Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PfBlockerNG

    Scheduled Pinned Locked Moved pfBlockerNG
    7 Posts 3 Posters 2.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      repa
      last edited by

      Hi,

      we're currently "playing" arround with pfBlockerNG to secure our systems a bit more.

      The big question that is currently in the room:

      • we have some pfsense firewalls with alot of networks behind. Is it possible to use PfBlockerNG and select specific destinations?

      So ex: pfB_Africa_V4 is only blocked for network 1.2.3.4/24, but not for other networks.

      I can edit the firwall rules, but on next update, the changes are lost.

      Thank!

      1 Reply Last reply Reply Quote 0
      • RonpfSR
        RonpfS
        last edited by

        You can use the List Action : Alias Deny/Pass/Match/Native and create you own FW rules using those aliases

        2.4.5-RELEASE-p1 (amd64)
        Intel Core2 Quad CPU Q8400 @ 2.66GHz 8GB
        Backup 0.5_5, Bandwidthd 0.7.4_4, Cron 0.3.7_5, pfBlockerNG-devel 3.0.0_16, Status_Traffic_Totals 2.3.1_1, System_Patches 1.2_5

        1 Reply Last reply Reply Quote 0
        • R
          repa
          last edited by

          thanks for your quick answer!

          You mean i can use the pfblockNG Aliases and create my own rules ?

          But this will not work, when the rule order is pfB_Block/Reject | All other rules ?

          1 Reply Last reply Reply Quote 0
          • R
            repa
            last edited by

            @RonpfS:

            You can use the List Action : Alias Deny/Pass/Match/Native and create you own FW rules using those aliases

            Okay, got it now, thanks!

            1 Reply Last reply Reply Quote 0
            • BBcan177B
              BBcan177 Moderator
              last edited by

              You can also customize the pfBNG firewall rules using the "Adv. Inbound Settings".

              The next release will also allow the customization of the "Outbound" Firewall rules… This will make it easier to manage firewall rules instead of manually creating "Alias" Type rules.

              "Experience is something you don't get until just after you need it."

              Website: http://pfBlockerNG.com
              Twitter: @BBcan177  #pfBlockerNG
              Reddit: https://www.reddit.com/r/pfBlockerNG/new/

              1 Reply Last reply Reply Quote 0
              • R
                repa
                last edited by

                @BBcan177:

                You can also customize the pfBNG firewall rules using the "Adv. Inbound Settings".

                The next release will also allow the customization of the "Outbound" Firewall rules… This will make it easier to manage firewall rules instead of manually creating "Alias" Type rules.

                Thanks for your reply.

                we have the following condition:

                Germany needs to access Host #1, but Germany dont have to enter Host #2

                Sweden needs to have access to Host #2 but not to host #1

                I think, we can't get this working with pfBlockerNG, right ?

                1 Reply Last reply Reply Quote 0
                • BBcan177B
                  BBcan177 Moderator
                  last edited by

                  @repa:

                  I think, we can't get this working with pfBlockerNG, right ?

                  Yes

                  "Experience is something you don't get until just after you need it."

                  Website: http://pfBlockerNG.com
                  Twitter: @BBcan177  #pfBlockerNG
                  Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.