diff --git a/config-latest.xml b/config-latest.xml index a9a5c3c..3b5f56b 100644 --- a/config-latest.xml +++ b/config-latest.xml @@ -211,15 +211,12 @@ disabled - none - none - 1.1.1.1 - 1.0.0.1 - 1024 aesni_cryptodev /usr/local/etc/pfSense/pkg/repos/pfSense-repo-2.7.2.conf + 1.1.1.1 + 1.0.0.1 service wireguardd start @@ -231,25 +228,11 @@ 1500 - dhcp - 32 - - - - - - - - SavedCfg - - - - - - - + 192.168.1.29 + 24 + WANGW re0 @@ -1601,6 +1584,27 @@ + + yes + yes + inet + block + any + + +
pfB_DNSBLIP_v4
+ + + + + + + + + + wan + 1770009371 +
yes yes @@ -1616,12 +1620,33 @@ - + lan,opt1,opt2 1770005154 + + yes + yes + inet + reject + any + + + + + +
pfB_DNSBLIP_v4
+
+ + + + + + lan,opt1,opt2 + 1770005121 +
1730384513 @@ -1890,7 +1915,16 @@ https://127.0.0.1:443/pfblockerng/pfblockerng.php?pfb=pfB_PRI1_v4 32
- + + urltable + + + + pfB_DNSBLIP_v4 + https://127.0.0.1:443/pfblockerng/pfblockerng.php?pfb=pfB_DNSBLIP_v4 + 32 +
+ urltable
@@ -1987,15 +2021,6 @@ root /usr/bin/nice -n20 /etc/rc.update_pkg_metadata - - 0 - * - * - * - * - root - /usr/local/bin/php /usr/local/www/pfblockerng/pfblockerng.php cron >> /var/log/pfblockerng/pfblockerng.log 2>&1 - 0 23 @@ -2005,6 +2030,15 @@ root /usr/local/bin/php /usr/local/www/pfblockerng/pfblockerng.php dcc >> /var/log/pfblockerng/extras.log 2>&1 + + 0 + * + * + * + * + root + /usr/local/bin/php /usr/local/www/pfblockerng/pfblockerng.php cron >> /var/log/pfblockerng/pfblockerng.log 2>&1 + @@ -2028,8 +2062,8 @@ 15 - Pass Block Reject - 3 + Block Reject + 10 wan @@ -2171,6 +2205,10 @@ + 192.168.2.1 + + + none 1048576 @@ -2428,11 +2466,10 @@ 67238ccf4a1ad transparent - 0 - 4 + 250 10 10 auto @@ -2535,6 +2572,9 @@ + + + allow @@ -2565,8 +2605,9 @@ - - + + + WANGW @@ -3232,11 +3273,6 @@
Status
/status_tinc.php - - pfBlockerNG -
Firewall
- /pfblockerng/pfblockerng_general.php -
iperf Access iperf @@ -3273,6 +3309,11 @@ telegraf.xml /pkg_edit.php?xml=telegraf.xml + + pfBlockerNG +
Firewall
+ /pfblockerng/pfblockerng_general.php +
bandwidthd bandwidthd.sh @@ -3309,18 +3350,6 @@ tincd - - pfb_dnsbl - pfb_dnsbl.sh - lighttpd_pfb - - - - pfb_filter - pfb_filter.sh - php_pfb - - iperf iperf3 @@ -3345,6 +3374,18 @@ telegraf + + pfb_dnsbl + pfb_dnsbl.sh + lighttpd_pfb + + + + pfb_filter + pfb_filter.sh + php_pfb + + on @@ -3695,37 +3736,61 @@ 8443 on - czMuYW1hem9uYXdzLmNvbQ0KczMtMS5hbWF6b25hd3MuY29tICMgQ05BTUUgZm9yIChzMy5hbWF6 -b25hd3MuY29tKQ0KLmdpdGh1Yi5jb20NCi5naXRodWJ1c2VyY29udGVudC5jb20gDQpnaXRodWIu -bWFwLmZhc3RseS5uZXQgIyBDTkFNRSBmb3IgKHJhdy5naXRodWJ1c2VyY29udGVudC5jb20pDQou -Z2l0bGFiLmNvbQ0KLnNvdXJjZWZvcmdlLm5ldA0KLmZscy1uYS5hbWF6b24uY29tICMgYWxleGEN -Ci5jb250cm9sLmtvY2hhdmEuY29tICMgYWxleGEgMg0KLmRldmljZS1tZXRyaWNzLXVzLTIuYW1h -em9uLmNvbSAjIGFsZXhhIDMNCi5hbWF6b24tYWRzeXN0ZW0uY29tICMgYW1hem9uIGFwcCBhZHMN -Ci5weC5tb2F0YWRzLmNvbSAjIGFtYXpvbiBhcHAgMg0KLndpbGRjYXJkLm1vYXRhZHMuY29tLmVk -Z2VrZXkubmV0ICMgQ05BTUUgZm9yIChweC5tb2F0YWRzLmNvbSkNCi5lMTMxMzYuZy5ha2FtYWll -ZGdlLm5ldCAjIENOQU1FIGZvciAocHgubW9hdGFkcy5jb20pDQouc2VjdXJlLWdsLmltcndvcmxk -d2lkZS5jb20gIyBhbWF6b24gYXBwIDMNCi5waXhlbC5hZHNhZmVwcm90ZWN0ZWQuY29tICMgYW1h -em9uIGFwcCA0DQouYW55Y2FzdC5waXhlbC5hZHNhZmVwcm90ZWN0ZWQuY29tICMgQ05BTUUgZm9y -IChwaXhlbC5hZHNhZmVwcm90ZWN0ZWQuY29tKQ0KLmJzLnNlcnZpbmctc3lzLmNvbSAjIGFtYXpv -biBhcHAgNQ0KLmJzLmV5ZWJsYXN0ZXIuYWthZG5zLm5ldCAjIENOQU1FIGZvciAoYnMuc2Vydmlu -Zy1zeXMuY29tKQ0KLmJzbGEuZXllYmxhc3Rlci5ha2FkbnMubmV0ICMgQ05BTUUgZm9yIChicy5z -ZXJ2aW5nLXN5cy5jb20pDQouYWRzYWZlcHJvdGVjdGVkLmNvbSAjIGFtYXpvbiBhcHAgNg0KLmFu -eWNhc3Quc3RhdGljLmFkc2FmZXByb3RlY3RlZC5jb20gIyBDTkFNRSBmb3IgKHN0YXRpYy5hZHNh -ZmVwcm90ZWN0ZWQuY29tKQ0KZ29vZ2xlLmNvbQ0Kd3d3Lmdvb2dsZS5jb20NCnlvdXR1YmUuY29t -DQp3d3cueW91dHViZS5jb20NCnlvdXR1YmUtdWkubC5nb29nbGUuY29tICMgQ05BTUUgZm9yICh5 -b3V0dWJlLmNvbSkNCnN0YWNrb3ZlcmZsb3cuY29tDQp3d3cuc3RhY2tvdmVyZmxvdy5jb20NCmRy -b3Bib3guY29tDQp3d3cuZHJvcGJveC5jb20NCnd3dy5kcm9wYm94LWRucy5jb20gIyBDTkFNRSBm -b3IgKGRyb3Bib3guY29tKQ0KLmFkc2FmZXByb3RlY3RlZC5jb20NCmNvbnRyb2wua29jaGF2YS5j -b20NCnNlY3VyZS1nbC5pbXJ3b3JsZHdpZGUuY29tDQpwYnMudHdpbWcuY29tICMgdHdpdHRlciBp -bWFnZXMNCnd3dy5wYnMudHdpbWcuY29tICMgdHdpdHRlciBpbWFnZXMNCmNzMTk2LndhYy5lZGdl -Y2FzdGNkbi5uZXQgIyBDTkFNRSBmb3IgKHBicy50d2ltZy5jb20pDQpjczItd2FjLmFwci04MzE1 -LmVkZ2VjYXN0ZG5zLm5ldCAjIENOQU1FIGZvciAocGJzLnR3aW1nLmNvbSkNCmNzMi13YWMtdXMu -ODMxNS5lY2Rucy5uZXQgIyBDTkFNRSBmb3IgKHBicy50d2ltZy5jb20pDQpjczQ1LndhYy5lZGdl -Y2FzdGNkbi5uZXQgIyBDTkFNRSBmb3IgKHBicy50d2ltZy5jb20pDQpjczItd2FjLmFwci04MzE1 -LmVkZ2VjYXN0ZG5zLm5ldCAjIENOQU1FIGZvciAocGJzLnR3aW1nLmNvbSkNCmNzMi13YWMtdXMu -ODMxNS5lY2Rucy5uZXQgIyBDTkFNRSBmb3IgKHBicy50d2ltZy5jb20pDQpjczQ1LndhYy5lZGdl -Y2FzdGNkbi5uZXQgIyBDTkFNRSBmb3IgKHBicy50d2ltZy5jb20pDQoucGZzZW5zZS5vcmcNCi5u -ZXRnYXRlLmNvbQ0K + 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 + dnsbl_default.php + on + + ipalias + + + + on + on + on + on + + + + + + + + + arpa,box,com,net,org,edu,box + + + + Deny_Both + enabled + + + + + + + + default + + + + + + + + default + + ca,co,com,edu,io,net,org + + + + + + + tranco + 1000 + on + dnsbl_unbound + lo0 @@ -3735,14 +3800,20 @@ ZXRnYXRlLmNvbQ0K auto - https://raw.githubusercontent.com/StevenBlack/hosts/master/hosts -
StevenBlack_ADs
+ https://raw.githubusercontent.com/StevenBlack/hosts/master/alternates/porn-only/hosts +
s
unbound EveryDay enabled default 1 + sort + + + + +
@@ -3785,12 +3856,6 @@ ZXRnYXRlLmNvbQ0K https://www.spamhaus.org/drop/drop.txt
Spamhaus_Drop
- - auto - - https://www.spamhaus.org/drop/edrop.txt -
Spamhaus_eDrop
-
Deny_Outbound EveryDay enabled @@ -3821,9 +3886,34 @@ ZXRnYXRlLmNvbQ0K
- + + Disable + EN + ut1 + Weekly + enabled + + Shallalist + shallalist + http://www.shallalist.de/Downloads/shallalist.tar.gz + 10 + drugs,porn,radiotv,sex_education,sex_lingerie,spyware,tracker + + + UT1 + ut1 + ftp://ftp.ut-capitole.fr/pub/reseau/cache/squidguard_contrib/blacklists.tar.gz + 8.5 + adult,sect,sexual_education + + - + + Enable + Disable + Enable + use-application-dns.net,cloudflare-dns.com,security.cloudflare-dns.com,family.cloudflare-dns.com,one.one.one.one,1dot1dot1dot1.cloudflare-dns.com,dns.google,doh.dns.apple.com,mask.icloud.com,mask-h2.icloud.com,mask-api.icloud.com,mask-t.apple-dns.net,mask.apple-dns.net,mask-api.fe.apple-dns.net,doh.opendns.com,doh.familyshield.opendns.com,dns.quad9.net,dns10.quad9.net,dns11.quad9.net,dns.adguard-dns.com,unfiltered.adguard-dns.com,family.adguard-dns.com,doh.cleanbrowsing.org,security-filter-dns.cleanbrowsing.org,family-filter-dns.cleanbrowsing.org,adult-filter-dns.cleanbrowsing.org,dns.nextdns.io,dns.switch.ch,dns.futuredns.me,dns.comss.one,dns.east.comss.one,private.canadianshield.cira.ca,protected.canadianshield.cira.ca,family.canadianshield.cira.ca,doh-fi.blahdns.com,doh-jp.blahdns.com,doh-de.blahdns.com,dot-fi.blahdns.com,dot-jp.blahdns.com,dot-de.blahdns.com,fi.doh.dns.snopyta.org,dns-doh.dnsforfamily.com,dns-dot.dnsforfamily.com,odvr.nic.cz,dns.alidns.com,dns.cfiec.net,asia.dnscepat.id,eropa.dnscepat.id,doh.360.cn,public.dns.iij.jp,dns.pub,doh.pub,dot.pub,dns.twnic.tw,doh.tiarap.org,doh.tiar.app,dot.tiar.app,jp.tiarap.org,jp.tiar.app,dns.oszx.co,dns.pumplex.com,doh.applied-privacy.net,dot1.applied-privacy.net,dns.decloudus.com,resolver-eu.lelux.fi,doh.dns.sb,dnsforge.de,kaitain.restena.lu,doh.ffmuc.net,dot.ffmuc.net,dns.digitale-gesellschaft.ch,doh.libredns.gr,dot.libredns.gr,ibksturm.synology.me,getdnsapi.net,dnsovertls.sinodun.com,dnsovertls1.sinodun.com,unicast.censurfridns.dk,anycast.censurfridns.dk,dns.cmrg.net,dns.larsdebruin.net,dns-tls.bitwiseshift.net,ns1.dnsprivacy.at,ns2.dnsprivacy.at,dns.bitgeek.in,dns.neutopia.org,privacydns.go6lab.si,dot.securedns.eu,dnsotls.lab.nic.cl,tls-dns-u.odvr.dns-oarc.net,doh.centraleu.pi-dns.com,dot.centraleu.pi-dns.com,doh.northeu.pi-dns.com,dot.northeu.pi-dns.com,doh.westus.pi-dns.com,dot.westus.pi-dns.com,doh.eastus.pi-dns.com,dot.eastus.pi-dns.com,doh.eastau.pi-dns.com,dot.eastau.pi-dns.com,doh.eastas.pi-dns.com,dot.eastas.pi-dns.com,doh.pi-dns.com,dot.seby.io,doh-2.seby.io,doh.dnslify.com,yandex.dns,blitz.ahadns.com,doh.nl.ahadns.net,dot.nl.ahadns.net,doh.in.ahadns.net,dot.in.ahadns.net,doh.la.ahadns.net,dot.la.ahadns.net,doh.ny.ahadns.net,dot.ny.ahadns.net,doh.pl.ahadns.net,dot.pl.ahadns.net,doh.it.ahadns.net,dot.it.ahadns.net,doh.es.ahadns.net,dot.es.ahadns.net,doh.no.ahadns.net,dot.no.ahadns.net,doh.chi.ahadns.net,dot.chi.ahadns.net,doh.au.ahadns.net,dot.au.ahadns.net,basic.rethinkdns.com,max.rethinkdns.com,freedns.controld.com,p0.freedns.controld.com,p1.freedns.controld.com,p2.freedns.controld.com,p3.freedns.controld.com,doh.mullvad.net,adblock.doh.mullvad.net,dns.arapurayil.com,dandelionsprout.asuscomm.com,zero.dns0.eu + Deny_Both