Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfBlockerNG web page on 10.10.10.1

    pfBlockerNG
    4
    12
    2.2k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • czar666C
      czar666
      last edited by czar666

      System:
      PC Engines APU2
      Vendor: coreboot
      BIOS: v4.16.0.3
      2.6.0-RELEASE (amd64)
      pfBlockerNG-devel 3.1.0_4

      Vlan 10 => 192.168.10.0/24
      Vlan 20 => 192.168.20.0/24
      Vlan 30 => 192.168.30.0/24
      Vlan 40 => 192.168.40.0/24
      Openvpn => 192.168.50.0/24

      Just started with pfBlockerNG and I am a bit confused. Looked to some vids and intro pages but can't find an answer to my question.
      I did a default install. Just changed the SSL Port to 9443 because 8443 is already used.

      5b037036-c0dc-411d-a0c1-b965325e9495-image.png

      Now, I thought that 10.10.10.1:9443 or 10.10.10.1 would give me a webpage of any kind concerning pfBlockerNG. But that's not the case. 10.10.10.1:9443 does not exists and 10.10.10.1 is blocked by pfBlockerNG itself. So I probably did something wrong here or I just misunderstood the concept of that vip address.

      f2be184b-9a7e-46be-b482-e24b0a15ba8d-image.png

      My pfBlockerNG firewall rules are limited to this:

      9839f819-1111-4d4f-adee-bc07c4c2333a-image.png

      The host from where I try to open the webpage is in the LAN segment.

      S 1 Reply Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @czar666
        last edited by

        @czar666 The VIP is supposed to be an unused address used internally by pfBlocker ("This address should be in an Isolated Range that is not already used in the Network"). Is 10.10.10.1 your router? Confused how port 8443 could be "in use"... Pages blocked by DNSBL are resolved to an IP showing a web page indicating it's blocked (or a cert error for HTTPS pages).

        d7df0d18-982f-4dc9-89de-c63ce6e9b0fc-image.png

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        czar666C 1 Reply Last reply Reply Quote 0
        • czar666C
          czar666 @SteveITS
          last edited by czar666

          @steveits you are right, port 8443 is not used at all on 10.10.10.1. That was a mistake of me. And thanks for you clear answer. The page I see is the correct one. I just got confused because it says that 10.10.10.1 is blocked by pfBlockerNG.
          30bae967-1b9e-46fe-b4b6-71055648a8b6-image.png

          S 1 Reply Last reply Reply Quote 1
          • S
            SteveITS Galactic Empire @czar666
            last edited by

            @czar666 said in pfBlockerNG web page on 10.10.10.1:

            because it says that 10.0.0.1 is blocked by pfBlockerNG

            Actually it says "10.10.10.1"...you're connecting directly to the block page. :)

            Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
            When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
            Upvote 👍 helpful posts!

            czar666C 1 Reply Last reply Reply Quote 0
            • czar666C
              czar666 @SteveITS
              last edited by czar666

              @steveits I changed it. That's what I get when I don't read my text before clicking on submit :-)
              But I still don't get it. Why is the block page... blocked?

              S 1 Reply Last reply Reply Quote 1
              • S
                SteveITS Galactic Empire @czar666
                last edited by

                @czar666 10.10.10.1 is used because pfBlocker wants to send the browser somewhere...so the person sees a message that it's blocked and not a browser "can't connect to server" error. It's an IP not used on any interface, but because pfSense knows about it, it can route packets to it. So when browsing directly to http://10.10.10.1 pfSense does what's it's supposed to and shows the block page (the page you'd see if you browsed to http://badsite.example.com).

                Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                Upvote 👍 helpful posts!

                czar666C 1 Reply Last reply Reply Quote 1
                • czar666C
                  czar666 @SteveITS
                  last edited by

                  @steveits Ok I finally get it. Thanks for your patience. +1 for this :-).

                  GertjanG 1 Reply Last reply Reply Quote 1
                  • GertjanG
                    Gertjan @czar666
                    last edited by Gertjan

                    @czar666

                    pfBlockerNG is ancient.
                    pfBlockerng-devel 3.1.0_4 is way better.

                    edit : ooops ....

                    @czar666 said in pfBlockerNG web page on 10.10.10.1:

                    2.4.5-RELEASE-p1 (amd64)

                    with 2.4.5 - also ancient - you actually don't have a choice.

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    czar666C 1 Reply Last reply Reply Quote 0
                    • czar666C
                      czar666 @Gertjan
                      last edited by

                      @gertjan Check my first post system settings. My signature is very old :-). I am not allowed to change it. If someone can => please delete my signature.

                      GertjanG 1 Reply Last reply Reply Quote 1
                      • GertjanG
                        Gertjan @czar666
                        last edited by

                        @czar666

                        Maybe @johnpoz can help you with your signature.

                        Use pfBlockerng-devel 3.1.0_4, it's way better.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        czar666C 1 Reply Last reply Reply Quote 0
                        • czar666C
                          czar666 @Gertjan
                          last edited by

                          @gertjan 186d9a75-1793-45b5-b2a6-8bc4389cd991-image.png
                          But thanks anyway, I am sure now it's much better ;-)

                          johnpozJ 1 Reply Last reply Reply Quote 3
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator @czar666
                            last edited by johnpoz

                            @czar666 I have deleted your sig per your request, given you a couple of thumbs ups - if you get 5 you can then edit your own signature again.

                            edit: there you go, now your at 5 rep points, you should be able to no put in what you want for your signature.

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                            1 Reply Last reply Reply Quote 1
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.