Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unable to block on pfsense

    Scheduled Pinned Locked Moved Firewalling
    5 Posts 2 Posters 531 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V Offline
      Vlee
      last edited by

      Hi everyone,

      I was originally trying to block facebook using pfsense. I followed this guide ( https://forum.pfsense.org/index.php?topic=43837.0 ) but was unable to block facebook. I figured it was because facebook had so many ips so I decided to try with another website with one ip. However, I am unable to block that website either.

      The website is eyedonation.org  (ip: 184.154.245.184)

      I tried creating an alias and a rule for it. But again, I was able to access the site.
      I then tried the DNS forwarder and was unsuccessful at blocking the site too.
      I am still able to go to eyedonation.org
      I have attached images below for a clearer look at what I did.
      Please advise.
      Thanks for your time!

      alias.png
      alias.png_thumb
      rule.png
      rule.png_thumb
      forwarder.png
      forwarder.png_thumb

      1 Reply Last reply Reply Quote 0
      • KOMK Offline
        KOM
        last edited by

        If only we could see your actual LAN firewall rules…

        1 Reply Last reply Reply Quote 0
        • V Offline
          Vlee
          last edited by

          Is this what you meant?

          lanrules.png
          lanrules.png_thumb

          1 Reply Last reply Reply Quote 0
          • KOMK Offline
            KOM
            last edited by

            Just as I thought.

            Firewall rules are processed top-down, first-match.  Since your block rules are AFTER your Allow All rules, of course nothing will be blocked.  Move them up ahead of the Allow All rules.

            1 Reply Last reply Reply Quote 0
            • V Offline
              Vlee
              last edited by

              @KOM:

              Just as I thought.

              Firewall rules are processed top-down, first-match.  Since your block rules are AFTER your Allow All rules, of course nothing will be blocked.  Move them up ahead of the Allow All rules.

              Thank you so much!  :)

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.