pfsense:pfblockerng:install_pfblockerng:setup_dnsbl_blocking
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pfsense:pfblockerng:install_pfblockerng:setup_dnsbl_blocking [2021/01/28 10:45] – peter | pfsense:pfblockerng:install_pfblockerng:setup_dnsbl_blocking [2023/04/22 09:22] (current) – [Enable DNSBL] peter | ||
---|---|---|---|
Line 3: | Line 3: | ||
===== Enable DNSBL ===== | ===== Enable DNSBL ===== | ||
- | Navigate to **Firewall -> pfBlockerNG -> DNSBL** and check the box for **Enable | + | Navigate to **Firewall -> pfBlockerNG -> DNSBL**. |
- | Optionally, if you have a lot of RAM, you can also enable | + | In **DNSBL**: |
+ | |||
+ | * Enable DNSBL: | ||
+ | * Wildcard Blocking (TLD): **Checked**. | ||
+ | |||
+ | <WRAP warning> | ||
+ | **WARNING: | ||
+ | |||
+ | Do not enable this on systems with less than 8GB RAM! | ||
+ | |||
+ | This setting enables additional processing to block ALL sub-domains for advanced blocking. | ||
+ | |||
+ | For example, a list with sharewiz.net would also result in blog.sharewiz.net also being blocked if TLD is enabled. | ||
+ | |||
+ | </ | ||
{{: | {{: | ||
- | Locate the **DNSBL Webserver Configuration** | + | ---- |
+ | |||
+ | In **DNSBL Webserver Configuration**: | ||
* Virtual IP Address: **10.10.10.1**. | * Virtual IP Address: **10.10.10.1**. | ||
Line 19: | Line 35: | ||
{{: | {{: | ||
+ | ---- | ||
+ | |||
+ | In **DNSBL Configuration**: | ||
+ | |||
+ | * Permit Firewall Rules: | ||
- | Locate | + | <WRAP info> |
+ | **NOTE:** | ||
* If you ONLY have one LAN interface, leave this setting unchecked. | * If you ONLY have one LAN interface, leave this setting unchecked. | ||
* If you have multiple LAN interfaces, check this setting and select each interface to protect. | * If you have multiple LAN interfaces, check this setting and select each interface to protect. | ||
+ | |||
+ | </ | ||
+ | |||
* Scroll to the bottom of the page and click the **Save** button. | * Scroll to the bottom of the page and click the **Save** button. | ||
{{: | {{: | ||
+ | ---- | ||
+ | In **DNSBL Whitelist**: | ||
- | Locate the **DNSBL Whitelist** Section: | + | |
- | + | ||
- | | + | |
* Enter the following white-list domains and modify as you like: | * Enter the following white-list domains and modify as you like: | ||
* < | * < | ||
Line 67: | Line 92: | ||
</ | </ | ||
+ | ---- | ||
- | Locate | + | In **DNSBL IPs**: |
* List Action: **Deny Both**. | * List Action: **Deny Both**. | ||
Line 91: | Line 117: | ||
{{: | {{: | ||
+ | |||
+ | <WRAP info> | ||
+ | **NOTE: | ||
+ | </ | ||
+ | |||
+ | ---- | ||
Set EasyList Feeds to: | Set EasyList Feeds to: | ||
Line 128: | Line 160: | ||
{{: | {{: | ||
+ | ---- | ||
+ | Return to [[PFSense: | ||
+ | |||
+ | ---- |
pfsense/pfblockerng/install_pfblockerng/setup_dnsbl_blocking.1611830750.txt.gz · Last modified: 2021/01/28 10:45 by peter