Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    PfblockerNG

    pfBlockerNG
    3
    8
    187
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • tharinduudaya
      tharinduudaya last edited by

      Hi Guys,

      I'm new to pfsense and I managed to install and configure PfblockerNG successfully now I need to know is there any way to unblock certain external IP Addresses from the blocking

      I used DNSBL

      S Gertjan 2 Replies Last reply Reply Quote 0
      • S
        SteveITS @tharinduudaya last edited by

        @tharinduudaya It's DNS, not by IP, but you can add the hostnames to the "DNSBL Whitelist" section.

        Steve

        Only install packages for your version, or risk breaking it. If yours is older, select it in System/Update/Update Settings.
        When upgrading, let it finish. Allow 10 minutes or more depending on packages and device speed.

        tharinduudaya 1 Reply Last reply Reply Quote 1
        • Gertjan
          Gertjan @tharinduudaya last edited by

          @tharinduudaya

          Stuff that gets blocked can be seen here :

          da2026fb-068a-4521-b113-cbe383cdb66a-image.png

          Hover the mouse pointer over

          795927f1-aa6f-43ca-b131-30c3720846cb-image.png

          and read what is proposed.

          'play' with them.

          No "help me" PM's please. Use the forum.

          tharinduudaya 1 Reply Last reply Reply Quote 1
          • tharinduudaya
            tharinduudaya @Gertjan last edited by

            @gertjan I tried these and this is unlocked only the domain right?

            1 Reply Last reply Reply Quote 0
            • tharinduudaya
              tharinduudaya @SteveITS last edited by

              @steveits Hostname means device hostname right?

              Gertjan 1 Reply Last reply Reply Quote 0
              • Gertjan
                Gertjan @tharinduudaya last edited by

                @tharinduudaya

                Yep.

                Something like :

                a38c4590-721e-4004-8806-56f8f5eac2ff-image.png

                is a fully qualified host name.

                No "help me" PM's please. Use the forum.

                tharinduudaya 1 Reply Last reply Reply Quote 0
                • tharinduudaya
                  tharinduudaya @Gertjan last edited by

                  @gertjan Hi I found a method to whitelist the Internal IPs. I enabled Pfblocker python mood

                  Gertjan 1 Reply Last reply Reply Quote 0
                  • Gertjan
                    Gertjan @tharinduudaya last edited by

                    @tharinduudaya

                    The python module doesn't work with IPs.
                    It's under the DNSBL tab, not the IP tab :

                    f124b7b9-7320-4fef-b47f-70285b86a091-image.png

                    The python module gets called by the Resolver unbound, you can see it as a plugin for the resolver.
                    The resolver resolves host names to IP addresses (amongst others).

                    You can white list host names of coutse.

                    No "help me" PM's please. Use the forum.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post