Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unchecking Enable DNSBL Blocks DNS resolution?

    Scheduled Pinned Locked Moved pfBlockerNG
    2 Posts 2 Posters 610 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      ChandlerL
      last edited by

      Was intending on getting into pfBlockerNGdevel 3.1.0_4 which I've had running since day 1 of having a Netgate pfSense setup. I began things with unchecking Enable DNSBL - was trying to see if the massive amounts of blocks I was getting was because of it- figured it was. So I unchecked Enable DNSBL - nothing else- and force reloaded pfBlockerNG and... no DNS resolution anymore.

      I'd like to understand what happened here. Of course, I then went an un-did what I had changed by re-enabling DNSBL (the only setting I had changed) and doing a full force reload ALL and... still no DNS resolution. I'm unable to browse anything. Interesting.

      My solution, since I'd effectively knocked all my home users off the web with no apparent resolution was to restore from a prior backup which did put things back to normal but I'd like to understand what happened and why unchecking Enable DNSBL would stop DNS resolution from functioning even when it was turned back on.

      Thanks

      -C

      fireodoF 1 Reply Last reply Reply Quote 0
      • fireodoF
        fireodo @ChandlerL
        last edited by

        @chandlerl said in Unchecking Enable DNSBL Blocks DNS resolution?:

        why unchecking Enable DNSBL would stop DNS resolution from functioning even when it was turned back on

        PfblockerNG DNSBL is tied to unbound (the resolver). There are also 2 ways: unbound mode and python mode. It will be interesting to see if, when you disable DNSBL, unbound stops running (see Log). If thats the case it could be a bug ...

        Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
        SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
        pfsense 2.8.0 CE
        Packages: Apcupsd, Cron, Iftop, Iperf, LCDproc, Nmap, pfBlockerNG, RRD_Summary, Shellcmd, Snort, Speedtest, System_Patches.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.