Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pFblockerNG Occasionally Stops Blocking

    Scheduled Pinned Locked Moved pfBlockerNG
    2 Posts 2 Posters 361 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SludgeT
      last edited by SludgeT

      Hello From the UK, this Is my first Post.
      I Have Hagezi and OIsd Active In DNSBL every 3 Hours. I Don’t Have any other PFsense Packages Installed. It works But With The same settings It just stops Blocking Odd Day When It All looks Right And worked The days before, then days later, starts working again. What Makes No difference Is UPDate and Reload and Reinstalling PFG, Keeping the Settings.

      I’ve Got CLoudFlare as A DNS Resolver To stop DNS Leak. I Am considering Using NextDNS For A Fix, As A Alternative And Just Using PFG For GEoIP BLock.

      What Settings CAn I APplyCheck REApply in My FIrewall/PFg For A Better Setup. Thanks.

      Also when It’s working Putting these
      advertising.apple.com
      iadsdk.apple.com
      metrics.icloud.com
      metrics.mzstatic.com
      api-adservices.apple.com
      ads.youtube.com
      books-analytics-events.apple.com
      weather-analytics-events.apple.com
      notes-analytics-events.apple.com

      To Block them in the DNSBL BLacklist, Enabled Deny Outbound List. IT Doesn’t Block them, Checked by AD Toolz GitHub.

      Settings Mainly Default.
      Have UNbound
      Virtual IP 7.7.7.1 Setup With UnBlocked FireWall Rule.
      IP ALias
      Web Server Interface LAN
      Port 8081 8443 With Unblocked Firewall Rule
      DNSBL IPs List Action Deny Both
      Placeholder IP Address 127.1.7.7
      IP Both INbound/ Outbound FIrewall rules WAN/LAN Both Blocked. Not Sure About this Setting and What I Should have Setup Correctly Minimum.
      Kill STates Enabled

      BBcan177B 1 Reply Last reply Reply Quote 0
      • BBcan177B
        BBcan177 Moderator @SludgeT
        last edited by

        @SludgeT try using an RFC1918 IP address for the DNSBL webserver.

        "Experience is something you don't get until just after you need it."

        Website: http://pfBlockerNG.com
        Twitter: @BBcan177  #pfBlockerNG
        Reddit: https://www.reddit.com/r/pfBlockerNG/new/

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.