Table of Contents

PFSense - pfBlockerNG - Install pfBlockerNG - Setup IP Blocking

IP Configuration

Navigate to Firewall → pfBlockerNG → IP.

In IP Configuration:


MaxMind GeoIP configuration

Navigate to Firewall → pfBlockerNG → IP.

In MaxMind GeoIP configuration:


IP Interface/Rules Configuration

Navigate to Firewall → pfBlockerNG → IP.

In IP Interface/Rules Configuration:

Scroll to the bottom of the page and click the Save button.

NOTE: Floating rules are used here, as they keep all the pfBlockerNG rules in one place.

Otherwise each interface will have a copy of these rules and therefore harder to maintain.


Setup Custom IP Lists

IPv4

Navigate to Firewall → pfBlockerNG → IP → IPv4.

Add in as many IP Source Definitions as needed.

Set:

  • Type: Auto.
  • State: On.

See pfBlockerNG IP Lists - IPv4


In Settings:


IPv6

Navigate to Firewall → pfBlockerNG → IP → IPv6.

Add in as many IP Source Definitions as needed.

Set:

  • Type: Auto.
  • State: On.

See pfBlockerNG IP Lists - IPv6


In Settings:


GeoIP

Navigate to Firewall → pfBlockerNG → IP → GeoIP.

NOTE: GeoIP is not used.

All Actions are Disabled.

Reason is that many services, such as AWS, utilize services in other countries, so if a country is blocked this may result in impacting legitimate sites,


Reputation


Return to Install pfBlockerNG or continue to Setup DNSBL Blocking.