User Tools

Site Tools


pfsense:pfblockerng:install_pfblockerng:configure_pfblockerng

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
pfsense:pfblockerng:install_pfblockerng:configure_pfblockerng [2021/01/28 10:19] peterpfsense:pfblockerng:install_pfblockerng:configure_pfblockerng [2023/04/22 09:33] (current) peter
Line 3: Line 3:
 ===== General Settings ===== ===== General Settings =====
  
-Navigate to **Firewall -> pfBlockerNG**.+Navigate to **Firewall -> pfBlockerNG -> General**.
  
-Within the **General** section:+In **General Settings**:
  
-  * pfBlockerNG: **Checked**.  This enabled pfBlockerNG. +  * pfBlockerNG: **Checked**.  This enables pfBlockerNG. 
-  * Keep Settings: **Checked**.  pgBlockerNG can remember any settings even against upgrades of the software.+  * Keep Settings: **Checked**.  pfBlockerNG can remember any settings even against upgrades of the software.
   * CRON Settings: **Every Hour**  **00**  **0**  **0**.   * CRON Settings: **Every Hour**  **00**  **0**  **0**.
   * Download Failure Threshold:  **No Limit**.   * Download Failure Threshold:  **No Limit**.
  
-Within the **Log Settings** section:+In **Log Settings**:
  
   * Keep all settings at default:  **20000**.   * Keep all settings at default:  **20000**.
Line 24: Line 24:
 ---- ----
  
-===== IP Configuration =====+===== Report Settings =====
  
-Navigate to **Firewall -> pfBlockerNG -> IP**.+For alerts, the default DNS server for CNAME lookups is set to **Google 8.8.8.8**.
  
-Within the **IP Configuration** section:+  * To Change this to an alternative DNS Server, follow the following instructions.
  
-  De-Duplication: **Checked** +Navigate to **Firewall -> pfBlockerNG -> Reports -> Alerts**.
-  * CIDR Aggregation: **Not checked** +
-  * Suppression: **Checked** +
-  * Force Global IP Logging: **Not checked** +
-  * Placeholder IP Address: **127.1.7.7** +
-  * ASN Reporting: **Disabled**+
  
 +In **Alerts**:
  
-{{:pfsense:pfblockerng:pfsense_pfblockerng_ip_ip_configuration.png?800|}}+  * Expand the **Alert Settings** option. 
 +  * DNS server for the DNSBL Whitelist CNAME lookup **Quad9 9.9.9.9**.
  
-----+<WRAP info> 
 +**NOTE:**  At this time, there is no option to be able to select a custom DNS Server. 
 +</WRAP>
  
- 
-===== MaxMind GeoIP configuration ===== 
- 
-Navigate to **Firewall -> pfBlockerNG -> IP**.  
- 
-Within the **MaxMind GeoIP configuration** section: 
- 
-  * MaxMind License Key: **Enter the MaxMind License Key**.  If you don't have a key, register for one on the [[https://www.maxmind.com/|Maxmind Site]]. 
-  * MaxMind Localized Language: **English**. 
-  * MaxMind CSV Updates:  **Not Checked**. 
- 
-{{:pfsense:pfblockerng:pfsense_pfblockerng_ip_maxmind.png?800|}} 
  
 ---- ----
  
-===== IP Interface/Rules Configuration ===== +Return to [[PFSense:pfBlockerNG:Install pfBlockerNG|Install pfBlockerNG]] or continue to [[PFSense:pfBlockerNG:Install pfBlockerNG:Setup IP Blocking|Setup IP Blocking]].
- +
- +
-Within the **IP Interface/Rules Configuration** section: +
- +
-  * Inbound Firewall Rules **WAN** and **Block**. +
-  * Outbound Firewall Rules: **LAN** and **Reject**. +
-    *  If you have more than one internal interfaces, press **CTRL** or CMD (for Mac users) and click on interfaces. +
-  * Floating Rules **Not Checked**. +
-  * Firewall 'Auto' Rule Order **Select the top option**. +
-  * Firewall 'Auto' Rule Suffix **auto rule**. +
-  * Kill States:  **Checked**. +
- +
-{{:pfsense:pfblockerng:pfsense_-_pfblockerng_-_ip_-_ip_-_interface_-_rules_-_configuration.png?800|}} +
- +
- +
-Scroll to the bottom of the page and click the **Save** button. +
- +
-{{:pfsense:pfblockerng:pfsense_pfblockerng_ip_save.png?800|}} +
  
 ---- ----
- 
- 
pfsense/pfblockerng/install_pfblockerng/configure_pfblockerng.1611829193.txt.gz · Last modified: 2021/01/28 10:19 by peter

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki