pfBlockerNG Rules - Are IP and DNSBL Rules Combined?
-
Hello, I searched but cannot find a definitive answer. I am a new pfSense user and installed pfBlockerNG. When I look at my firewall floating rules, I only see 2 that reference the IP lists. My dashboard seems to suggest the DNSBL aliases are applied to the firewall rules but there is no number in parenthesis next to the green up arrows. I wanted to confirm if my setup looks correct. Thank you for your help.
-
@bitperfect DNSBL uses DNS blocks...the domain now resolves to an invalid IP. They aren't firewall rules at all. The widget is just counting blocks for you.
The firewall rule there is for the PRI1 feed/category.
-
@SteveITS Thank you for the explanation. I took a look at the block lists and it is crazy the volume of ads and other packets traversing through our networks without our knowledge. Wish I had done this sooner!
-
@bitperfect I run Pihole on a tiny VM ahead of pfB. Clents look to the Pi, Pi looks to pfB/Resolver. With the blocklists I have enabled there, this is blocked, plus whatever else pfB does. It's amazing everything still works!