<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[pfBlockerNG blocked access to pfsense]]></title><description><![CDATA[<p dir="auto">This morning I had no internet access and couldn't even ping my pfsense routers IP address at 192.168.1.1 from the LAN so I had to power cycle the router and after a reboot I was able to access the internet again, I tried to login to the router to atttempt to figure out what happened and was greeted with a block page with the message (I also tried from different clients on the LAN)</p>
<p dir="auto">Referer     Client              Type          Group        Evaluated Domain Feed<br />
Unknown  192.168.1.84  Unknown   Unknown   Unknown                Unknown</p>
<p dir="auto">I had to restore to a previous configuration from the pfsense shell to get back into the pfsense web interface and have immediately disabled PfblockNG for the time being.</p>
<p dir="auto">What's the best way to determine what happened here and resolve the problem so I can re-enable PfblockNG?</p>
]]></description><link>https://forum.netgate.com/topic/200717/pfblockerng-blocked-access-to-pfsense</link><generator>RSS for Node</generator><lastBuildDate>Wed, 12 Aug 2026 18:07:29 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/200717.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 21 May 2026 08:46:35 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to pfBlockerNG blocked access to pfsense on Fri, 22 May 2026 05:55:13 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/doody">@<bdi>Doody</bdi></a> said in <a href="/post/1242973">pfBlockerNG blocked access to pfsense</a>:</p>
<blockquote>
<p dir="auto">I don't seem to have the option Null block (logging)</p>
</blockquote>
<p dir="auto">Go to Firewall &gt; pfBlockerNG &gt; DNSBL and make you you use :</p>
<p dir="auto"><img src="/assets/uploads/files/1779429259172-e477723c-2f9d-445d-b325-e32415b6cbbd-image.png" alt="e477723c-2f9d-445d-b325-e32415b6cbbd-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">and also :</p>
<p dir="auto"><img src="/assets/uploads/files/1779429290959-1b7e3ec8-cf98-4955-8352-d455fa756a09-image.png" alt="1b7e3ec8-cf98-4955-8352-d455fa756a09-image.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/1243002</link><guid isPermaLink="true">https://forum.netgate.com/post/1243002</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Fri, 22 May 2026 05:55:13 GMT</pubDate></item><item><title><![CDATA[Reply to pfBlockerNG blocked access to pfsense on Thu, 21 May 2026 11:52:27 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/gertjan">@<bdi>Gertjan</bdi></a> said in <a href="/post/1242969">pfBlockerNG blocked access to pfsense</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/doody">@<bdi>Doody</bdi></a></p>
<p dir="auto">If a LAN device "92.168.1.84"can't even ping "192.168.1.1" (pfSense, right ?), and you think it's pfBlocker ... that's quiet impressive.</p>
</blockquote>
<p dir="auto">Well it seems more than a coincidence that I had to power cycle my router and then was unable to access the web interface of my Pfense router as it was blocked by PfblockNG even though I had made no changes to any config.</p>
<p dir="auto">I do use IP feeds</p>
<p dir="auto"><img src="/assets/uploads/files/1779363741215-014c8d70-8e8a-4c6f-baca-f13fbcb01f6f-image-resized.png" alt="014c8d70-8e8a-4c6f-baca-f13fbcb01f6f-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">So it's highly possible that this IP address had been added during a blocklist update.</p>
<p dir="auto">Thanks I will compare the config.</p>
<p dir="auto">pfBlockerNG 3.2.8<br />
pfsense 2.8.1-RELEASE (amd64)</p>
<p dir="auto"><img src="/assets/uploads/files/1779364304353-94000137-6d77-4e0a-8e4a-a2379aec91bc-image-resized.png" alt="94000137-6d77-4e0a-8e4a-a2379aec91bc-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">I don't seem to have the option Null block (logging)</p>
]]></description><link>https://forum.netgate.com/post/1242973</link><guid isPermaLink="true">https://forum.netgate.com/post/1242973</guid><dc:creator><![CDATA[Doody]]></dc:creator><pubDate>Thu, 21 May 2026 11:52:27 GMT</pubDate></item><item><title><![CDATA[Reply to pfBlockerNG blocked access to pfsense on Thu, 21 May 2026 10:31:22 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/doody">@<bdi>Doody</bdi></a></p>
<p dir="auto">If a LAN device "92.168.1.84"can't even ping "192.168.1.1" (pfSense, right ?), and you think it's pfBlocker ... that's quiet impressive.</p>
<p dir="auto">Visiting the pfSense web GUI, using "http://192.168.1.1" and you this :</p>
<p dir="auto"><img src="/assets/uploads/files/1779358915381-5dc6db32-4ae5-4458-ba74-7f9580e6383c-image.png" alt="5dc6db32-4ae5-4458-ba74-7f9580e6383c-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">isn't normal at all.<br />
Best solution : have a talk with the admin. I don't know what he doing, but we all agree that he might do it's job a bit better ( <img src="https://forum.netgate.com/assets/plugins/nodebb-plugin-emoji/emoji/android/1f60a.png?v=717669fab53" class="not-responsive emoji emoji-android emoji--blush" style="height:23px;width:auto;vertical-align:middle" title=":blush:" alt="😊" /> )</p>
<p dir="auto">As usual :<br />
What pfSense version ? pfBlockerng version ?<br />
The fact that IP(s) (and not host names) are blocked, this means you have IP settings (feeds, etc) :<br />
This page :</p>
<p dir="auto"><img src="/assets/uploads/files/1779359089998-547d93d2-d8c5-40eb-a8fb-8ac92821f3f1-image.png" alt="547d93d2-d8c5-40eb-a8fb-8ac92821f3f1-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">and the IPv4, IPv6 etc pages.</p>
<p dir="auto">If, by accident, you use a IP feeds that contains "192.168.1.0/24" and you have pfBlockerng filter your LAN, then, yeah, that will be an issue.<br />
This is just an example of course, IP feeds shouldn't contain RFC1918. networks.</p>
<p dir="auto">Shows also your :<br />
<img src="/assets/uploads/files/1779359139629-2a7ee0ea-7a28-41fb-af85-7d28fac27297-image.png" alt="2a7ee0ea-7a28-41fb-af85-7d28fac27297-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">settings.</p>
<p dir="auto">My personal advise : use <strong>Null</strong> blocking :</p>
<p dir="auto"><img src="/assets/uploads/files/1779359177389-956e3c88-1565-4ea3-9f48-5226b9492ca8-image.png" alt="956e3c88-1565-4ea3-9f48-5226b9492ca8-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/doody">@<bdi>Doody</bdi></a> said in <a href="/post/1242963">pfBlockerNG blocked access to pfsense</a>:</p>
<blockquote>
<p dir="auto">What's the best way to determine what happened here and resolve the problem so I can re-enable PfblockNG?</p>
</blockquote>
<p dir="auto">Compare the config you used 'before' and the current one.<br />
The differences will be minor, and all pfBlockerng settings will explain the 'why'.</p>
<p dir="auto">Go here : Diagnostics &gt; Configuration History and you see there is a GUI tool just for that.<br />
( I never used it myself ^^ )</p>
]]></description><link>https://forum.netgate.com/post/1242969</link><guid isPermaLink="true">https://forum.netgate.com/post/1242969</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Thu, 21 May 2026 10:31:22 GMT</pubDate></item></channel></rss>