearing? Can I force a clearing? At the moment I'm running pfsense not 24/7, but always only for a few hours to try it out. Maybe that was never long enough to go through one clearing cycle? When I hover over the clock symbol with the round arrow it says "(...) Last clear: Unknown".
-
@georgrade said in pfBlockerNG-devel doesn't block anything:
How long do I have to wait until the next clearing?
Clearing : Click on the wrench to see what is ment by that :
You can choose for yourself when counters are reset. By default it's once a week.
edit : what is your DNSBL setting ? Python mode ?
-
Problem (2) seems to be solved either, but only under proxmox.
I set up pfsense under proxmox with only very basic configuration, then installed pfBlockerNG-devel and within a day Unbound Resolver Queries-registrations came up as you see on the picture. [And this worked even with the clearing frequency default setting on "Never".]
Next step is that I will try to replicate this under virtualbox and on bare metal.
Thanks again for your kind help.
My DNSBL Mode is "Unbound". When I tried "Unbound python mode" (under the proxmox setup) DNSBL got shut down automaticaly. Should I normaly use python mode?
-
@georgrade said in pfBlockerNG-devel doesn't block anything:
DNSBL got shut down automaticaly. Should I normaly use python mode?
unbound mode : is the old way of doing so.
Python method : the new way. Advantages are : better log facilities, faster to restart unbound, better control over what en when gets blocked.What do you mean : "DNSBL got shut down automaticaly" ?
"Python" IS DNSBL.
Out of the box, Python mode works well. -
By shut down automaticaly I meant, that it looked like this:
But as I noticed now, that was, because I forgot to do a Reload after changing to Python Mode.
I now was able to get pfBlockerNG-devel runing as it should in the virtualbox, so everything is good so far.