Table of Contents

PFSense - pfBlockerNG - Install pfBlockerNG - Setup DNSBL Blocking

Enable DNSBL

Navigate to Firewall → pfBlockerNG → DNSBL.

In DNSBL:

WARNING: Wildcard Blocking (TLD) uses a lot of RAM.

Do not enable this on systems with less than 8GB RAM!

This setting enables additional processing to block ALL sub-domains for advanced blocking.

For example, a list with sharewiz.net would also result in blog.sharewiz.net also being blocked if TLD is enabled.


In DNSBL Webserver Configuration:


In DNSBL Configuration:

NOTE:

  • If you ONLY have one LAN interface, leave this setting unchecked.
  • If you have multiple LAN interfaces, check this setting and select each interface to protect.


In DNSBL Whitelist:


In DNSBL IPs:

Scroll to the bottom of the page and click the Save button.


Setup DNSBL EasyLists

Navigate to Firewall → pfBlockerNG → Feeds.

Scroll down to the DNSBL Category section.

Select the Easylist by clicking on the + key towards the left side.

NOTE: See: Add DNSBL Feeds.


Set EasyList Feeds to:

Scroll to the bottom of the page and click the Save button.


Setup Custom DNSBL Lists

See pfBlockerNG DNSBL Lists.

Navigate to Firewall → pfBlockerNG → DNSBL → DNSBL Groups.

Click the Add button.

Give it a Name and Description.

Add in as many DNSBL Source Definitions as needed.

Set:

For Example:


Return to Install pfBlockerNG or continue to Update Blocking Lists.