Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfBlockerNG-devel v3.1.0_19/10

    Scheduled Pinned Locked Moved pfBlockerNG
    77 Posts 17 Posters 18.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • cmcdonaldC
      cmcdonald Netgate Developer @fireodo
      last edited by

      @fireodo

      Try again. Another package was failing and thus blocking the build job for 22.05 packages.

      Need help fast? https://www.netgate.com/support

      fireodoF M 2 Replies Last reply Reply Quote 1
      • fireodoF
        fireodo @cmcdonald
        last edited by

        @cmcdonald said in pfBlockerNG-devel v3.1.0_19/10:

        @fireodo

        Try again. Another package was failing and thus blocking the build job for 22.05 packages.

        👍 Its available now!

        Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
        SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
        pfsense 2.7.2 CE
        Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

        1 Reply Last reply Reply Quote 1
        • M
          manilx @cmcdonald
          last edited by

          @cmcdonald Installed!

          Netgate 8200max

          BBcan177B 1 Reply Last reply Reply Quote 1
          • BBcan177B
            BBcan177 Moderator @manilx
            last edited by BBcan177

            I have pushed another version to fix a couple of issues. So expect to see _20 or _11 depending on what pfSense version you use. Thanks.

            "Experience is something you don't get until just after you need it."

            Website: http://pfBlockerNG.com
            Twitter: @BBcan177  #pfBlockerNG
            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

            M fireodoF J P 4 Replies Last reply Reply Quote 6
            • M
              manilx @BBcan177
              last edited by

              @bbcan177 Just updated to _11.
              All OK.

              Netgate 8200max

              1 Reply Last reply Reply Quote 0
              • fireodoF
                fireodo @BBcan177
                last edited by

                @bbcan177
                Updated to 3.1.0_11 - all good! Thanks

                Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
                SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
                pfsense 2.7.2 CE
                Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

                1 Reply Last reply Reply Quote 1
                • J
                  jdeloach @BBcan177
                  last edited by

                  @bbcan177
                  Updated from v3.1.0_10 to v3.1.0.11 with no issues.

                  Thanks for the quick update.

                  1 Reply Last reply Reply Quote 0
                  • P
                    pfT @BBcan177
                    last edited by

                    @bbcan177

                    I've also updated and can confirm this fixed the error I was seeing with ASN.

                    I'm now getting:

                    [ Virgin_Media_UK_AS13076_v4 ]	 Downloading update .
                      Downloading ASN: 13076... completed
                    . completed ..
                      Empty file, Adding '127.1.7.7' to avoid download failure.
                    

                    but I've seen that occasionally before (and why I originally set my other ASN aliases to HOLD when i suddenly found I couldn't connect from my phone externally via Wireguard or OpenVPN).

                    I suspect this probably just indicates a problem with the download site, rather than any underlying problem within pfBlockerNG-devel v3.1.0_11 on pfSense 2.6.0.

                    I've leave my test entry in there and see if it properly updates in a few days.

                    Thanks for such a swift update and resolution.

                    P 1 Reply Last reply Reply Quote 0
                    • P
                      pfT @pfT
                      last edited by pfT

                      @pft said in pfBlockerNG-devel v3.1.0_19/10:

                      @bbcan177

                      I've also updated and can confirm this fixed the error I was seeing with ASN.

                      I'm now getting:

                      [ Virgin_Media_UK_AS13076_v4 ]	 Downloading update .
                        Downloading ASN: 13076... completed
                      . completed ..
                        Empty file, Adding '127.1.7.7' to avoid download failure.
                      

                      but I've seen that occasionally before (and why I originally set my other ASN aliases to HOLD when i suddenly found I couldn't connect from my phone externally via Wireguard or OpenVPN).

                      I suspect this probably just indicates a problem with the download site, rather than any underlying problem within pfBlockerNG-devel v3.1.0_11 on pfSense 2.6.0.

                      I've leave my test entry in there and see if it properly updates in a few days.

                      Thanks for such a swift update and resolution.

                      As an update.
                      I did some more digging and found my test ASN numbers didn't contain any IP ranges, so the result was expected.

                      Once I chose an ASN containing IP ranges. (AS5089 for what i was expecting from AS13076) then it all worked perfectly.

                      I am still getting some weirdness though.

                      I'm getting:

                      ====================[ Empty Lists w/127.1.7.7 ]==================
                      
                      Spamhaus_Drop_v4.txt
                      

                      even though the link at https://www.spamhaus.org/drop/drop.txt displays correctly and contains CIDRs.

                      Not entirely sure what's going on there, but i'm happy to live with it.

                      BBcan177B 1 Reply Last reply Reply Quote 0
                      • BBcan177B
                        BBcan177 Moderator @pfT
                        last edited by

                        @pft said in pfBlockerNG-devel v3.1.0_19/10:

                        Not entirely sure what's going on there, but i'm happy to live with it

                        Probably due to deduplication

                        "Experience is something you don't get until just after you need it."

                        Website: http://pfBlockerNG.com
                        Twitter: @BBcan177  #pfBlockerNG
                        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                        P 1 Reply Last reply Reply Quote 1
                        • P
                          pfT @BBcan177
                          last edited by

                          @bbcan177 said in pfBlockerNG-devel v3.1.0_19/10:

                          @pft said in pfBlockerNG-devel v3.1.0_19/10:

                          Not entirely sure what's going on there, but i'm happy to live with it

                          Probably due to deduplication

                          bbcan177,

                          Thanks.

                          That's exactly what it was. Coincidentally, I had just finished checking exactly that before seeing your post. I learn something every day.

                          I feel I have taken this thread completely off topic. Sorry for that.

                          I'll crawl back into my hole and stop bothering both you and the community. I feel quite abashed at the moment.

                          BBcan177B 1 Reply Last reply Reply Quote 0
                          • BBcan177B
                            BBcan177 Moderator @pfT
                            last edited by

                            @pft read my tagline below....:)

                            "Experience is something you don't get until just after you need it."

                            Website: http://pfBlockerNG.com
                            Twitter: @BBcan177  #pfBlockerNG
                            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                            1 Reply Last reply Reply Quote 2
                            • T
                              Tigo @BBcan177
                              last edited by

                              @bbcan177

                              Unfortunately, ver _20 is not showing up for me on pfsense 23.01 - it's still reading ver _16. I have tried updating the repository from shell, and it's reporting that repositories are up to date.

                              Is there an command that I can run from shell to force the upgrade for it? I also have the portBSD repsositories enabled as well.

                              Thanks,

                              T 1 Reply Last reply Reply Quote 0
                              • Y
                                yorke
                                last edited by

                                @bbcan177

                                pfBlockerNG-devel 3.1.0_11 |ERROR| python module 'maxminddb
                                Pfsense 2.6.0-RELEASE
                                I upgraded pfBlockerNG-devel to 3.1.0_11 and got some issue before i upgraded everyting was work but now after the upgrade I am geting the errors listed below,
                                2023-01-20 18:16:12,627|ERROR| [pfBlockerNG]: Failed to load python module 'maxminddb': No module named 'maxminddb'
                                2023-01-20 18:16:12,627|ERROR| [pfBlockerNG]: Failed to load python module 'sqlite3': No module named '_sqlite3'
                                MaxMind GeoIP download the file and GeoLite2-Country.mmdb is in /usr/local/share/GeoIP
                                Under Report tab Alert country code are listed under GeoIP/ASN.
                                The report tab showns traffic being pass/block
                                the dashboard for DNSBL the packets stay at 0 the counter do not move, but the ip counter works
                                I Referenced these post https://forum.netgate.com/topic/176668/geoip-showing-unk
                                https://forum.netgate.com/topic/176991/geoip-shows-country-as-unknown
                                to try and fix it.
                                their are no other errors but the ones below.

                                BBcan177B N 2 Replies Last reply Reply Quote 0
                                • BBcan177B
                                  BBcan177 Moderator @yorke
                                  last edited by

                                  @yorke did you try to reinstall the package? Reboot?

                                  "Experience is something you don't get until just after you need it."

                                  Website: http://pfBlockerNG.com
                                  Twitter: @BBcan177  #pfBlockerNG
                                  Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                  Y 1 Reply Last reply Reply Quote 0
                                  • T
                                    Tigo @Tigo
                                    last edited by

                                    @tigo

                                    I had also uninstalled it. Rebooted. Checked the branch updates, - and it’s still v_16. Installed it again - configured - rebooted and yet no v_20.

                                    Perhaps it hasn’t been approved - pushed out yet?

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      smolka_J
                                      last edited by

                                      I have been getting quite a bit of download/update failures on 3.1.0_11 for any feed trying to update. Going into my previously working feeds lists, when I first enabled a few with pfBlockerng still disabled on the general tab after updating, settings saved fine with no errors. Re-enabled pfBlocker, forced reload, forced update and cron seeing the "Invalid URL. Terminating Download!" for each. Looking into the same DNSBL lists noting failures, attempting to save/edit/disable any while pfBlocker is enabled displays the errors below on both boxes, verified DNS hostnames and lists are all working otherwise except the same couple that were still down prior pending maintenance:

                                      DNSBL Source Definitions, Line 1: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 2: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 3: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 5: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 6: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 7: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 8: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 10: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 11: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 12: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 13: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 14: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 15: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 16: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 18: Invalid URL or Hostname not resolvable!
                                      DNSBL Source Definitions, Line 19: Invalid URL or Hostname not resolvable!

                                      BBcan177B 1 Reply Last reply Reply Quote 0
                                      • Y
                                        yorke @BBcan177
                                        last edited by

                                        @bbcan177

                                        Yes did a clean fresh install of the PfblockerNG package 3 times with the keep settings uncheck
                                        but the error is still showing up , I notice under the Report unified Geoip is unk but under Alert Geoip/ASN list country,
                                        the packages i have installed are PfblockerNG, Suricata and Cron (memory usage 8% ), (MBUF Usage 3%), (State table size 0%) ( cpu usage 4%) (Swap space 0%) Service Status all green,
                                        did some test clear the Dns Resolver log under( system logs/system/dns resolver/) these 2 lines
                                        unbound 21493 [21493:0] notice: init module 0: python
                                        unbound 21493 [21493:0] info: [pfBlockerNG]: pfb_unbound.py script loaded
                                        reappear go to the dashboard the DNSBL turns yellow and gives the error
                                        |ERROR| [pfBlockerNG]: Failed to load python module 'maxminddb': No module named 'maxminddb'
                                        |ERROR| [pfBlockerNG]: Failed to load python module 'sqlite3': No module named '_sqlite3'

                                        BBcan177B 1 Reply Last reply Reply Quote 0
                                        • BBcan177B
                                          BBcan177 Moderator @smolka_J
                                          last edited by

                                          @smoke_a_j said in pfBlockerNG-devel v3.1.0_19/10:

                                          DNSBL Source Definitions, Line 1: Invalid URL or Hostname not resolvable!

                                          Either DNS isn't working on your box or something is blocking those urls.

                                          "Experience is something you don't get until just after you need it."

                                          Website: http://pfBlockerNG.com
                                          Twitter: @BBcan177  #pfBlockerNG
                                          Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                          S 1 Reply Last reply Reply Quote 0
                                          • BBcan177B
                                            BBcan177 Moderator @yorke
                                            last edited by

                                            @yorke I would backup you config and install a fresh copy of pfSense. Followed by a restore of the config.

                                            "Experience is something you don't get until just after you need it."

                                            Website: http://pfBlockerNG.com
                                            Twitter: @BBcan177  #pfBlockerNG
                                            Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                                            Y 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.