• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

pfBlockerNG with Windows Server DHCP and DNS

Scheduled Pinned Locked Moved DHCP and DNS
6 Posts 2 Posters 574 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • S
    SAMitguy
    last edited by Oct 11, 2022, 9:51 PM

    Hello, I am trying to use pfBlockerNG as a content filter for my domain. I have a dedicated local server running as DHCP and DNS. The pfsense is not running a DHCP server and the DNS resolver is on. On the windows side, the DNS server is forwarding to the local address (lets call it 10.0.1.2) as well as the ISP DNS servers. Even after setting up pfBlockerNG with different tutorials, it does not work. I suspect it is because it tries to use pfSense as a DNS server while it is windows that is running the DNS server. Any help would be much appreciated.

    S 1 Reply Last reply Oct 11, 2022, 10:51 PM Reply Quote 0
    • S
      SteveITS Galactic Empire @SAMitguy
      last edited by Oct 11, 2022, 10:51 PM

      @samitguy Windows can forward to any DNS. Don't also forward to the ISP though, since that would bypass pfSense. Also there is a checkbox somewhere in the Windows DNS settings to use root servers if it doesn't get a response from the forwarded server.

      Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
      When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
      Upvote 👍 helpful posts!

      S 1 Reply Last reply Oct 11, 2022, 10:52 PM Reply Quote 0
      • S
        SAMitguy @SteveITS
        last edited by Oct 11, 2022, 10:52 PM

        @steveits ok thank you. Is there a way to tell pfSense to use the windows DNS and DHCP servers so that pfBlockerNG works?

        S 1 Reply Last reply Oct 12, 2022, 2:12 PM Reply Quote 0
        • S
          SteveITS Galactic Empire @SAMitguy
          last edited by Oct 12, 2022, 2:12 PM

          @samitguy Not sure I understand. What DNS are the PCs on the network using?

          pfSense can be configured to forward queries to a specific DNS server. Either via "Domain Overrides" (useful for a Windows domain network) or via the "DNS Query Forwarding" checkbox which forwards all queries. PCs using pfSense for DNS would have queries forwarded on as configured. However none of this is relevant to "so that pfBlockerNG works"....

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote 👍 helpful posts!

          S 1 Reply Last reply Oct 13, 2022, 6:57 PM Reply Quote 0
          • S
            SAMitguy @SteveITS
            last edited by Oct 13, 2022, 6:57 PM

            @steveits The PCs are using the Windows DNS server.

            What I would like to happen is for pfBlockerNG to act as a content filter with the Windows DNS server handling DNS and Windows DHCP server handling DHCP. pfSense should only act as a router and a host for pfBlockerNG.

            S 1 Reply Last reply Oct 13, 2022, 7:21 PM Reply Quote 0
            • S
              SteveITS Galactic Empire @SAMitguy
              last edited by Oct 13, 2022, 7:21 PM

              @samitguy On your Windows DNS server(s) forward all queries to your pfSense.

              You may need to empty the DNS cache on the server(s) and any devices. ipconfig /flushdns on the PCs, or dnscmd /clearcache for the DNS Server cache.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote 👍 helpful posts!

              1 Reply Last reply Reply Quote 0
              6 out of 6
              • First post
                6/6
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                This community forum collects and processes your personal information.
                consent.not_received