OPNsense Forum

English Forums => General Discussion => Topic started by: securityconscious on January 29, 2021, 03:15:23 am

Title: Blocking Mozilla networks is preventing Firefox from accessing other sites.
Post by: securityconscious on January 29, 2021, 03:15:23 am
I have blocked two Mozilla networks, one is powered by Amazon Cloud and the other, Cloudflare. Despite this, Mozilla is opening, I tried pinging IP addresses in those networks and I wasn't getting any replies. So, I'm confused why this is happening.

And, when these two Mozilla networks are blocked, many sites are not opening in Firefox(I haven't tried other browsers), when I unblock those networks, those sites are opening. I've checked the IPs of the sites, and they are not in the blocked network. Is this because of some telemetry in Firefox?
Title: Re: Blocking Mozilla networks is preventing Firefox from accessing other sites.
Post by: lfirewall1243 on January 29, 2021, 08:28:50 am
Can you do a NSLookup and Ping on these Sites?
Title: Re: Blocking Mozilla networks is preventing Firefox from accessing other sites.
Post by: 8191 on January 29, 2021, 08:14:05 pm
Hi,
Firefox checks websites you browse for malicious URLs. I assume the list is hosted within that CDN and Firefox therefore blocks the access.
Title: Re: Blocking Mozilla networks is preventing Firefox from accessing other sites.
Post by: securityconscious on January 29, 2021, 08:46:38 pm
Can you do a NSLookup and Ping on these Sites?

When I NSLookup for mozilla.org, it showed the same 3 IPs which are in the network I have blocked. Do I need to block the nameservers as well?

Other sites are not in those networks, I think the person who posted below probably has the correct reason.
Title: Re: Blocking Mozilla networks is preventing Firefox from accessing other sites.
Post by: securityconscious on January 29, 2021, 08:47:46 pm
Hi,
Firefox checks websites you browse for malicious URLs. I assume the list is hosted within that CDN and Firefox therefore blocks the access.

So this is their politically correct reason for telemetry.