Tutorial: pfsense and pfBlockerNG Version 3

แชร์
ฝัง
  • เผยแพร่เมื่อ 18 พ.ค. 2024
  • Connecting With Us
    ---------------------------------------------------
    + Hire Us For A Project: lawrencesystems.com/hire-us/
    + Tom Twitter 🐦 / tomlawrencetech
    + Our Web Site www.lawrencesystems.com/
    + Our Forums forums.lawrencesystems.com/
    + Instagram / lawrencesystems
    + Facebook / lawrencesystems
    + GitHub github.com/lawrencesystems/
    + Discord / discord
    Lawrence Systems Shirts and Swag
    ---------------------------------------------------
    ►👕 lawrence.video/swag
    AFFILIATES & REFERRAL LINKS
    ---------------------------------------------------
    Amazon Affiliate Store
    🛒 www.amazon.com/shop/lawrences...
    UniFi Affiliate Link
    🛒 store.ui.com?a_aid=LTS
    All Of Our Affiliates that help us out and can get you discounts!
    🛒 lawrencesystems.com/partners-...
    Gear we use on Kit
    🛒 kit.co/lawrencesystems
    Use OfferCode LTSERVICES to get 5% off your order at
    🛒 lawrence.video/techsupplydirect
    Digital Ocean Offer Code
    🛒 m.do.co/c/85de8d181725
    HostiFi UniFi Cloud Hosting Service
    🛒 hostifi.net/?via=lawrencesystems
    Protect you privacy with a VPN from Private Internet Access
    🛒 www.privateinternetaccess.com...
    Patreon
    💰 / lawrencesystems
    / pfblockerng
    / pfblockerng
    ⏱️ Timestamps ⏱️
    0:00 pfblocker patreon
    2:02 pfblocker reddit posts and changelog
    3:36 installing pfblocker
    4:10 pfblocker wizard
    7:20 Customizing pfblocker
    8:20 Floating Rules
    10:18 Maxmind Licence Key
    11:06 IP Block Lists
    13:20 adding feeds
    15:16 GeoIP Configuration
    17:40 Alerts and Reporting
    19:31 DNSBL Configuration
    21:47 Threat Lookups
    25:05 DNSBL Whitelisting
    #pfsense #Firewalls
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 166

  • @tomferrin1148
    @tomferrin1148 2 ปีที่แล้ว +54

    I set up pfBlockerNG about a year ago by following Tom's tutorial. After making some other changes to my firewall setup recently I decided to re-run pfBlocker's wizard just so I could start with a fresh config. This tutorial is still as spot-on as it was when Tom first made it. So I'm giving another tip of my hat to Tom for his outstanding guidance and thorough explanation of this package.

  • @kennethwilson1140
    @kennethwilson1140 3 ปีที่แล้ว +6

    Tom, thanks for another great update it's much appreciated!

  • @gh8447
    @gh8447 3 ปีที่แล้ว +5

    Perfect timing! I installed this plug ages ago and was about to finally going and set it up.

  • @RiggsTek
    @RiggsTek 2 ปีที่แล้ว +5

    Thanks for this Tom, very complete and awesome explanations.

  • @freshness7114
    @freshness7114 3 ปีที่แล้ว

    Super helpful video, best one I've seen yet on pfBlocker. Many thanks!!

  • @gregwysocki8742
    @gregwysocki8742 2 ปีที่แล้ว

    Always a great tutorial. Used it again after updating to a 4-port intel NIC from a 2-port...thanks!

  • @AniketChakrabartyIndia
    @AniketChakrabartyIndia 3 ปีที่แล้ว +10

    it almost 1.5 years that I undoubtedly follow your tutorials for pfsense configuration, really good content and knowledge shared at it upmost form, thank you very much.

  • @matthewbarnett3461
    @matthewbarnett3461 ปีที่แล้ว +2

    Best pfSense content ever. Thankyou your stuff has been a big help!

  • @chrisumali9841
    @chrisumali9841 3 ปีที่แล้ว

    Thanks for the demo and info, have a great day

  • @dereksinkro1961
    @dereksinkro1961 2 ปีที่แล้ว

    Thank you for the thorough explanation!

  • @JuanLopez-db4cc
    @JuanLopez-db4cc 3 ปีที่แล้ว +1

    As always excellent content. Thank you.

  • @zsteinkamp
    @zsteinkamp ปีที่แล้ว +5

    Just wanna say thanks for the great info! I know it's a massive effort to put together all these videos. They've been such a help for me as I've gotten started with pfSense and TrueNAS over the last couple of weeks.

  • @kamikazee2239
    @kamikazee2239 3 ปีที่แล้ว

    As always thanks for the video, your vids are always great!

  • @chacha7225
    @chacha7225 3 ปีที่แล้ว

    Best of the best as always.. thank you 🙏 for awesome videos!!

  • @andreavergani7414
    @andreavergani7414 3 ปีที่แล้ว

    Thanks Tom. Its a lil of time that i want to start a pfblocker. Hope your guides can help me. Ciao

  • @ashleykingston1980
    @ashleykingston1980 3 ปีที่แล้ว +1

    Thanks for the guide Tom. Upgraded from 2.5 to 3.0. Sound advice as always.

  • @joevining2603
    @joevining2603 ปีที่แล้ว +5

    Been using this for a couple years and forgot to donate. Just signed up for the Patreon and I encourage others who have the means to do so as well. It's these developers who continue to push pfSense to the top.

  • @rogerjohnson8969
    @rogerjohnson8969 3 ปีที่แล้ว

    Thank you for making these videos!!

  • @fritzchristoph8670
    @fritzchristoph8670 2 ปีที่แล้ว

    Thank you Tom, your videos are awsome and i have learned so much... love my netgate 5100!!! (got it cheap...)

  • @nkerboute
    @nkerboute 3 ปีที่แล้ว

    Great video as always. Keep it up!

  • @PCTechHustle
    @PCTechHustle 3 ปีที่แล้ว +7

    Love it Tom! Always great detailed content for exactly what I am looking for, best PfSense tutorials on TH-cam!

  • @TechMeOut5
    @TechMeOut5 3 ปีที่แล้ว

    Excellent stuff Lawrence!

  • @ramoschico
    @ramoschico 3 ปีที่แล้ว

    Thank you very much for sharing knowledge. may God return you in much more ...

  • @darius55508
    @darius55508 ปีที่แล้ว +1

    Thank you, as always very good information

  • @soheylsalehi3143
    @soheylsalehi3143 9 หลายเดือนก่อน

    Thank you very much for the great Information. You are awesome.

  • @Porcyln
    @Porcyln ปีที่แล้ว

    Great tutorial! Thank you sir.

  • @krinzyjewaldo1697
    @krinzyjewaldo1697 8 หลายเดือนก่อน

    Great, especially the custom list

  • @mishudanco2426
    @mishudanco2426 3 ปีที่แล้ว +2

    Great video. Small request: can you please zoom in when you show what you do on screen? It would be much easier to see on the phone the details you show
    Thanks👍

  • @fabiuzaum
    @fabiuzaum 3 ปีที่แล้ว

    Thank you. It helped a lot!

  • @CandieyestudioCoUkPhotographer
    @CandieyestudioCoUkPhotographer 3 ปีที่แล้ว +4

    Thanks Tom for the update, can we get an update on connecting Truenas to PfSense in LACP, please? Pref with a Netgear managed switch!!! lol

  • @LAWRENCESYSTEMS
    @LAWRENCESYSTEMS  3 ปีที่แล้ว +18

    Patreon Link for the pfblocker creator
    www.patreon.com/pfBlockerNG
    pfblocker reddit
    www.reddit.com/r/pfBlockerNG/
    Maxmind GEOIP Registration www.maxmind.com/en/geolite2/signup
    ⏱️ Timestamps ⏱️
    0:00 pfblocker patreon
    2:02 pfblocker reddit posts and changelog
    3:36 installing pfblocker
    4:10 pfblocker wizard
    7:20 Customizing pfblocker
    8:20 Floating Rules
    10:18 Maxmind Licence Key
    11:06 IP Block Lists
    13:20 adding feeds
    15:16 GeoIP Configuration
    17:40 Alerts and Reporting
    19:31 DNSBL Configuration
    21:47 Threat Lookups
    25:05 DNSBL Whitelisting

    • @andrewenglish3810
      @andrewenglish3810 3 ปีที่แล้ว

      Where is the GeoIP link you said you were going to add to this video?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 ปีที่แล้ว

      @@andrewenglish3810 www.maxmind.com/en/geolite2/signup

  • @krypton8784
    @krypton8784 2 ปีที่แล้ว

    Finally I find something to block Ads. Thanks

  • @JonBrookes
    @JonBrookes ปีที่แล้ว

    top banana. Common sense approach. Sensible application. Thanks for posting this.

  • @aborsic
    @aborsic 2 ปีที่แล้ว +1

    Thank you for sharing this video which is super useful to anyone starting new to use pfSense / pfBloker. I have a question:: the GEO IP page suggests not blacklisting "the whole world" but to whitelist a few countries from which one is interested in receiving traffic. I believe the approach demonstrated in the video the whole world blacklisting. If you provided instructions, or a dedicated video, on how to whitelist a few countries, that would be super ! (simply a suggestion for consideration)

  • @EltonKuzniewski
    @EltonKuzniewski 2 ปีที่แล้ว

    It help me a lot! Thanks!

  • @Franchyze923
    @Franchyze923 ปีที่แล้ว

    Very helpful! Thanks

  • @Ace-qw2cq
    @Ace-qw2cq 2 ปีที่แล้ว +1

    Great video and thanks for the help. If you have VPN setup do you select openvpn for both inbound and outbound interfaces during the setup.

  • @geoff4009
    @geoff4009 2 ปีที่แล้ว +2

    It's important to note that pfBlockerNG won't work if you're running DNS Forwarder. I was getting address bind errors with unbound after running the setup wizard. To fix, I needed to disable DNS Forwarder and set up DNS Resolver instead. This might be obvious to many, but for a noob like me it took some time to work out the problem.

  • @jackv486
    @jackv486 3 ปีที่แล้ว +1

    Thanks, for this explanation. I would appreciate that you would make a video explaining the lists you are using, and custom lists not found in the Feeds . Cheers

  • @HijmenSchilperoort
    @HijmenSchilperoort 3 ปีที่แล้ว +11

    One of the first things I do when setting up pfblocker-ng is add the (public) DNS servers I use to the IP whitelist.
    For example; Some time ago the 1.1.1.1 was put on a blacklist :(
    I had to spend some time figuring out why internet was "dead" on every device in the entire network 🤬

    • @HijmenSchilperoort
      @HijmenSchilperoort 3 ปีที่แล้ว

      @S K that is exact how I have my setup.
      However, if a pfblocker ip blacklist contain the ip of the dns you use for the dns resolver then the dns resolver can not contact that external dns server and nothing in your network will be able to resolve external sites.
      I found this out the hard way :(

  • @RyouConcord
    @RyouConcord 2 ปีที่แล้ว

    Thank you!!

  • @TaylorSwifty69
    @TaylorSwifty69 2 ปีที่แล้ว

    thank you!

  • @mattcero1
    @mattcero1 2 ปีที่แล้ว

    Just becasue a webpage says they're a data analytics company it doesn't mean that "clearly" they're a data analytics company. It's just a web page son. I have a bridge for sale. Interested? Fantastic video though. This makes me want to stay with PFSense. You've got one of the lowest thumbs down ratios I've ever seen. Keep up the good work. Thank you.

  • @garretts9529
    @garretts9529 2 ปีที่แล้ว

    Thank you for all your videos! I really want to buy a couple of your shirts like the crimp hand one, but they are black and I work outdoors mostly in texas :(

  • @gerrymaddock9234
    @gerrymaddock9234 3 ปีที่แล้ว +7

    I see for North America you have it set for "Match Both". What does match both do?

  • @verygoodbrother
    @verygoodbrother 2 ปีที่แล้ว

    Basically for newbies, leave settings as defaults which works for me.

  • @21language
    @21language 2 ปีที่แล้ว +1

    Tom, I was watching your PfblockerNG video from 2019, and then i ran into the MaxMind error, then i searched for this video and bang, problem solved

  • @rolson1011
    @rolson1011 3 ปีที่แล้ว

    I've been trying to allow a specific port forward to bypass the GeoIP lists. I can't seem to find a good resource for this latest version. Since you mentioned enabling floating rules, would I just add a new floating FW rule to the top of the list that allows that one port?

  • @technomad900
    @technomad900 3 ปีที่แล้ว +1

    Nice introduction to PFblocker. I deployed it yesterday following this video , hoping to block websites , however many are still getting through . http versions of sites are blocked but https versions are returning . Any advise ? ( Using Shallalist , Already enabled TLD , Force reloaded , rebooted )

  • @gajotres
    @gajotres 11 หลายเดือนก่อน +1

    If anyone is having problems with MaxMind licence being rejected, just update pfBlockerNg to version 3.2.0_4.

  • @sy5tem
    @sy5tem ปีที่แล้ว

    ty for all the great info, and any site taht i found taht "you must unblock us to view content" is a big okay bye bye for me. i don't need them. lol

  • @kennethnicklowicz1030
    @kennethnicklowicz1030 2 ปีที่แล้ว +1

    I am from michigan same area :P

  • @miketarbox1190
    @miketarbox1190 3 ปีที่แล้ว +8

    I was hoping that you would hit on Unbound mode, whether through Unbound mode or through the Unbound Python mode, and what, if any changes need to be made. But good content as always Tom, and I thank you for putting this out.

    • @michaeljaques77
      @michaeljaques77 3 ปีที่แล้ว

      I was hoping for that as well, but I can understand if he doesn't as its still listed as BETA.
      I just attempted changing to the "unbound python mode" and DNSBL broke in all sorts of ways so I just went back to "unbound mode" for now. Still works great!

  • @t0nkatsu
    @t0nkatsu 3 ปีที่แล้ว +1

    Hey Lawrence, I want to run pfSense but it has to be on a box with multiple 10GbE SFP+ slots. Know of any such commonly available hardware that can be used with pfSense?

  • @rpsmith
    @rpsmith 2 ปีที่แล้ว

    👍👍

  • @ToxicwasteProductions
    @ToxicwasteProductions 8 หลายเดือนก่อน

    Can I have lan1 non filtered via pf blocker and. Having lan2 or opt filtered by pf blocker?

  • @chrislowe8085
    @chrislowe8085 2 ปีที่แล้ว

    When do we think v3 of pfblockng will be stable and not dev? thanks for all your pfsense video's they really help.

  • @crites57
    @crites57 3 ปีที่แล้ว

    Kind of off topic, but how did you get the selected check boxes in pfSense a different color? :-)

  • @neccron9956
    @neccron9956 3 ปีที่แล้ว

    Why in the GeoIP setting for North America, do you have it as Match Both vs Deny Inbound?

  • @BizAutomation
    @BizAutomation 2 ปีที่แล้ว

    Wonder if there's a reason to run PFblocker together with the blacklist blocker on CloudFlare.

  • @subzzeroevil
    @subzzeroevil 3 ปีที่แล้ว

    Cool needed this but some of the default feeds gone. Does anyone have new feeds that will replace the ones we lost?

  • @MrJetlag34
    @MrJetlag34 ปีที่แล้ว

    Thx for great video. Although I think its pretty confusing :D NFL Game Pass android app(on tv), is getting ad-blocked when I want to start streaming a game, and then black screen. But I cant find out how find the specific host to whitelist. :S

  • @homeassistantiptv8068
    @homeassistantiptv8068 3 ปีที่แล้ว

    Should the Action under PfBlockerNG\IP PRI1 be Deny Outbound or Deny Inbounnd?

  • @1981SPL
    @1981SPL 3 ปีที่แล้ว

    dang, something broke in the latest update of PFB for me...when I try to go into the reporting section, I time out no matter what browser/pc etc.

  • @Sneksz
    @Sneksz 2 ปีที่แล้ว

    How would you add a range of IPs (ie cloudflare) to the whitelist? I'm having issues with the cloudflare proxy (orange cloud) not responding due to pfblocker.

  • @sufyankhanbest
    @sufyankhanbest 3 ปีที่แล้ว +1

    How do I block all websites and allow only few websites to access from specific LAN IP's, and allow all websites on other IP's of LAN

  • @dimitristsoutsouras2712
    @dimitristsoutsouras2712 3 ปีที่แล้ว

    Please a quick elaboration on why in
    Firewall/pfBlockerNG/IP/GeoIP all rules have as action Deny inbound (so deny what comes from outside to the network according to my GeoIP rules which seems right as a choice) where in
    Firewall/pfBlockerNG/IP/IPv4 for all block lists the action is Deny outbound. Its like our network is the malicious one and prevents it from contaminated net :) Am I missing something here>
    Shouldnt all actions in both GeoIp and Blocklists set to Inbound than outbound?????
    What purpose serves the outbound?
    New Edit: hmmm.... probably block lists set to outbound in order to prevent the user/s to visit already known malicious sites .. so this traffic is considered to be outbound right?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 ปีที่แล้ว +3

      Yes, blocking outbound prevents internal systems from connecting to those IP's.

  • @arjayUU
    @arjayUU ปีที่แล้ว

    It seems like with version 2.1.4_28 the wizard is gone. Also there is no Feed and IP tab.
    Tthere is nothing set up for IPv4 as well as no lists in the Source Definitions. There are no DNSBL Groups and the EasyList is just blank. Is there a meaning to the Header/Label field for the URL of the list or can it be anything?

  • @parl-88
    @parl-88 3 ปีที่แล้ว

    Will it work on SG-1100 without any other plugins set, configured and enabled? I’m just concerned that the SG-1100 is too small to work with pfBlocker-NG. Can anyone confirm this please? Thanks.

  • @guidon.5413
    @guidon.5413 ปีที่แล้ว

    I've looked at pfblockerng-devel a few times now and I just can't get it to not hog the CPU on my Netgate SG2100. The SG2100 normally sits at 95 to 98% idle in normal conditions on my home network, but with pfblockerng-devel enabled just after running through the Wizard and making no changes the router sits at 30 to 40% idle and gets a lot hotter to touch. I don't get it since there really isn't much going on in the network, the pihole does the same work using less than 1% CPU on a Raspberry Pi 4. I'd love to use pfblockerng, but given the strain it puts on the Netgate router, it's just not feasible.
    Am I doing something wrong there? Am I missing something?

  • @robertkennedy268
    @robertkennedy268 3 ปีที่แล้ว

    I've had issues with false positives using pfBlocker in the past. I ended up switching to pihole instead for its UI/ease of use as well. What are your thoughts on the two for a home user? Does it matter?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 ปีที่แล้ว +2

      You can use feeds from one in the other. I like have it all in my firewall without a separate device.

  • @pierrepaniagua
    @pierrepaniagua 2 ปีที่แล้ว

    I know this video is a year or so old, but after I go through the wizard for pfblockerng-devel 3.0.. i am only seeing 1 dnsbl group? In the video it looks like there's 3? Is this some sort of recent update or did I mess something up?

  • @benhvienakhoatrungtamangia4373
    @benhvienakhoatrungtamangia4373 2 ปีที่แล้ว

    hello bro! I have range ip in route , so how to use pfblockng with range ip in static route

  • @CoMmAnDrX
    @CoMmAnDrX ปีที่แล้ว

    pfb_dnsbl pfBlockerNG DNSBL service shows disabled and when I click enable it doesn't start the service. Looked around and cannot find the answer for this issue.

  • @kalbecharoliya6814
    @kalbecharoliya6814 11 หลายเดือนก่อน

    How can I customize DSNBL blocking page on PfblockerNg3,

  • @mrteausaable
    @mrteausaable 2 ปีที่แล้ว

    I tried to only allow my computer IP to access without blocking but no working. I put rules on the top at Floating, WAN and LAN interface, still not working. I use your examples blocking the UDP 53(DNS). What I did wrong?

  • @bikes-hikes-travels8814
    @bikes-hikes-travels8814 ปีที่แล้ว

    Tom, excellent information here, so I added it to my cybercentric T-channel (FlynnInfoSec1). As a recent NG6100 owner, it is nice to have such a great resource!

  • @prashantbanthia2720
    @prashantbanthia2720 3 ปีที่แล้ว

    Hello, can we configure webfilter on user groups on pfsense? if yes how?

  • @vagtlsc4087
    @vagtlsc4087 ปีที่แล้ว

    Hi
    I have a question about PfblokkerNG.
    When I use Pi-Hole as a DNS blocker, I have the opportunity to see an active here and now updated log file that shows in color what is blocked and what is not blocked.
    I use a Nategate 4100 which I am very happy with, but am considering using PfblockingNG rather than Pi-hole. However, I really like the online log reading that is possible in Pi.Hole.
    Is it somehow possible to get the same information from my Nategate?

  • @matthewswan1873
    @matthewswan1873 2 ปีที่แล้ว

    If things look off, its because you downloaded the wrong package.... took me a while of fighting to figure out what was going on.

  • @pjg7472
    @pjg7472 ปีที่แล้ว

    Hey everyone, I have setup this as per the video instructions and cannot for the life of me get it to work correctly. I ads still come through.. Under rules, floating, the stats for the rule that pfBlocker created remain at 0/0 B Which appears to indicates that no traffic is flowing through/using this rule. I am at a bit of a loss what to do to rectify this, can anyone assist?

  • @kushdeepsingh2221
    @kushdeepsingh2221 3 ปีที่แล้ว

    I installed it and it works great except for some reason it is blocking Amazon app. Is there a way to fix this?

  • @alexanderkaragiannis3356
    @alexanderkaragiannis3356 3 ปีที่แล้ว +1

    i was waiting a mention to Unbound Python mode...the new of the 3 version

    • @Dankeller69
      @Dankeller69 3 ปีที่แล้ว

      I am curious what the difference is between unbound and python mode...

  • @mrteausaable
    @mrteausaable 2 ปีที่แล้ว

    Floating Rule and LAN rule in the firewall, which one is evaluate first?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  2 ปีที่แล้ว +1

      docs.netgate.com/pfsense/en/latest/firewall/rule-methodology.html

  • @SuperZeroon
    @SuperZeroon 2 ปีที่แล้ว

    Hello , i’m new to pfsense , and have pfBlockNG setup and working okay , but right now pfsense blocked Radarr for search or add new exiting movies.
    How can i whitelist Radarr ?

  • @RidinWithMyLocsOn
    @RidinWithMyLocsOn 3 ปีที่แล้ว

    What if you have a VPN? In Inbound/Outbound Firewall Rules - do I select WAN+VPN and LAN+VPN?

  • @CampRusso
    @CampRusso 2 ปีที่แล้ว

    I like your minimalist approach to the DNSBL. I'm going to turn them all off for now. Have you or anyone found a list to block ads when browsing on mobile devices? 🤔

    • @LVang152
      @LVang152 2 ปีที่แล้ว

      I have them on for a little bit but it blocks site that supposed to be working for work. I have to enable whitelist.

  • @volodumurkalunyak4651
    @volodumurkalunyak4651 3 ปีที่แล้ว +2

    Can't believe you are still setting up ipv4-only firewall not a dual stack one, especially in USA

  • @jamesgrabatin5520
    @jamesgrabatin5520 ปีที่แล้ว

    Time for an update... no more Wizard tab ;)

  • @eseseis7251
    @eseseis7251 3 ปีที่แล้ว

    in fact you may lough, but Penguins do most of atacks, ;) Linux ?

  • @ksodhi
    @ksodhi ปีที่แล้ว

    How does this compare against the PiHole project on the RPi?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  ปีที่แล้ว +1

      I don't use PiHole but they are similar

  • @itworks9445
    @itworks9445 2 ปีที่แล้ว

    I've tried mine working smoothly until I found out that it didn't work in https sites... The documentation says that it will also apply to https sites but it doesn't. Can you help me with my problem?

  • @b2rtechnologies
    @b2rtechnologies ปีที่แล้ว

    Hi, Can you please help with a query. Suppose we need to bypass a LAN side host for PFblockerNG then how it is possible. Pls, suggest.

  • @cosminachim
    @cosminachim 3 ปีที่แล้ว +1

    This might be a dumb question. I apology in advance but I still ask... So, I want to use pfSense to restrict my kids from accessing other domains that I want (those from school). Is that easy doable? Can you suggest anything?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 ปีที่แล้ว +1

      It does not do a great job of that, we usually recommend Untangle Firewalls for web site filtering.

    • @cosminachim
      @cosminachim 3 ปีที่แล้ว

      Untangle Firewalls has only paid option as far as I can see ... which for household looks expensive to me. Thank you for pointing me to the right direction.

  • @TK-le8wd
    @TK-le8wd 2 ปีที่แล้ว

    What if I setup Nord VPN on pfSense? Would that be my WAN port even though I still have a "Wan" port listed? My external Ip of cours shows my true IP on the "WAN" interface.

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  2 ปีที่แล้ว +1

      For outgoing blocking you would need to list all the gateways including NORD if you have it configured as such.

    • @TK-le8wd
      @TK-le8wd 2 ปีที่แล้ว

      @@LAWRENCESYSTEMS Thank you sir!

  • @jeffsadowski
    @jeffsadowski ปีที่แล้ว

    Is there an easy way to tell if my clients IP is on one or more of the lists?

    • @jeffsadowski
      @jeffsadowski ปีที่แล้ว

      I will just whitelist it for now but curious how to do this.

  • @perfect.stealth
    @perfect.stealth 2 ปีที่แล้ว

    ok so what exactly is the difference with _rep countries and non _rep countries?

  • @dimitristsoutsouras2712
    @dimitristsoutsouras2712 3 ปีที่แล้ว

    Even with version 3 I am still getting
    [DNSBL_Misc - hpHostsFSA] Download FAIL [12/11/20 11:10:22] 
    [DNSBL_Misc - BBCDGAAgr] Download FAIL [12/11/20 11:10:00]
    Do I have to remove them ?

    • @LAWRENCESYSTEMS
      @LAWRENCESYSTEMS  3 ปีที่แล้ว

      If they are failing temporarily then no, if they are always failing then yes.

    • @dimitristsoutsouras2712
      @dimitristsoutsouras2712 3 ปีที่แล้ว

      @@LAWRENCESYSTEMS Than k you for your quick reply!! Well yes at least with ver 2 they were keep failing with each update, I have a couple of hours running ver 3 and got the below also
      [ DNSBL_Misc - hpHostsFSA ] Download FAIL [ 12/11/20 12:01:09 ] 
      [ DNSBL_Misc - Quidsup ] Download FAIL [ 12/11/20 12:00:33 ]
      [ DNSBL_Misc - hpHosts ] Download FAIL [ 12/11/20 12:00:29 ]
      [ DNSBL_Misc - hpHostsFSA ] Download FAIL [ 12/11/20 11:10:22 ]
      [ DNSBL_Misc - BBCDGAAgr ] Download FAIL [ 12/11/20 11:10:00 ]
      [ DNSBL_Misc - Quidsup ] Download FAIL [ 12/11/20 11:09:59 ]
      [ DNSBL_Misc - hpHosts ] Download FAIL [ 12/11/20 11:09:55 ]
      So any info of the web ui path I follow to do this?
      Also just registered with Maxmind in order to avoid in extra fail messages (my eye tends to spot them and stare them for a long time :) ) I just generated a key for ver 3.1.1 and newer and pasted it in the relevant field in pfsense in the IP tab. In the Maxmind page though it also has :
      For Usage with GeoIP Update
      We've generated a config file for you to use with GeoIP Update. See the Automatic Updates for GeoIP2 and GeoIP Legacy Databases page to learn how to use this config file to set up automatic updates.
      Download Config button
      Do I need this because even if I downloaded I didnt figure a way to import it inside pfsense
      Thank you once more!!!!
      PS Either you didnt leave it your comments below as you mentioned or I am blind and cant see the previous video where you
      talk about the way to setup the GeoIP

  • @davidkline1441
    @davidkline1441 3 ปีที่แล้ว

    just run the wizard and it just works for a base config lol no it does not and spent 2 hrs trying to get it to work and nothing (pfb_dnsbl pfBlockerNG DNSBL service wont start)

  • @praveentadepalli1255
    @praveentadepalli1255 2 ปีที่แล้ว

    What type of support i may have if I purchase the Netgate device?